2009/05/21 ã¢ã«ãã¤ã¯5æ20æ¥ãå社ãå ¨ä¸çã«é ç½®ãã¦ããã³ã³ãã³ãé ä¿¡ç¨ãã©ãããã©ã¼ã ãEdge Platformãã®æ©è½ãæ¡å¼µããWebã¢ããªã±ã¼ã·ã§ã³ãã¡ã¤ã¢ã¦ã©ã¼ã«ï¼WAFï¼ã¢ã¸ã¥ã¼ã«ãæè¼ãããã¨ãçºè¡¨ãããããã«ããããã¼ã¿ã»ã³ã¿ã¼ã«ç½®ããã¦ãããªãªã¸ãã«ã®ãµã¼ãã«å±ãåã«ãã¯ã©ã¦ãå´ã§æ»æãæ¤åºããããã¯ã§ããã¨ããã ã¢ã«ãã¤ã§ã¯ãä¸ç70ã«å½ã«ç´4ä¸8000å°ã®Edge Platformãé ç½®ããã¤ã³ã¿ã¼ããããä»ããã³ã³ãã³ãã®é«éé ä¿¡ãµã¼ãã¹ãæä¾ãã¦ãããEdge Platformã§ã¯ããã«ããªã³ã©ã¤ã³ã·ã§ããã³ã°äºæ¥è åãã«ããã¤ãã®ãã¼ã«ããããæä¾ãã¦ãããã¢ã¯ã»ã¹ãã¦ããã¦ã¼ã¶ã¼ã®å±æ§ã«å¿ãã¦åªå é ä½ä»ããè¡ã£ããããã£ã³ãã¼ã³ã¨é£åããã³ã³ãã³ããæä¾ããã¨ãã£ããããç´°ããªãµã¼ãã¹æä¾ãå¯è½ã¨ããã æ°ãã«æä¾ãããWAFã¢ã¸ã¥ã¼ã«ãããã®
ã¢ã«ãã¤æ ªå¼ä¼ç¤¾ã¯5æ20æ¥ãã¯ã©ã¦ããã¼ã¹ã®Webã¢ããªã±ã¼ã·ã§ã³ãã¡ã¤ã¢ã¦ã©ã¼ã«ã¢ã¸ã¥ã¼ã«ï¼ä»¥ä¸ãWAFã¢ã¸ã¥ã¼ã«ï¼ãçºè¡¨ãããã¢ã«ãã¤ã®ãµã¼ãã¼ãããã¯ã¼ã¯ãEdgePlatformãä¸ã«å®è£ ãããWAFã§ãæ»æãã©ãã£ãã¯ããã¼ã¿ã»ã³ã¿ã¼ã«å±ãåã«é²å¾¡ã§ããã®ãç¹é·ããããå©ç¨ãã¦ãã¯ã©ã¦ãä¸ã§å®å ¨ãªã¯ã¬ã¸ããã«ã¼ã決æ¸ç¨ãããã¯ã¼ã¯ãæä¾ãããPCIDSSå®å ¨æºæ ãµã¼ãã¹ãããåæ¥ããã¹ã¿ã¼ãããã WAFã¢ã¸ã¥ã¼ã«ã¯ãSQLã¤ã³ã¸ã§ã¯ã·ã§ã³ãã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ãªã©ã®HTTPæ»æãããWebã¢ããªã±ã¼ã·ã§ã³ãé²ãããã®ã»ãã¥ãªãã£ã¢ã¸ã¥ã¼ã«ãä¸çä¸ã®ã¢ã«ãã¤ãããã¯ã¼ã¯ä¸ã«4ä¸å°åæ£ããããµã¼ãã¼ç¾¤ã»EdgePlatformä¸ã«å®è£ ãããããã¼ã¿ã»ã³ã¿ã¼å´ã«å°ç¨ãã¼ãã¦ã§ã¢ãè¨ç½®ããªãã¦æ¸ãã»ããä¿å®ã»éç¨ãã¢ã«ãã¤ãè¡ããããã¦ã¼ã¶ã¼ã¯WAFã®éç¨ã³ã¹ããåæ¸ã§ããã
ããªãªã¼ã¹å¾1ã«æ以å ã®ãããé©ç¨ããWAFã®å°å ¥ãã1æ¥1åã®ãã°ã®ã¬ãã¥ã¼ãââãPCI DSSï¼PCIãã¼ã¿ã»ãã¥ãªãã£åºæºï¼ã«ã¯ï¼æ å ±ã»ãã¥ãªãã£ã®åºæºãå ·ä½çã«å®ãããã¦ãããç±³å½ã§ã¯ããæ°å¹´ï¼PCIDSSã®èªå®ãåå¾ããä¼æ¥ãæ¥å¢ãå½å ã§ã注ç®ãé«ã¾ã£ã¦ãããã©ã®ãããªè¦ä»¶ããããã解説ãï¼è¦ä»¶ãæºããããã®è£½å/ãµã¼ãã¹ãç´¹ä»ããã ãPCI DSSãæ¹è¨ã®è£å´ ä¸æ©å«ãªããã®ã¹ãã¼ãã§å¹´æ¬¡ç·ä¼ãéå¹ âä»®æ³åâã¯åãæ®ããã PCI DSSã¨10ã®ç¥è©± ã³ã³ãµã«ã¿ã³ãã¯ä¸è¬ä¼æ¥ã¸ã®é©ç¨ãä¿ã PCI DSSã®æ¦è¦ éåããã¨ç½°éãæå®³è³ åã課ãããã ISMSããã©ã¤ãã·ã¼ãã¼ã¯ã¨ã¯å ¨ãéã å°å ¥æã¯èªå·±å診票ã§ãã§ã㯠éç¨æã¯ååæãã¨ã«ã¹ãã£ãã³ã° æ å ±ã·ã¹ãã ã«å¤§ããªã¤ã³ãã¯ã ã6åã®ç®çãã¨ã12åã®è¦ä»¶ã ç®ç1ï¼å®å ¨ãªãããã¯ã¼ã¯ã®æ§ç¯ã»ç¶æ
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}