å¯ããã²ã¨ãã身ã«ãã¿ããããçæ§ããããéããã§ããããã
ããã°ã§ã¯ã¯ããã¾ãã¦æè¡4課ã®é
äºã§ãã
å»ã10æ13æ¥ã«AWS Certificate Manager(以é ACM)ã«ãµã¼ããã¼ãã£ã®ãµã¼ã証ææ¸ãã¤ã³ãã¼ãã§ããæ©è½ã追å ããã¾ããã
ããã«ããããã¾ã§ã¯ããã¸ã¡ã³ãã³ã³ã½ã¼ã«ãã確èªã§ããªãã£ãAWSã«ã¤ã³ãã¼ãããããµã¼ããã¼ãã£ã®ãµã¼ã証ææ¸ã®æå¹æéãå©ç¨ç¶æ³ãªã©ã確èªã§ããããã«ãªããµã¼ã証ææ¸ã®ç®¡çãé常ã«æ¥½ã«ãªãã¾ããã
ã§ã¯å®éã«ã¤ã³ãã¼ãã®æé ã«ã¤ãã¦ã¿ã¦ããã¾ãããã
ãµã¼ããã¼ãã£ã®ãµã¼ã証ææ¸ã®åå¾
å社ã§æ§ã
ãªç¨®é¡ã®ãµã¼ã証ææ¸ãç¨æããã¦ããã¾ãã®ã§ç¨éã«åããã¦åå¾ãã¾ãããã
注æç¹ã¨ãã¦è¤æ°å°ã®ãµã¼ãã«ãµã¼ã証ææ¸ãã¤ã³ã¹ãã¼ã«ããå ´åããã¼ããã©ã³ãµãCDNãµã¼ãã¹ã«ã¤ã³ã¹ãã¼ã«ããå ´åãåãã³ãã¼ãã¨ã«ãµã¼ã証ææ¸ã®ã©ã¤ã»ã³ã¹å½¢æ
ããã¨ãªãã¾ãã
ã©ã¤ã»ã³ã¹éåã«ãªããªãå½¢ã§ãå©ç¨ããã ãããã«ãåãã³ãã¼ã«ã確èªã®ä¸ãå©ç¨ãã ããã
ãã¡ã¤ã«ã®æºå
証ææ¸ã®åå¾ãå®äºãããããããã¤ã³ãã¼ãä½æ¥ã«ãªãã¾ãã
å¿
è¦ãªãã¡ã¤ã«ã¯ä»¥ä¸ã®3ã¤ã§ãã
- 証ææ¸ãã³ãã¼ããéããã¦ãããµã¼ã証ææ¸
- 証ææ¸ãã³ãã¼ããæå®ãããä¸é証ææ¸
- CSRä½ææã«ä½æããç§å¯éµ
ããããå ¨ã¦pemå½¢å¼ã§æºåãã¾ãããã ã¾ããç§å¯éµã¯ãã¹ãã¬ã¼ãºãæããå½¢ã§ãç¨æãã ããã
ã¤ã³ãã¼ãç»é¢ã¸ç§»å
ããã¸ã¡ã³ãã³ã³ã½ã¼ã«ããACMã®ç®¡çç»é¢ã¸ã¨ç§»åã証ææ¸ã®ã¤ã³ãã¼ã
ãã¯ãªãã¯ãã¾ãã
ACMã§ç®¡çãã¦ãã証ææ¸ããªãå ´åã¯ä»¥ä¸ã®ã¹ã¯ãªã¼ã³ã·ã§ããã®ããã«
æ¢ã«ACMã§ç®¡çãã¦ãã証ææ¸ãããå ´åã¯ä»¥ä¸ã®ã¹ã¯ãªã¼ã³ã·ã§ããã®ãããªç»é¢ã表示ããã¾ãã
ãããã証ææ¸ã®ã¤ã³ãã¼ã
ã®ä½ç½®ãç°ãªã£ã¦ãã¾ãã®ã§ã注æãã ãã
åãã¡ã¤ã«ãè²¼ãä»ã
äºåã«æºåããããããã®ãã¡ã¤ã«ãããã¹ãã¨ãã£ã¿ãªã®ã§éãä¸èº«ãããããã³ãã¼ã¢ã³ããã¼ã¹ããã¾ãã
ä¸ããé çªã«è¨¼ææ¸ãã¡ã¤ã«ãç§å¯éµã®ãã¡ã¤ã«ãä¸é証ææ¸ã®ãã¡ã¤ã«ãã³ãã¼ã¢ã³ããã¼ã¹ããã¦ããã¾ãã
ã³ãããå®äºãããã¬ãã¥ã¼ã¨ã¤ã³ãã¼ã
ãã¯ãªãã¯ãã¾ãã
ã¤ã³ãã¼ããã証ææ¸å 容ã確èª
æ£å¸¸ã«ã¤ã³ãã¼ãã§ããã¨ãã¡ã¤ã³åãæå¹æéã¾ã§ã®æ¥æ°ãªã©è¨¼ææ¸ã®æ
å ±ã表示ããã¾ãã
ãã¡ã¤ã³åã«ééãããªããã¨ã確èªãã¦ã¤ã³ãã¼ã
ãã¯ãªãã¯ãã¾ãããã
ã¤ã³ãã¼ãå®äº
ç¡äºã¤ã³ãã¼ããå®äºããã¨è¨¼ææ¸ä¸è¦§ã«è¡¨ç¤ºãã種é¡ãã¤ã³ãã¼ãæ¸ã¿ã¨ãªã£ããã®ã表示ããã¾ãã
é¸æè¢å±éããã¨ãã¡ã¤ã³åãæå¹æéãæå¹æéã¾ã§ã®æ¥æ°ãARNãªã©è©³ç´°ãªæ
å ±ã表示ããã¦ãã¾ãã
ã¾ãã使ç¨ä¸
ã®é
ç®ã«ã¤ãã¦ã¯ELBãCloudFrontãªã©ã«é©ç¨ããã¦ãããå¦ãã示ãã¦ãã¾ãã
注æç¹
ACMã¯ãªã¼ã¸ã§ã³ä¾åã®ãµã¼ãã¹ã§ãã
æ±äº¬ãªã¼ã¸ã§ã³ã«ã¤ã³ãã¼ããã証ææ¸ã¯æ±äº¬ãªã¼ã¸ã§ã³ã®ELBã«ã®ã¿é©ç¨ã§ãã¾ãã
ä»ã®ãªã¼ã¸ã§ã³ã§è¨¼ææ¸ãå©ç¨ããå ´åã¯åãæé ã§å¥ãªã¼ã¸ã§ã³ã«ã¤ã³ãã¼ãããå¿
è¦ãããã¾ãã
ã¾ããCloudFrontãå©ç¨ããå ´åã¯ãã¼ã¸ãã¢ã®ACMã«ã¤ã³ãã¼ãããå¿
è¦ãããã®ã§ããã¾ã注æãå¿
è¦ã§ãã
ãªããã¤ã³ãã¼ããã証ææ¸ãã¡ã¤ã«ãç§å¯éµã®ãã¡ã¤ã«ã¯ACMãããã¦ã³ãã¼ããããã¨ã¯ã§ãã¾ããã
EC2ã«ã¤ã³ã¹ãã¼ã«ããå¿
è¦ãããå ´åã¯åãæ±ãã«æ³¨æã大åã«ä¿åãã¦ããã¾ãããã
ã¾ããç¾å¨ã®ã¨ããã¤ã³ãã¼ãããããµã¼ã証ææ¸ã¯æéãè¿«ãã¨ACMã®ç®¡çç»é¢ã«è¦åã表示ããã¾ããCloudWatchãSNSãå©ç¨ãã¦éç¥ãããã¨ã¯ã§ãã¾ããã 証ææ¸ãã³ãã¼ããéç¥ãããæ´æ°ã®ãç¥ããã¯ACMã«è¡¨ç¤ºãããè¦åãè¦è½ã¨ããªãããã«ãã¾ãããã
æ´æ°ããå ´åã¯è¨¼ææ¸ãã³ãã¼ãã証ææ¸ãåå¾ãåã¤ã³ãã¼ããããã¨ã§æ°ãã証ææ¸ã«å·®ãæ¿ãããã¾ãã Amazonãçºè¡ãã証ææ¸ã¨ãã¨ãªãèªåæ´æ°ããã¾ããã®ã§æ³¨æãå¿ è¦ã§ãã
ã¾ã¨ã
ã¤ã³ãã¼ãä½æ¥ãé常ã«ç°¡åã«è¡ããããã«ãªã£ãã®ã§ãµã¼ããã¼ãã£è£½ã®ãµã¼ã証ææ¸ãããã¾ã§ããæ軽ã«è¨¼ææ¸ãå©ç¨ã§ããããã«ãªãã¾ããã
ACMãå©ç¨ãããã¨ã§ãªã¼ã¸ã§ã³ãã¨ã«ãµã¼ã証ææ¸ãä¸æ¬ç®¡çã§ããããã«ãªãããã¾ã§ä»¥ä¸ã«æéãªã証ææ¸ã管çãããã¨ãã§ãã¾ãã
ACMããã¾ãæ´»ç¨ã証ææ¸ã®ãã£ãã失å¹ããªããããã§ããã