Logging on to your computer is certainly faster than it used to be, yet there are a bunch of technical steps that happen in the background. At our ITOps Talk: All things hybrid event, senior developer Steve Syfuhs took us through the details, including access to cloud resources. This article explains the process to just log on to Windows with an on-premises Active Directory Domain, including the f
ç¯ç½ªè ã«ãããã£ãã·ã³ã°è©æ¬ºãçã£ããä¸è±ï¼µï¼¦ï¼ªéè¡ãåä¹ãå½SMSï¼ã·ã§ã¼ãã¡ãã»ã¼ã¸ï¼ï¼ã¡ã¼ã«ããã¤ã¦ãªãè¦æ¨¡ã§ã客ãã¾ã«éããã¦ãããå 容ãä¸è¦ãã¦åºå¥ãã¤ãã«ãããã®ã¨ãªã£ã¦ãã¾ãã ãããç¶æ³ãè¸ã¾ããå½è¡ã¯ã客ãã¾ã®è³ç£ããå®ãããã¹ãã以ä¸è¨è¼ã®å®æ½æ¥ä»¥éã«ä¸è±ï¼µï¼¦ï¼ªãã¤ã¬ã¯ãã§ã®ã¯ã³ã¿ã¤ã ãã¹ã¯ã¼ãï¼ã¢ããªï¼å©ç¨ç»é²æã®æ¬äººç¢ºèªãé»è©±ï¼èªåé³å£°ï¼ã§å®æ½ããå ´åãæ¯è¾¼ãå§ãã¨ããä¸é¨åå¼ã®åãæ±ããå¤æ´ãã¾ãã
ãã®è¨äºã¯ Nikkei Advent Calendar 2024 ã® 21 æ¥ç®ã®è¨äºã§ãã ã¯ããã« ããã«ã¡ã¯ãæ¥çµ ID ãã¼ã ã®å¥¥ç°ã§ãã æ¥çµ ID ãã¼ã ã§ã¯èªè¨¼ã®å®å ¨æ§ã¨ã¦ã¼ã¶ã¼ã¨ã¯ã¹ããªã¨ã³ã¹ï¼UXï¼ã®åä¸ãç®æãã¦ãã¹ãã¼èªè¨¼ã®å°å ¥ãé²ãã¦ããã2025 å¹´ 2 æã®å ¬éãäºå®ãã¦ãã¾ããæ¬è¨äºã§ã¯å ¬éäºå®ã®ãã¹ãã¼é¢é£æ©è½ããç´¹ä»ãã¾ãããªããæ¬è¨äºä¸ã§ä½¿ç¨ãã¦ããç»åã¯å ¨ã¦éçºä¸ã®ãã®ã§ãã ãã¹ãã¼ã®ç»é² ãã¹ãã¼ãæªç»é²ã®ã¦ã¼ã¶ã¼ã«ã¯ãæ¥çµ ID ã©ã¦ã³ã¸ï¼ã客æ§ãã¤ãã¼ã¸ï¼ã®ããããã¼ã¸ãèªè¨¼æ¹æ³ã®è¨å®ãã¼ã¸ã§ããã¹ãã¼ã®ç»é²ãä¿ãã¡ãã»ã¼ã¸ã表示ãã¾ãã ãã®ããã¹ãã¼ãè¨å®ããããªã³ã¯ãããã¹ãã¼è¨å®ãã¼ã¸ã¸é·ç§»ã§ãã¾ããè¨å®ãã¼ã¸ã®è¡¨ç¤ºå 容ã¯ãã¦ã¼ã¶ã¼ããã§ã«ãã¹ãã¼ç»é²ãã¦ãããã©ããã«ãã£ã¦å¤åãã¾ããæªç»é²ã®å ´åã«ã¯ã以ä¸ã®å³ã®ããã«ãã¹ãã¼ç»é²ã
ãã¹ãã¼ã®æ¬è³ªã¯ã¦ã¼ã¶ã¼å´ã¨ãã¦ã¯ãã¹ã¯ã¼ãå ¥åæ©ä¼ã®åæ¸ããµã¼ãã¹å´ã¨ãã¦ã¯ä¼æ¥ã®ã»ãã¥ãªãã£ãªã¹ã¯ã®ã¦ã¼ã¶ã¼ã¸ã®è²¬ä»»è»¢å«ã¨ã³ã¹ãã«ããã§ããã ãµã¼ãã¹å´ ä¼æ¥ãã¦ã¼ã¶ã¼ã«ãã¹ãã¼ã使ããããã¨å¼·è¦ããã®ã¯ãã°ã¤ã³æ å ±ã®æµåºãæµåºãããã°ã¤ã³æ å ±ã«ããæ»æã®ãªã¹ã¯ã¨è²¬ä»»ã¨ã³ã¹ãããä¼æ¥ãå®ãããã«èªè¨¼ã«é¢ããåé¡ãã¦ã¼ã¶ã¼ã®è²¬ä»»ã«ãã£ã¦ããçºçããªããã責任転å«ãããããã«éããªãããã®ããèªè¨¼æ å ±ã®ç´å¤±ãçé£ãªã©ã«ããåªå¤±ãªã¹ã¯ã¨å¾©æ§ã®å°é£æ§ããã®ä»æ°ãã«çºçããåé¡ã«ã¤ãã¦ã¯é è½ã¾ãã¯ç®å°åããããä¼æ¥ã«ã¨ã£ã¦ãã¹ãã¼ã¨ã¯ãã¹ã¯ã¼ãã®å®æçå¤æ´ã®ææ°çãªã®ã§ããã¦ã¼ã¶ã¼ããã¹ãã¼ãå¼·è¦ãããã®ã¯ãã¹ã¯ã¼ãã®å®æçå¤æ´ãå¼·è¦ãããæ´å²ãç¹°ãè¿ãã¦ããã«éããªãã ã¦ã¼ã¶ã¼å´ ãã¹ãã¼ã®é©åãªå®è£ ã«ãããã¦ã¼ã¶ã¼ã®æ¬è³ªçå©çã¯ãã¹ã¯ã¼ãå ¥åæ©ä¼ãæ¸ããã¨ã«ãããã£ãã·ã³ã°è¢«å®³ãåããæ©
Okta AD/LDAP Delegated Authentication - Username Above 52 Characters Security Advisory Description DescriptionOn October 30, 2024, a vulnerability was internally identified in generating the cache key for AD/LDAP DelAuth. The Bcrypt algorithm was used to generate the cache key where we hash a combined string of userId + username + password. Under a specific set of conditions, listed below, this co
[ã¢ãããã¼ã] AWS Secrets Manager Agent ããªãªã¼ã¹ããã¦ããã®ã§ Amazon Linux 2023 ã«ã¤ã³ã¹ãã¼ã«ãã¦ä½¿ã£ã¦ã¿ã ãããã§ãã å æ¥ãAWS Secrets Manager ã® Secrets Manager Agent ã¨ãããã®ããªãªã¼ã¹ããã¾ããã ããã©ããããã®ãã¨è¨ãã¨ãEC2 ã Lambda ããã㯠ECS ãªã©ã®ã³ã³ãã¥ã¼ãã£ã³ã°ç°å¢ä¸ã§ã·ã¼ã¯ã¬ããã®ç®¡çã»ãã£ãã·ã¥ãªã©ãè¡ã£ã¦ãããã¨ã¼ã¸ã§ã³ãã§ãã é常ã¯ã¢ããªã±ã¼ã·ã§ã³ãªã©ãã SDK ã使ã£ã¦ AWS API çµç±ã§ Secrets Manager ã«ã¢ã¯ã»ã¹ããé½åº¦ã·ã¼ã¯ã¬ãããåå¾ãããã¨ãå¤ãã¨æãã¾ãã Secrets Manager ã¯å¼ã³åºãåæ°ã«å¿ãã¦æéãçºçããã®ã§ã³ã¹ãåæ¸ã®ããããããã¯ã¬ã¤ãã³ã·ã¼åæ¸ã®ããã«ã·ã¼ã¯ã¬ããã®ãã£ãã·ã¥æ¦ç¥ãå
å¤è¦ç´ èªè¨¼ï¼MFAï¼ãªã©ã®æ¨æºã®èªè¨¼æ¹æ³ã§ã¯ãã¦ã¼ã¶ããã°ã¤ã³ããããä¼æ¥ã®ãªã½ã¼ã¹ã«ã¢ã¯ã»ã¹ããããããã¨ãããã³ã«ãç¹å®ã®è³æ ¼æ å ±ãè¦æ±ãã¾ããé©å¿åèªè¨¼ã§ã¯ãç¶æ³ã«å¿ãã¦ç°ãªãè³æ ¼æ å ±ãè¦æ±ãã¦ã侵害ã®ãªã¹ã¯ãé«ãå ´åã«ã»ãã¥ãªãã£ãå¼·åãã¾ãã ã¦ã¼ã¶ã常ã«ã¦ã¼ã¶åã¨ãã¹ã¯ã¼ããªã©ã®æ¨æºã®è³æ ¼æ å ±ã§ãã°ã¤ã³ãã¦ããã¨ããµã¤ãã¼æ»æã«å¯¾ãã¦èå¼±ã«ãªãã¾ããMFAãªã©ã®IDããã³ã¢ã¯ã»ã¹ç®¡çã®èªè¨¼ãã¼ã«ã¯ãã¹ãã¼ããã©ã³ã¢ããªããçæãããã³ã¼ããªã©ã®è¿½å ã®è³æ ¼æ å ±ãè¦æ±ãããã¨ã§ãããå¼·åãªã»ãã¥ãªãã£ãæä¾ãã¾ããè¦ç´ ãå¤ãã»ã©å½¹ç«ã¡ã¾ãããããã§ããµã¤ãã¼ç¯ç½ªè ã¯ãç°¡åã«ã¦ã¼ã¶ã®ãã¾ãã¾ãªè³æ ¼æ å ±ãåå¾ã¾ãã¯ãããã³ã°ãã¦ããããå©ç¨ãã¦ã¢ã¯ã»ã¹ã§ãã¾ããé©å¿åèªè¨¼ã¯ãè¦ä»¶ãã¤ã³ããªã¸ã§ã³ãã«å¤æ´ãããã¨ã§ãããã«ã¼ãä¼æ¥ã«ã¢ã¯ã»ã¹ãããã¨ãã¯ããã«å°é£ã«ãã¾ãã使ç¨ãããã·ã°ã
Passkeys on Windows just got easier! As part of Microsoftâs vision for a passwordless future we are working to make passkeys on Windows simple and intuitive. Passkeys are safer and easier to use than passwords, which are vulnerable to phishing and data breaches. That is why, in support of a passwordless future, we partnered in the FIDO alliance with other platforms in supporting passkeys. As part
ãã®ã³ã¼ãã¼ã§ã¯ã2014å¹´ããå 端ãã¯ããã¸ã¼ã®ç 究ãè«æåä½ã§è¨äºã«ãã¦ããWebã¡ãã£ã¢ãSeamlessãï¼ã·ã¼ã ã¬ã¹ï¼ã主宰ããå±±ä¸è£æ¯ æ°ãå·çãæ°è¦æ§ã®é«ãç§å¦è«æãå±±ä¸æ°ãããã¯ã¢ãããã解説ããã Xï¼ ï¼ shiropen2 ãçµç¹ã¯ã¦ã¼ã¶ã¼ã«å®æçãªãã¹ã¯ã¼ãå¤æ´ãè¦æ±ãã¦ã¯ãªããªããââç±³å½æ¿åºæ©é¢ã®ç±³å½ç«æ¨æºæè¡ç 究æï¼NISTï¼ãããããªå 容ãå«ããæ°ããã¬ã¤ãã³ã¹ãSP800-63Bããçºè¡¨ããããã¹ã¯ã¼ãã®å 容ã¯ãã»ã¯ã·ã§ã³3.1.1ã«è¨ããã¦ããã å¤ãã®äººã ãæ°ãããã¹ã¯ã¼ããèãåºãããããè¦ãããã¨ã«è¦å´ãã¦ãããã»ãã¥ãªãã£ä¸ã®çç±ãããå¤ãã®çµç¹ãã¦ã¼ã¶ã¼ãå¾æ¥å¡ã«å®æçãªãã¹ã¯ã¼ãã®å¤æ´ãè¦æ±ãããããã¯ç¾©åä»ãã¦ããããããä»ãç±³å½æ¿åºã¯ã½ããã¦ã§ã¢ããªã³ã©ã¤ã³ãã¼ã«ãä½æã»éç¨ããçµç¹ã«ãã®æ £è¡ããããããå¼ã³ããã¦ããã ããã¯ãWebãµã¤ã
OpenID Connectã¨ã¯ ç¨èª OpenID Connectã試ãã¦ã¿ã OPå´ã®æºå - AWS Cognito ã¦ã¼ã¶ã¼ãã¼ã«ã¨æåã®ã¯ã©ã¤ã¢ã³ããä½æãã ä½æããããã©ã¡ã¼ã¿ã確èªãã ãã£ã¹ã«ã㪠ã¦ã¼ã¶ã¼ãã¼ã«ã«ã¦ã¼ã¶ã追å ãã RPå´ã®æºå - Pythonã¢ã㪠å®æ½ èªè¨¼ã®æµã ãã°ã¤ã³ãã ãã¼ã¯ã³ããªãã¬ãã·ã¥ãã ãã¼ã¯ã³ã失å¹ããã ãã°ã¢ã¦ããã IDãã¼ã¯ã³ã®å½¢å¼ ãªã³ã¯ OpenID Connectã¨ã¯ SSO(ã·ã³ã°ã«ãµã¤ã³ãªã³)ãå®ç¾ãããããã³ã«ã®ã²ã¨ã¤ã§ãã ä¾ãã°ãé£ã¹ãã° ã« Google ã¢ã«ã¦ã³ãã§ãã°ã¤ã³ãããã¨ãã§ãã¾ãããããã§ã OpenID Connect ã使ç¨ããã¦ãã¾ãã OIDC ã¨ç¥ããããã¨ãããã¾ãã é¡ä¼¼ã®ä»æ§ã« OpenID 2.0 ãããã¾ããããOpenID 2.0 ã®é²åç³»ã OpenID Conne
ã¯ããã« ããã«ã¡ã¯ããã(@caru_ini)ã§ãï¼ å¤§å¦çã¨ãã¦åå¼·ããåããæ¥ã ããã³ãã¨ã³ãã¨ã³ã¸ãã¢ãç®æãã¦æ´»åãã¦ãã¾ããä»åã¯ãç§ãã³ããã¿ã¼ã¨ãã¦åå ãã¦ããMagnitoã¨ããOSSããã¸ã§ã¯ãã«ã¤ãã¦ç´¹ä»ãã¾ãã çããã¯ãAWSã®Cognitoã¨ãããµã¼ãã¹ãç¥ã£ã¦ãã¾ããï¼ ã¹ããã¢ããªããWebã¢ããªã¾ã§ãå¤ãã®ã¢ããªã±ã¼ã·ã§ã³ã§èªè¨¼ã»èªå¯ã®æ©è½ã¯ä¸å¯æ¬ ã§ãããã®ä¸ã§ããAmazon Cognitoã¯å¤ãã®éçºè ã«å©ç¨ããã¦ããèªè¨¼ã»èªå¯ãµã¼ãã¹ã®ä¸ã¤ã§ãããã®è¨äºã§ã¯ãCognitoã使ãéã®èª²é¡ã¨ãMagnitoãããã«ã©ã対å¿ããããç´¹ä»ãã¾ãã Amazon Cognitoã¨ã¯ Amazon Cognitoã¯ãAmazon Web Serviceãæä¾ããã¦ã¼ã¶ã¼èªè¨¼ãèªå¯ãããã³ã¦ã¼ã¶ã¼ç®¡çãç°¡åã«ããããã®ãµã¼ãã¹ã§ããããã«ãããã¢ããªã±ã¼ã·ã§ã³ã«
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}