AWSãã½ã¼ã·ã£ã«ãã°ã¤ã³å¯è½ã«ãã¤ã¾ãAWSãäºå®ä¸ã®MBaaSã«ãªã£ã
ã»ãã¨ã¯è¨ããããã¨ã¯è¡¨é¡ã ãã§çµäºãªãã§ãããã¨ããããï¼è¡ç¨åº¦ã§ã¾ã¨ãã
- AWSãµã¼ãã¹ç¾¤ã®APIã¸ã¢ã¯ã»ã¹ããããã®ãã¼ã¯ã³ãçºè¡ãããµã¼ãã¹ï¼STSï¼ããå¤é¨ã®ã¢ã¤ãã³ãã£ãã£ãããã¤ãã¨ã®é£æºãéå§ããï¼FacebookãGoogleãªã©ï¼
- ã¤ã¾ããã¨ã³ãã¦ã¼ã¶ã®èªè¨¼ã®ããã®ä¸éãµã¼ãï¼EC2ãå«ãï¼ãç¨æããªãã¦ããAWSãµã¼ãã¹ãç´æ¥å©ç¨ããã¢ãã¤ã«ã¢ããªãä½ããããã«ãªã£ãï¼ä¾ï¼FacebookIDã§ãã°ã¤ã³ããS3ä¸ã«å²ãå½ã¦ãããã¦ã¼ã¶å°ç¨ã®ã¨ãªã¢ã«åçããã¡ã¤ã«ãã¢ãããã¦å ±æããã¢ããªãªã©ï¼ã
- ããã£ã¦ãããããMobile Backend as a Service (MBaaS) ãããªãã®ï¼
S3ã®èªã¿æ¸ããç´ã§ã§ããã¨ããã ãã§MBaaSã¨ããã«ã¯ã¡ãã£ã¨ã¾ã ã¾ã ããç¥ããªãã§ãããã¨ããããã¨ã³ãã¦ã¼ã¶ã¬ãã«ã§ã¢ã¯ã»ã¹å¶å¾¡ãå¯è½ãªã¯ã©ã¦ãã¹ãã¬ã¼ã¸ãæä¾ãããããã«ãªã£ãã¨ãããã¨ã¯ãéè¦ãªä¸æ©ã ã¨æãã¾ãããã¨ã¯DynamoDBãã¡ããã¨ä½¿ããããã«ãªãã¨ããªããã¯ãã«ã«ãªãããã§ãããç¾å¨STSèªä½ã¯DynamoDBã¸ã®ã¢ã¯ã»ã¹ããµãã¼ããã¦ãããã®ã®ãä»ã®ã¨ããã¬ã³ã¼ãã¬ãã«ã§ã¢ã¯ã»ã¹å¶å¾¡ãã§ããããã§ã¯ãªãããã§ãã
ãªããä»åã¯çºè¡¨ãããã¹ããã¯ã ãè¦ã¦è¨äºæ¸ãã¦ã¾ããã³ã¼ãæ¸ãã¦åããã¦ããããããªãã§ãããªã®ã§å®éãã£ã¦ã¿ãããããªãã話ãããªãã£ãããã¨ãããã¨ãããããããã¾ãããæã«ãªã£ãããµã³ãã«ã§ãåããã¦ã¿ããããªãããã§ãããããã誰ãããã£ã¦ããããªãã°ã¾ãããã§ããã§ãã
ãããã¯ã©ã¤ã¢ã³ãå´ã®ã¢ããªã§å¾ãtokenããµã¼ããµã¤ãã«æ¸¡ãã¦èªè¨¼ãã£ã¦ã®ãæ¨ãé²ãã¦ãã®ã¯ãè¥å¹²æ°ã«ãªãæã§ã¯ããã¾ããOpenID Connectã®å ´åã¯ID Tokenã®ä¸ã«aud(audience:çºè¡å )ã®æ å ±ãæå®ããã¦ããã®ã§å¹¾åãã·ã§ãããããããã¯ã©ã¦ãä¸ã®ãµã¼ãã¹ï¼AWSï¼ã¨ã¦ã¼ã¶ã®æã¤ããã¤ã¹å ã®ã¢ããªãåä¸ã®audienceã¨ãã¦å¦çãããã®ã«éåæãæãããã¨ãããããã§ãã
ä¸å¿AWS iOS SDKã«å«ã¾ãã¦ããSecurity Token Serviceã®ããããã¡ã¤ã«ã«ã¯ãwebIdentiyTokenã¨ãã¦OpenID Connectã®ID Tokenãæå®ã§ãããããªã³ã¡ã³ããæ¸ãã¦ããã¾ãããåè¿°ã®ããã«ãå®éSDKã触ã£ã¦ã¿ããããããªãã®ã§ãããåããã©ããã¯ãããã¾ãããã©ã