å æ¥ããã«ãŒããã€ã³ãã¯ãProofpoint Email Fraud Defenseãå©çšããŠãã325ã®é¡§å®¢ã®DMARCããŒã¿ãè©äŸ¡ããéä¿¡ã«äœ¿çšãããŠãããœãŒã¹ã調ã¹ãŸããããããã®é¡§å®¢ã®ãã¡ã€ã³ããéä¿¡ãããŠããã¡ãŒã«ã®ãœãŒã¹ã¯ãå¹³åããŠä»¥äžã®ãããªå²åã§ããã
- ã¢ããªã±ãŒã·ã§ã³/ã·ã¹ãã (42%)
- ããŒã±ãã£ã³ã° (57%)
- ãšã³ããŠãŒã¶ãŒ (1%)
éä¿¡ã¡ãŒã«ã®42%ãã¢ããªã±ãŒã·ã§ã³ãå ããŠããããšãããã¡ãã»ãŒãžã³ã°/ã»ãã¥ãªã㣠ããŒã ã®æ¥åã¯ãããã«åããããŠããŸããã¢ããªã±ãŒã·ã§ã³çæã¡ãã»ãŒãžã®ãã¡ãçµç¹ã®ãã¡ã€ã³ããã©ããéä¿¡ããŠã©ããéä¿¡ããªããã¯ãåŸæ¥ã¯ãªã³ãã¬ãã¹ã®SMTPãªã¬ãŒã§å¶åŸ¡ã§ããŸããããã®å¶åŸ¡ãããããšã§ãã¡ãŒã«ã«ããããã©ã³ã ã¢ã€ãã³ãã£ãã£ãç°¡åã«ä¿è·ã§ããŸããããããã§ããªããã°ãçµç¹ã®è©å€ãšæ©å¯ããŒã¿ã¯å±éºã«ãããããŸããããã«ãåä¿¡è ãè©æ¬ºã«éããããããããŸãã
ããããã¢ããªã±ãŒã·ã§ã³ãé²åããŠããäžã§ãããŒã ã¯ãã®å¶åŸ¡ã®ç¶æã«èŠåŽããŠããŸããã¡ãã»ãŒãžã³ã°ãŸãã¯ã»ãã¥ãªãã£ã®æ åœè ãšããŠãã¢ããªã±ãŒã·ã§ã³ã®ã¢ããã€ãŒãŒã·ã§ã³ãšããããçµç¹ã®ã¡ãŒã« ã¢ã€ãã³ãã£ãã£ã®å¶åŸ¡ãç¶æã§ããèœåã«ã©ã圱é¿ãããã«ã€ããŠæžå¿µãæ±ããŠããã®ãªããããã¯ããªãã ãã§ã¯ãããŸããã
ãã®ããã°èšäºã§ã¯ãã¡ãŒã«ãªã¬ãŒã®å¶åŸ¡ãã©ãå€åããŠããã®ãã説æããŸãããŸããçµç¹ãä¿è·ããããã«å¶åŸ¡ãåãæ»ãæ¹æ³ã«ã€ããŠãè§ŠããŸãã
ãã€ãŠã¯ãã®å¶åŸ¡ã§ä¿è·
ãããŸã§ã¯ãããŒã ã¯ä»¥äžã®å¶åŸ¡ãå®è£ ããŠç¶æããããšã§ãã¢ããªã±ãŒã·ã§ã³çæã¡ãã»ãŒãžã管çããŠããŸããã
DMARCãæåŠãããªã·ãŒïŒããã«ãããæ»æè ã«ãããã¡ã€ã³ããªãããŸãããé²ããŸãã
ã¢ãŠãããŠã³ã ãã£ã«ã¿ïŒãã®ãã£ã«ã¿ã¯ãè¿·æã¡ãŒã«ããã«ãŠã§ã¢ããããã¯æ©å¯ããŒã¿ããæ æãããã¯å¶çºçã«éä¿¡ãããã®ãé²ããŸãã
ã¢ã¯ã»ã¹å¶åŸ¡ã«ããå¶éïŒãã®å¶éãçšããŠãSMTPãªã¬ãŒã䜿çšã§ããã¢ããªã±ãŒã·ã§ã³ãã·ã¹ãã ãå¶åŸ¡ããŸãã

ãªã³ãã¬ãã¹ã®ãœãªã¥ãŒã·ã§ã³ãçšããåŸæ¥ã®ãªã¬ãŒ
ã¢ããªã±ãŒã·ã§ã³ã®ã¢ããã€ãŒãŒã·ã§ã³ãã¡ãŒã« ã¢ã€ãã³ãã£ãã£ã«ãªã¹ã¯ããããããä»çµã¿ãšããŠã以äžã®3ã€ãæããããŸãã
1: ã¯ã©ãŠããžã®ç§»è¡ïŒ
ãªã³ãã¬ãã¹ã®ã¢ããªã±ãŒã·ã§ã³ã¯ãã¯ã©ãŠãç°å¢ãžç§»è¡ããŠããŸããããããã¯ã©ãŠãã§ã¯ãã»ãã¥ã¢ãªSMTPãªã¬ãŒãªãã·ã§ã³ã¯äœ¿çšã§ããŸããã
çè«äžã¯ãåŸæ¥ã®ãªã³ãã¬ãã¹ã®SMTPãªã¬ãŒã«ãããDMARCãšã¢ãŠãããŠã³ã ãã£ã«ã¿ãªã³ã°ãç¶æã§ããŸããããããå€éšã¯ã©ãŠãç°å¢ããã¡ãŒã«ããªã¬ãŒãããã®ã¯å±éºã§ããæ¬æ¥ã¯ãªãŒãã³ãªã¬ãŒã§ã¯ãªããã®ããªãŒãã³ãªã¬ãŒåããããã§ãã

ãªã³ãã¬ãã¹ã®ãªã¬ãŒãå€éšç°å¢ã«ãããã®ã¯é«ãªã¹ã¯
2: ã¡ãŒã« ãµãŒãã¹ãããã€ããŒïŒESPïŒ
ã¡ãŒã«ãµãŒãã¹ãããã€ããŒïŒESPïŒã¯ã確ãã«DMARCæºæ ã®ã¡ãŒã«ãéä¿¡ããŸãããããããã®å Žåã顧客ã¯ãSPFã¬ã³ãŒãçµç±ã§åºãå ±æãããŠããã€ã³ãã©ãæ¿èªããå¿ èŠããããŸããæ®å¿µãªãããSPFã¬ã³ãŒãã¯ãæ»æè ã«ãèŠããŠããŸã£ãŠããŸãããŸããå€ãã®å Žåã»ãã¥ã¢ã§ãªããã¢ãŠãããŠã³ã ãã£ã«ã¿ãªã³ã°ããããŸããã

ESPã¯ãã»ãã¥ãªãã£ã§ã¯ãªããé ä¿¡çãéèŠããŠããŸãã
3: SaaS
SaaSã¢ããªã±ãŒã·ã§ã³ã¯ãµãŒãããŒã㣠ãã³ããŒã«ã¢ãŠããœãŒã·ã³ã°ãããŠããŸããESPã«ãšã£ãŠãã¡ãŒã«ã»ãã¥ãªãã£ãæåªå äºé ã§ãªãã®ãšåæ§ããããããã³ããŒã®ã»ãšãã©ã補åéçºãšå·®å¥åã«æ³šåããŠããããã§ãã
- SaaSãããã€ããŒã¯å€ãã®å ŽåãDMARCæºæ ã®ã¡ãŒã«ãéä¿¡ã§ããŸããããã®ãããDMARCãæåŠãããªã·ãŒã®å®è£ ãšç¶æã¯ç°¡åã§ã¯ãããŸããã
- ESPã®å Žåãšåæ§ããã®ã·ããªãªã®å ŽåãSPFã¬ã³ãŒãã§ã»ãã¥ã¢ã§ãªãã€ã³ãã©ã®æ¿èªãå¿ èŠãšãªããŸãã

SaaSãããã€ããŒã¯ãã¡ãŒã«ã§ã¯ãªã補åéçºã«æ³šåããŠããŸã
Proofpoint SERãå¶åŸ¡ãæäŸ
éåžžã«å€ãã®èª²é¡ãããããšãããã¡ãã»ãŒãžã³ã°/ã»ãã¥ãªã㣠ããŒã ãã¢ããªã±ãŒã·ã§ã³ ã¡ãŒã«ã®å¶åŸ¡ãåãæ»ãããšã¯ãé£ããæ³šæã§ãããããããã«ãŒããã€ã³ãã¯ãProofpoint SER (Secure Email Relay)ã§ãããå®çŸããŸãããSERã¯ä»¥äžã®ãããªåŽé¢ã§ä»æ¥ã®èª²é¡ã解決ããŸãã
ã¢ããã€ãŒãŒã·ã§ã³ããããªã¬ãŒ
ãªã¬ãŒçµç±ã§ã®ã¢ããªã±ãŒã·ã§ã³ ã¡ãŒã«ã®å¶åŸ¡ã®ååã¯ãå¿ ãããå€ãã£ãŠã¯ããŸããããã ãããªã¬ãŒã®å°å ¥æ¹æ³ã»ç®¡çæ¹æ³ã¯å€ãããŸããã
æ§é ã®èгç¹ããèŠããšãã¢ããªã±ãŒã·ã§ã³ã®å é²åãšä¹±ç«ã«å¯Ÿå¿ããæé©ãªæ¹æ³ã¯ãããã ã¢ã³ã ã¹ããŒã¯ïŒhub and spoke)ãã¢ãã«ã§ããäžå¿ãæ ç¹ãšãªãå Žæã¯ä»¥äžã®ãšããã§ãã
- ãã¹ãŠã®ã¡ãŒã«ã¯ããœãŒã¹ç°å¢ã«ãããããããããããééããŸããããã¯ãã¡ãŒã«ã®ãã£ã«ã¿ãªã³ã°ãããªã·ãŒã®é©çšããã€ããŒãã®æå·åããã®ä»ã®æ©èœã䜿çšãããäžå¿å°ã§ãã
- ãã¹ããŒã¯ãã¯ãã¡ãŒã«ãããŸããŸãªç°å¢ããã¡ã€ã³ã®ããããã«éä¿¡ãããªãã·ã§ã³ã®çµè·¯ã§ããäŸãã°ã軜éã®ãããã¯ãŒã¯å ãã¹ããŒã¯ãã¯ãæ°çŸãŸãã¯æ°åã®ã¢ããªã±ãŒã·ã§ã³ããã¡ãŒã«ãåéã§ããŸããç¶ããŠã顧客ã®ãããã¯ãŒã¯ãšãããããåŸæ¥ããä»çµã¿ãæ£èŠåã§ããŸãããŸãã¯ãAmazon Simple Email Service (SES)ã¯ããã¹ããŒã¯ããšããŠãSES Mail Managerã䜿çšããŠæ¡ä»¶ã«åŸã£ãŠãã¡ãŒã«ãããããã«ã«ãŒãã£ã³ã°ããããšãã§ããŸãã
ã»ãã¥ãªãã£
äžè¬çã«ãã¢ããã€ãŒãŒã·ã§ã³ã«ã€ããŠèªããšããããã»ãã¥ã¢ã«ãªãããšãæ³åããŸããããããã¡ãŒã«ãªã¬ãŒã«åœãŠã¯ãŸããããã€ãã®åŽé¢ãèŠãŠã¿ãŸãããã
- ãœãªã¥ãŒã·ã§ã³ã®éçºãšå°å ¥ããã»ã¹ã¯ãææ°ã®ã»ãã¥ãªãã£èŠæ Œãšãã¹ããã©ã¯ãã£ã¹ã«æºæ ããŠããå¿ èŠããããŸããäŸãã°ãProofpoint SERã¯ãã¢ããªã·ãã¯ãªã¡ãŒã«ãµãŒããŒã§ã¯ãªãããã€ã¯ããµãŒãã¹ã䜿çšããŠã¯ã©ãŠãã§æ§ç¯ãããŠããŸãããã€ã¯ããµãŒãã¹ã®ã¢ãŒããã¯ãã£ãæ¡çšããããšã§ãæ»æå¯Ÿè±¡é åãçãããªãããç®çã«åã£ãèšèšã®å°åã·ã¹ãã ãæ§ç¯ã§ããŸãããŸãããã€ã¯ããµãŒãã¹ã¯ãå é²çãªCI/CDã·ã¹ãã ã䜿çšããŠããŸãããã®ãããããŠã³ã¿ã€ã ãªãããŸãã¯ãããããã§ãè¿ éã«ã»ãã¥ãªãã£ããããé©çšããã倿Žããããã€ãããã§ããŸãã
- ãã®ãœãªã¥ãŒã·ã§ã³ã§åŠçãããã¡ãŒã«ã¯ããšã³ãããŒãšã³ãã§æå·åããå¿ èŠããããŸããã€ã³ããŠã³ãã®æ¥ç¶ã¬ãã«ã§ã¯ã峿 ŒãªèªèšŒãã¢ããªã±ãŒã·ã§ã³ã«å¿ èŠã§ãïŒTLS 1.2ãæšå¥šãããã®ã¯ãã以äžïŒã
- ãœãªã¥ãŒã·ã§ã³ã«ã¯ãè¿·æã¡ãŒã«ïŒãASãïŒããã«ãŠã§ã¢ïŒãAVãïŒã®ãã£ã«ã¿ãªã³ã°ãªã©ã®ã»ãã¥ãªãã£æ©èœãå¿ èŠã§ãããŸããæ©å¯æ å ±ãä¿è·ããæ å ±æŒãã察ç ïŒDLPïŒæ©èœãå°å ¥ããå¿ èŠããããŸããã·ã¹ãã ããã€ã³ã¿ãŒãããã«éä¿¡ãããã¡ãŒã«ã¯ã6ãæããšã«å€æŽãããã2048ãããã®éµã§DKIM眲åããå¿ èŠããããŸããDKIM2ãä»åŸã©ã®ããã«å±éããŠããããã芧ãã ããã
ãµãŒãã¹
人çèŠçŽ ãé¿ããè¡ã¯ãããŸããããªã³ãã¬ãã¹ã®ãªã¬ãŒããããå Žåã¯ç¹ã«ããã§ããããããã·ã¹ãã ã¯å€ãã®å ŽåãããŸããŸãªã¡ãŒã«ãã¢ã¯ãã£ãã«åŠçããŠããŸããããã«ã¯ä»¥äžãå«ãŸããŸãã
- æ°çŸïŒãªããæ°åïŒã®ã¢ããªã±ãŒã·ã§ã³ã®ã¡ãŒã«ïŒç§»è¡æŠç¥ã«å¿ããŠãããããã¢ããªã±ãŒã·ã§ã³ã®ãªãŒããŒã«ç¢ºèªããç§»è¡ããã»ã¹ã«ãããŠãµããŒããå¿ èŠã«ãªãå ŽåããããŸãã
- ãã¹ã¯ãŒããªã»ãããMFAã³ãŒããªã©ã®ããã·ã§ã³ã¯ãªãã£ã«ã«ãªã¡ãŒã«ïŒäžéšã®ã¢ããªã¯ãåŠçãç§»è¡ã®ã¿ã€ãã³ã°ã«ãããŠåªå ããå¿ èŠããããŸãã

Proofpoint SERã®ããã ã¢ã³ã ã¹ããŒã¯ãã¢ãŒããã¯ãã£
ãã«ãŒããã€ã³ãã§ã¡ãŒã«ã®ä¿è·ãåäž
Proofpoint SERã«ãããçµç¹ã¯ãçµç¹ã代衚ããŠã¡ãŒã«ãéä¿¡ããããã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ããµãŒãããŒãã£SaaSããŒãããŒã®ç®¡çãåäžãããããšãã§ããŸããProofpoint SERã«ããããããã®ãœãŒã¹ã®ããããã䟵害ãããŠããå³åº§ã«åæ¢ãããããšãã§ããŸããããã¯ããããŸã§ã¯å¶åŸ¡å€ã§ãããªãããããã©ã³ãã«éå€§ãªæå®³ããããããããµãŒãããŒã㣠ã¢ããªã±ãŒã·ã§ã³ã«å¯Ÿãéåžžã«éèŠã§ãã
ãã®ããããªã³ãã¬ãã¹ã®ãªã¬ãŒã®å»æ¢ãDKIMãçšããã»ãã¥ãªãã£ã®åäžããŸãã¯ãã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ ã¡ãŒã«ã®å¶åŸ¡åäžãèšç»ããŠããçµç¹ã«ãšã£ãŠãProofpoint SERã¯ããããã®ãœãªã¥ãŒã·ã§ã³ã§ãã
詳现ã«ã€ããŠ
ã·ã§ãŒãåç»ãŸãã¯Proofpoint Secure Email Relay補åããŒãžãã芧ãã ããããŸãããã«ãŒããã€ã³ãã®å¶æ¥æ åœè ãŸã§ãåãåãããã ãããProofpoint SERãçµç¹ã«ãšã£ãŠãµããããããŒã«ã§ããããæ¡å ãããŠããã ããŸãã