ç®æ¬¡
æå·åãšã¯ïŒ
æå·åãšã¯ãããŒã¿ãèªã¿åãå¯èœãªåœ¢åŒããæå·åããŒã䜿çšããŠåŸ©å·åãããåŸã«ã®ã¿èªã¿åãããšã³ã³ãŒã圢åŒã«å€æããããŒã¿ã»ãã¥ãªãã£ã®æ¹æ³ã§ããæå·åã¯ãã¡ãã»ãŒãžãæ å ±ããšã³ã³ãŒãããäžè¬çãªããã»ã¹ã§ãããèš±å¯ãããåœäºè ã®ã¿ãã¢ã¯ã»ã¹ã§ããèš±å¯ãããŠããªãè ã¯ã¢ã¯ã»ã¹ã§ããŸããã
广çãªã»ãã¥ãªãã£å¯ŸçãšããŠãæå·åã¯æ©å¯ããŒã¿ãçãŸããã䟵害ããããããã®ãé²ããåã ã®ãŠãŒã¶ãŒããå€§äŒæ¥ã«è³ããŸã§ããã©ãŠã¶ãšãµãŒããŒéã§éä¿¡ããããŠãŒã¶ãŒæ å ±ãä¿è·ããããã«åºã䜿çšãããŠããŸãã

ãµã€ããŒã»ãã¥ãªãã£æè²ãšãã¬ãŒãã³ã°ãå§ããŸããã
ç¡æãã©ã€ã¢ã«ã®ãç³ãèŸŒã¿æé
- åŒç€Ÿã®ãµã€ããŒã»ãã¥ãªã㣠ãšãã¹ããŒãã貎瀟ã«äŒºããã»ãã¥ãªãã£ç°å¢ãè©äŸ¡ããŠãè åšãªã¹ã¯ã蚺æããŸãã
- 24 æé以å ã«æå°éã®æ§æã§ã30 æ¥éãå©çšããã ãããã«ãŒããã€ã³ãã®ãœãªã¥ãŒã·ã§ã³ãå°å ¥ããŸãã
- ãã«ãŒããã€ã³ãã®ãã¯ãããžãŒãå®éã«ãäœéšããã ããŸãã
- çµç¹ãæã€ã»ãã¥ãªãã£ã®è匱æ§ã«é¢ããã¬ããŒãããæäŸããŸãããã®ã¬ããŒãã¯ããµã€ããŒã»ãã¥ãªãã£æ»æã®å¯Ÿå¿ã«çŽã¡ã«ã掻çšããã ãããšãã§ããŸãã
ãã©ãŒã ã«å¿ èŠäºé ããå ¥åã®äžããç³èŸŒã¿ãã ããã远ã£ãŠãæ åœè ãããé£çµ¡ãããŠããã ããŸãã
Proofpointã®æ åœè ããŸããªããé£çµ¡ããããŸãã
æå·åã®ä»çµã¿
æå·åã¯ã人éãèªã¿åããå¹³æããæå·æããšããŠç¥ãããçè§£äžèœãªããã¹ãã«å€æããŸããæå·åã¯ãå¹³æãæå·æã«ãšã³ã³ãŒãããæå·åã¢ã«ãŽãªãºã ãšããŠç¥ãããæå·æ°åŠã¢ãã«ã䜿çšããŠæ©èœããŸããããŒã¿ãåã³å¹³æã«ãã³ãŒãããã«ã¯ãã¢ã«ãŽãªãºã ã«ãã£ãŠäœæãããäžé£ã®æ°åããã¹ã¯ãŒãã§ãã埩å·åããŒã䜿çšããå¿ èŠããããŸãã
ããŒã¿ã»ãã¥ãªãã£ã®éèŠãªéšåãšããŠãæå·åã¯ããŒã¿ãçé£ãæ¹ããããŸãã¯äŸµå®³ããä¿è·ããŸããããŒã¿ãæ··ãåãããŠç§å¯ã®ã³ãŒãã«ããç¹å®ã®æå·åããŒã ãããã®ããã¯ãè§£é€ã§ããããã«ããŸããæå·åã¯ããŒã¿ãä¿è·ãå®å šã«ããããã®å®èšŒæžã¿ã®æ¹æ³ã§ãããå¿ èŠãªãšãã«ã¢ã¯ã»ã¹å¯èœãªç¶æ ã§æå·éµãæ éã«ç®¡çããããšãéèŠã§ãã
æå·åã®å¿ èŠæ§
æå·åã¯ãµã€ããŒã»ãã¥ãªãã£ãšããŒã¿ä¿è·ã«äžå¯æ¬ ã§ãããå人æ å ±ãæ©å¯ããŒã¿ãä¿è·ããã¯ã©ã€ã¢ã³ãã¢ããªãšãµãŒããŒéã®éä¿¡ã®ã»ãã¥ãªãã£ã匷åããŸããæå·åã¯ãæ©å¯ããŒã¿ãæå·æã«å€æããããšã§ä¿è·ããããããã¹ãŠã®çµç¹ã«ãšã£ãŠéèŠã§ãã
ããŒã¿ã»ãã¥ãªãã£ã®éèŠãªèŠçŽ ãšããŠãæå·åã¯æå·éµãæã€è ã ããããŒã¿ã®çã®æ å ±ã«ã¢ã¯ã»ã¹ã§ããããããµã€ããŒç¯çœªè ããã®ä»ã®äžæ£ãªåœäºè ãããŒã¿ãçãã§æªçšããããšãã»ãŒäžå¯èœã«ããŸããæå·åã¯ãããŒã¿ã®ååãããŒã¿æŒæŽ©ãããã³ããŸããŸãªåœ¢æ ã®ãµã€ããŒæ»æããããŒã¿ãä¿è·ããŸãã
æå·åã®çš®é¡
äžè¬çã«äœ¿çšãããæå·åã«ã¯ã察称æå·åãšé察称æå·åã®2çš®é¡ããããŸãã
察称æå·å
察称æå·åã¯ãæå·åãšåŸ©å·åã®äž¡æ¹ã«åãããŒã䜿çšããã·ã³ãã«ãªã¿ã€ãã®æå·åã§ããããã«ãããéä¿¡è ãšåä¿¡è ã¯ããŒã¿ã埩å·åããããã«åãããŒã«ã¢ã¯ã»ã¹ããå¿ èŠããããŸãã察称æå·åã¯é察称æå·åãããé«éãã€å¹ççã§ããããã倧éã®ããŒã¿ãéä¿¡ããéã«å¥œãŸããæ¹æ³ã§ããäžè¬çãªå¯Ÿç§°æå·åæ¹æ³ã«ã¯ãAESïŒé«åºŠæå·åæšæºïŒãDESïŒããŒã¿æå·åæšæºïŒãããã³3DESïŒããªãã«ããŒã¿æå·åæšæºïŒããããŸãã
é察称æå·å
é察称æå·åããŸãã¯å ¬é鵿巿¹åŒãšããŠãç¥ããããã®æ¹æ³ã¯ãæå·åããã»ã¹ã«2ã€ã®ç°ãªãããŒã䜿çšããŸãã1ã€ã¯ããŒã¿ãæå·åããããã«äœ¿çšãããå ¬ééµã§ããã1ã€ã¯ããŒã¿ã埩å·åããããã«äœ¿çšãããç§å¯éµã§ããææè ã¯ç§å¯éµãç§å¯ã«ããå ¬ééµã¯èªå¯ãããåä¿¡è éã§å ±æãããããå ¬éãããŸããåä¿¡è ã®å ¬ééµã䜿çšããŠæå·åãããããŒã¿ã¯ã察å¿ããç§å¯éµã§ã®ã¿åŸ©å·åã§ããŸããé察称æå·åã¯å¯Ÿç§°æå·åãããé ããè€éã§ãããããå®å šã§ãããã»ãã¥ã¢ãªããŒäº€æã®å¿ èŠããããŸãããäžè¬çãªé察称æå·åæ¹æ³ã«ã¯ãRSAããã³ECCïŒæ¥åæ²ç·æå·ïŒããããŸãã
ããã·ã¥åã¯æå·åã®äžåœ¢æ ã§ã¯ãããŸããããæå·åã«é¢é£ããæè¡ã§ããããã·ã¥åã¯ããã¡ã€ã«ãã¡ãã»ãŒãžã®å 容ãèŠçŽããåºå®é·ã®å€ãçæããŸããããã¯ããŒã¿ã®å®å šæ§ãæ€èšŒããããŒã¿ãžã®äžæ£ãªå€æŽãæ€åºããããã«äœ¿çšãããŸãã
æå·åã®ã¡ãªãã
æå·åã¯ãå人ããã³çµç¹ã«ä»¥äžã®ãããªè€æ°ã®ã¡ãªãããæäŸããŸãã
- ããŒã¿ä¿è·: æå·åã¯ãæ©å¯ããŒã¿ãäžæ£ãªãŠãŒã¶ãŒã«ãã£ãŠçãŸããããèªãŸããããæ¹ããããããããã®ãé²ããŸããé©åãªåŸ©å·åããŒãæã€è ã ããããŒã¿ã«ã¢ã¯ã»ã¹ã§ããããã«ããããšã§ããµã€ããŒç¯çœªè ãããŒã¿ãçãã ãæªçšãããããã®ãã»ãŒäžå¯èœã«ããŸãã
- ã³ã³ãã©ã€ã¢ã³ã¹: æå·åã¯ãçµç¹ãããŒã¿ä¿è·ã«é¢ããèŠå¶ãæ³çèŠä»¶ãæºããã®ã«åœ¹ç«ã¡ãŸããå€ãã®æ¥çãäŸãã°å»çãéèã¯ãæ¶è²»è ããŒã¿ã®äœ¿çšããã³ä¿åæ¹æ³ã«ã€ããŠå³æ ŒãªèŠå¶ãéµå®ããå¿ èŠããããŸããæå·åã¯ãçµç¹ããããã®åºæºãæºãããã³ã³ãã©ã€ã¢ã³ã¹ã確ä¿ããã®ã«åœ¹ç«ã¡ãŸãã
- ã»ãã¥ãªãã£ã®åŒ·å: æå·åã¯ãããŒã¿æŒæŽ©ããµã€ããŒæ»æããã®ä»ã®è åšããä¿è·ããããã®è¿œå ã®ã»ãã¥ãªãã£å±€ãæäŸããŸããæå·åã«ããããµã€ããŒç¯çœªè ãããŒã¿ãååããã®ãé£ãããªããçµç¹ã®è©å€ãä¿è·ããŸããé©åãªåŸ©å·åããŒã䜿çšããªãéããæ©å¯ããŒã¿ãèªããªã圢åŒã§ä¿åãããŸãã
- ããŒã¿å®å šæ§ã®ç¶æ: æå·åã¯ãããŒã¿ãæ¹ãããããã倿ŽããããããŠããªãããšã確èªããããšã§ãããŒã¿ã®å®å šæ§ãä¿æããã®ã«åœ¹ç«ã¡ãŸããæå·åã¯ãããã¯ã¢ããã®å®å šæ§ãæ€èšŒããããŒã¿ã®éä¿¡äžã®å®å šæ§ãç¶æããããã«äœ¿çšãããããã«ãŒãéä¿¡ãååãããŒã¿ãæ¹ããããã®ãé²ããŸãã
- æ¶è²»è ã®ä¿¡é Œåäž: æå·åæè¡ã®äœ¿çšãå ¬ã«é瀺ããããšã§ãæ¶è²»è ã®ä¿¡é Œãšèªä¿¡ãé«ããããšãã§ããŸãã顧客ã¯ãäŒç€Ÿã«å¯Ÿããä¿¡é Œãå¢ããä»ã®äººã«å§ããå¯èœæ§ãé«ããªããããæå·åã¯ä¿¡é Œãšé¡§å®¢ãã€ã€ã«ãã£ã®èšŒãšãªããŸãã
æå·åã®ãã¡ãªãã
æå·åã«ã¯é åçãªã¡ãªããããããŸãããèæ ®ãã¹ãããã€ãã®ãã¡ãªããããããŸããæå·åã®ãã¡ãªããã«ã¯ä»¥äžãå«ãŸããŸãã
- ã³ã¹ã: æå·åã®å®è£ ãšç¶æã«ã¯è²»çšããããããã®ãããªã¿ã¹ã¯ãå®è¡ããããã«è¿œå ã®ãªãœãŒã¹ãã¢ããã°ã¬ãŒããå¿ èŠã§ãã
- ããŒç®¡ç: æå·åã®éå€§ãªæ¬ ç¹ã®1ã€ã¯ããŒç®¡çã§ãããæå·åããŒãšåŸ©å·åããŒãçŽå€±ãããšå埩ã§ããŸããã
- äºææ§: æå·åæè¡ã¯ç°ãªãã·ã¹ãã ãã¢ããªã±ãŒã·ã§ã³ãæ±ãéã«é£ããå ŽåããããŸãããã¹ãŠã®èš±å¯ããããŠãŒã¶ãŒãæå·åããŒã¿ãèªã¿åããããã«ããããšãå°é£ã§ãããããŒã¿ã®å¯èŠæ§ãäœ¿çšæ§ãå¶éãããå¯èœæ§ããããŸãã
- éçŸå®çãªèŠä»¶: çµç¹ãæå·åã®ãã¹ããã©ã¯ãã£ã¹ãæ¡çšãããç¹ã«ããŒã¿æå·åæè¡ã«ãã£ãŠèª²ãããå¶çŽãéµå®ããªãå ŽåãéçŸå®çãªèŠä»¶ãçããããŒã¿ã»ãã¥ãªãã£ãå±éºã«ãããããå¯èœæ§ããããŸãã
- ããã©ãŒãã³ã¹ãžã®åœ±é¿: æå·åã¯ãç¹ã«å€§éã®ããŒã¿ãæ±ãå ŽåãããŒã¿åŠçãšåæã®é床ãšå¹çã«åœ±é¿ãäžããããšããããŸãã
- ããŒã¿ã®ååŸ: ãŠãŒã¶ãŒãæå·åããŒãå¿ããå Žåãã³ã³ãã¥ãŒã¿äžã®ããŒã¿ã«ã¢ã¯ã»ã¹ã§ããªããªããŸãã
ãããã®ãã¡ãªããã«ãããããããæå·åã®ã¡ãªããã¯ãã¡ãªãããäžåãããµã€ããŒã»ãã¥ãªãã£ããã³ããŒã¿ä¿è·ã«ãããŠæå·åãäžå¯æ¬ ãšãªã£ãŠããŸãã
æå·åã¢ã«ãŽãªãºã ã®äžèЧ
Triple DESïŒ3DESïŒ
Triple DES ã¯ãå ãšãªãããŒã¿æå·åæšæº (DES) ãããã«ãŒã«ãã£ãŠç°¡åã«ç Žãããããã«ãªã£ãŠããŸã£ãããããã®åŸç¶ãšããŠèããããŸããããã€ãŠãTriple DES ã¯æšæºèŠæ ŒãšããŠæšå¥šãããæ¥çã§æãå¹ åºã䜿çšããã察称ã¢ã«ãŽãªãºã ã§ããã
Triple DES ã§ã¯ããããã 56 ãããã®åå¥ã®ããŒã 3 ã€äœ¿çšããŸããããŒã®é·ãã®åèšã¯ 168 ãããã«ãªããŸãããå°éå®¶ã¯å®è³ªçãªããŒã®åŒ·åºŠã¯ 112 ãããã ãšèšããŸãã
Triple DES ã¯åŸã ã«æ¶ãããç¶æ³ã«ãããŸãããéèãµãŒãã¹ãªã©ã®æ¥çã§ã¯ããŸã ã«ä¿¡é ŒãããããŒããŠã§ã¢æå·åãœãªã¥ãŒã·ã§ã³ã§ãã
RSA
RSA ã¯å ¬éããŒæå·åã¢ã«ãŽãªãºã ã®äžçš®ã§ãããã€ã³ã¿ãŒãããçµç±ã§éä¿¡ãããããŒã¿æå·åã®æšæºèŠæ Œã§ãããŸããPGP ãš GPG ã®ããã°ã©ã ã§äœ¿çšãããŠããæ°ã ã®æ¹åŒã® 1 ã€ã§ããããŸãã
Triple DES ãšéããRSA ã¯ããŒã®ãã¢ã䜿çšããããšããé察称æå·åã¢ã«ãŽãªãºã ãšèŠãªãããŸããæå·åã«ã¯å ¬éããŒã䜿çšããã埩å·åã«ã¯ç§å¯ããŒã䜿çšãããŸããæ»æè ããã®æå·åã³ãŒããç Žãã«ã¯ãããªãã®æéãšåŠçèœåãå¿ èŠãšãªããŸãã
AES
AESïŒé«åºŠæå·åæšæºïŒã¯ãç±³åœæ¿åºãæ°å€ãã®çµç¹ã«ããæšæºèŠæ ŒãšããŠä¿¡é Œãããã¢ã«ãŽãªãºã ã§ãã
128 ãããåã§ãååã«æå¹ã§ãããAES ã§ã¯å®å šæ§ã®åŒ·åãæ±ããããå Žåã« 192 ããããš 256 ãããããŒã䜿çšããŠããŸãã
Blowfish
Blowfishã¯ãããŒã¿ãæå·åããã³åŸ©å·åããããã«äœ¿çšããã察称æå·åã¢ã«ãŽãªãºã ã§ãããã®é«éæ§ãšå¹çæ§ã§ç¥ãããè¿ éãªæå·åãšåŸ©å·åãå¿ èŠãšãããœãããŠã§ã¢ã¢ããªã±ãŒã·ã§ã³ã§ãã䜿çšãããŸãã
Twofish
Blowfishã«äŒŒã察称æå·åã¢ã«ãŽãªãºã ã§ãããããå®å šãšèŠãªãããTwofishã¯ãéèãå»çã¢ããªã±ãŒã·ã§ã³ãªã©ãé«ãã¬ãã«ã®ã»ãã¥ãªãã£ãå¿ èŠãšãããœãããŠã§ã¢ã¢ããªã±ãŒã·ã§ã³ã§äžè¬çã«äœ¿çšãããŸãã
RC4
åæ§ã«å¯Ÿç§°æå·åã¢ã«ãŽãªãºã ã§ããRC4ã¯ãè¿ éãªæå·åãšåŸ©å·åãå¿ èŠãšãããœãããŠã§ã¢ã¢ããªã±ãŒã·ã§ã³ã§åºã䜿çšãããŠããŸããããããçŸåšã§ã¯RC4ã¯å®å šã§ãªããšèŠãªãããæšå¥šãããŠããŸããã
æå·åã®æšæºèŠæ Œ
æå·åæè¡ã«é¢ããæšæºèŠæ Œã¯æ°å€ãååšããŸããæå·ååŠçã«ã¯æ¬¡ã®æšæºèŠæ ŒããããŸãã
- DES (ä»ã§ã¯äœ¿çšãããŠããªã)
- AESïŒé«åºŠæå·åæšæºïŒ
- RSA (æåã®å ¬éããŒã¢ã«ãŽãªãºã )
ãã¡ã€ã«æå·å:
ãã¡ã€ã«æå·åãšã¯ããã¡ã€ã«ã·ã¹ãã ã«ãã£ãŠåã ã®ãã¡ã€ã«ããã£ã¬ã¯ããªãçŽæ¥æå·åããããšã§ãããã©ã«ãã®æå·åãšãåŒã°ããŸãã
ãã£ã¹ã¯æå·å:
ãã£ã¹ã¯ãããªã¥ãŒã ã«ä¿åãããŠãããã¹ãŠã®ããŒã¿ãæå·åãããé©åãªåŸ©å·åããŒããªããšèªã¿åããŸããããã£ã¹ã¯æå·åã¯ããœãããŠã§ã¢ãå°çšããŒããŠã§ã¢ã«ãã£ãŠå®è¡ãããŸãã
ã¡ãŒã«æå·å:
ã¡ãŒã«æå·åã¯ãäžæ£ãªç®ããã¡ãŒã«ãä¿è·ããŸããéåžžãã¡ãŒã«ã¯ã¯ãªã¢ããã¹ãã§éä¿¡ãããããè匱ã§ããã¡ãŒã«ã®æå·åæ¹æ³ã«ã¯ããã©ã³ã¹ããŒãå±€ã»ãã¥ãªãã£ïŒTLSïŒããšã³ãããŒãšã³ãæå·åãå«ãŸããPGPãS/MIMEãããã³ã«ãäžè¬çãªãªãã·ã§ã³ã§ãããããã®æ¹æ³ã¯ãã¡ãŒã«ã®å 容ãä¿è·ããéä¿¡è ãšåä¿¡è ã®èªèšŒã確èªããããšãã§ããŸãã
æå·åã®ãã¹ããã©ã¯ãã£ã¹
- æ³åŸãç¥ã: å人è奿 å ±ãä¿è·ããå Žåãçµç¹ã¯å ±éããéšåã®ããæ°å€ãã®ãã©ã€ãã·ãŒé¢é£æ³ãéµå®ããå¿ èŠããããŸããå€ãã®çµç¹ã«åœ±é¿ã®ããäž»ãªæ³èŠå¶ã¯ 6 ã€ãããŸããFERPAãHIPAAãHITECHãCOPPAãPCI DSSãããã³å·ããšã®ããŒã¿äŸµå®³éç¥æ³ã§ãã
- ããŒã¿ãè©äŸ¡ãã: HIPAA (ç±³åœ å»çä¿éºã®çžäºéçšæ§ãšèª¬æè²¬ä»»ã«é¢ããæ³åŸ) ã®ã»ãã¥ãªãã£ã«ãŒã«ã§ã¯æå·åã«ã€ããŠæç¢ºã«æ±ããŠããŸããããçµç¹ãããŒã¿ ãªã¹ã¯ ã¢ã»ã¹ã¡ã³ããå®è¡ãã¹ãã§ãããè©äŸ¡ã«ããæå·åããåççãã€é©åãªãä¿è·ã«ãªããšç€ºãããå Žåã«ã¯æå·åã宿œãã¹ãã§ãããšè¿°ã¹ãŠããŸããçµç¹ãé»åçã«ä¿è·ãããã¹ãå»çæ å ± (ePHI) ãæå·åããªããšå€æããå Žåãåœè©²çµç¹ã¯ãã®å€æãèšé²ããŠæ£åœæ§ã瀺ãããåçã®ä»£æ¿æªçœ®ããè¬ããå¿ èŠããããŸãã
- æå·åã«æ±ããããããŸãã¯å¿ èŠãªã¬ãã«ã決å®ãã: åœä¿å¥çŠç¥ç (HHS) ã¯ç±³åœæšæºæè¡ç ç©¶æ (NIST) ã«å®åã«æšå¥šãããæå·åã¬ãã«ã®èŠè§£ãæ±ããŸãããHHS ãš NIST ã¯ã©ã¡ãã HIPAA ã®ã»ãã¥ãªãã£ã«ãŒã«ã«æºæ ãã説åŸåã®ããããã¥ã¡ã³ããäœæããŸãããNIST Special Publication 800-111 (ç¹å¥åè¡ç© 800-111) ã¯ãŠãŒã¶ãŒããã€ã¹ã§ã®æå·åã«å¹ åºãã¢ãããŒããããŠããŸããç°¡åã«èšããšããããã§ããªã¹ã¯ã®å¯èœæ§ããããªãã°ãæå·åã宿œããå¿ èŠããããšæžãããŠããŸãããããã³ã«ã« AES ãå®è£ ãã FIPS 140-2 ãçæ³çãªéžæã§ããFIPS 140-2 ã«ãããæè²æ©é¢ã¯å人æ å ±ããäžæ£ãŠãŒã¶ãŒã«ã¯äœ¿çšã§ãããèªãããè§£èªã§ããªããªã£ãŠãããããšãä¿èšŒã§ããŸããFIPS 140-2 èŠä»¶ãæºãããŠããããã€ã¹ã«ã¯ãã察象ããŒã¿ã®æå·åãæŽ»çšããŠã察象ããŒã¿ã®æå·åããŒã®ãµãã¿ã€ãºãæå¹ã«ããæå·æã ããã¡ãã£ã¢ã«æ®ããŠãå®è³ªçã«ããŒã¿ããµãã¿ã€ãºãããæå·çæ¶å»æ©èœããããŸãã
- æ©å¯ããŒã¿ã®è»¢éãšãªã¢ãŒãã¢ã¯ã»ã¹ã«æ³šæãã: æå·åããã®ãããŒã PC ãããã¯ã¢ãããã©ã€ãã ãã§ã¯äžååã§ããã€ã³ã¿ãŒãããã§éä¿¡ããããŸãã¯ããŒã¿ãéä¿¡ããã«ã¯ããããã¯ãŒã¯ã§ããŒã¿ã転éããããã®ãããã³ã«ã§ãããã©ã³ã¹ããŒãå±€ã»ãã¥ãªã㣠(TLS)ãããã« AES æå·åãå¿ èŠã§ããåŸæ¥å¡ãçµç¹ã®ããŒã«ã«ãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ãããšããePHI ãé¢ä¿ããå Žåã¯ã»ãã¥ã¢ VPN æ¥ç¶ãæ¬ ãããŸããããŸããåŠçãã¡ã€ã«ãã·ã¹ãã éãè·å Žéã§è»¢éããããã«ç©ççãªå€ä»ãããã€ã¹ã«ä¿åããå Žåããã®åã«ããã€ã¹ãæå·åãããèããããéåè¡çºãåé¿ããããã« FIPS 140-2 ã®èŠä»¶ãæºãããŠããå¿ èŠããããŸãã
- 泚æäºé ã®è©³çŽ°ã«æ°ãä»ãã: æ®å¿µãªãããå€ãã®åŠæ ¡ã§ã¯ããµãŒãããŒã㣠ãµãŒãã¹ã®ãã©ã€ãã·ãŒããªã·ãŒãããŒã¿ ã»ãã¥ãªã㣠ããªã·ãŒã®ç¢ºèªã«é©åãªãã¥ãŒ ããªãžã§ã³ã¹ã宿œã§ããŠããããä¿è·è ãåŠçã容èªã§ããªããšèããããŸã㯠FERPA ã«éåããããŒã¿åéãããŒã¿ãã€ãã³ã°ãäžæ³šæã§èš±å¯ããŠããŸããŸããèŠå¶ã³ã³ãã©ã€ã¢ã³ã¹ã«ã¯åã«è·å Žã®ã¯ãŒã¯ã¹ããŒã·ã§ã³ããã¹ã¯ãŒãã§ä¿è·ããããã¯ããã«å€ãã®ããšãå¿ èŠã§ããããã«ã¯ãåŠæ ¡ã®ã·ã¹ãã ããªã ãŒããã« ã¡ãã£ã¢ ããã€ã¹ã«æ ŒçŽãããããŒã¿ã«æå·åãé©çšããããšãæ±ããããŸããåŠæ ¡ã®ãã¡ã€ã¢ãŠã©ãŒã«ã®å€ã«æ ŒçŽãããããŒã¿ (ãŸãã¯ãéæŸãã®ããŒã¿ã) ã¯ãã»ãã¥ãªãã£éåã®æå€§ã®åå ã§ããããšãèŠããŠãããŠãã ããã
äŒæ¥ã®ã¡ãŒã«æå·å
ã¡ãŒã«æå·åã¯ã財åããŒã¿ãå人æ å ±ãç¥ç財ç£ãªã©ã®æ©å¯æ å ±ãä¿è·ããå¿ èŠãããçµç¹ã«ãšã£ãŠäžå¯æ¬ ã§ããäŒæ¥ã®ã¡ãŒã«æå·åã¯ãæå·åã¢ã«ãŽãªãºã ã䜿çšããŠã¡ãã»ãŒãžãèªããªã圢åŒã«ã¹ã¯ã©ã³ãã«ããåä¿¡è ã埩å·åããŒã䜿çšããŠã®ã¿è§£èªã§ããããã«ããŸãããã®æå·åããã»ã¹ã«ãããã¡ãã»ãŒãžã¯å®å šã§ãããäžæ£ãªãŠãŒã¶ãŒã«ãã£ãŠååããããèªãŸãããããããšã¯ãããŸããã
äŒæ¥åãã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ã«ã¯ãMicrosoft Purview Message EncryptionãS/MIMEãIRMãTLSãªã©ããããŸãããããã®ãœãªã¥ãŒã·ã§ã³ã¯ç°ãªãã¬ãã«ã®æå·åãšã»ãã¥ãªãã£ãæäŸããŠãããäŒæ¥ã¯èªç€Ÿã®ããŒãºã«æãé©ãããã®ãéžæã§ããŸãã
äŒæ¥ã®ã¡ãŒã«æå·åã®å©ç¹ã«ã¯ãã»ãã¥ãªãã£ã®åäžãèŠå¶èŠä»¶ã®éµå®ãæ©å¯æ å ±ã®ä¿è·ãªã©ããããŸããããããäŒæ¥ã®ã¡ãŒã«æå·åã«ã¯ãã³ã¹ããããŒç®¡çãäºææ§ãããã©ãŒãã³ã¹ãžã®åœ±é¿ãªã©ã®èª²é¡ã䌎ããŸãã
Proofpointã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³
Proofpointã¯ãæ¥çããªãŒããããµã€ããŒã»ãã¥ãªãã£äŒæ¥ã§ãããäŒæ¥ãã¡ãŒã«ã§éä¿¡ããæ©å¯æ å ±ãä¿è·ããããã®è€æ°ã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ãæäŸããŠããŸããProofpointã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ã¯ä»¥äžã®å©ç¹ãæäŸããŸãã
- èªåä¿è·: Proofpointã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ã¯ãã¡ãã»ãŒãžãšæ·»ä»ãã¡ã€ã«ãå®å šã«ééçã«èªåä¿è·ãããŠãŒã¶ãŒãæåã§ã¡ãŒã«ãæå·åããå¿ èŠããªãããŠãã¡ãã»ãŒãžãå®å šã«éåä¿¡ã§ããããã«ããŸãã
- ç°¡çŽ åãããããªã·ãŒç®¡ç: ãã¹ãŠã®ã¡ãŒã«æå·åããªã·ãŒã¯ã²ãŒããŠã§ã€ã§éäžç®¡çããã³æœè¡ããã䟿å©ãªã°ã©ãã£ã«ã«ã€ã³ã¿ãŒãã§ã€ã¹ã䜿çšããŠæå·åããªã·ãŒãå®çŸ©ã§ããŸãããããã®ããªã·ãŒã¯ãèŠå¶å¯Ÿè±¡æ å ±ãç¥ç財ç£ãå«ãã¡ãã»ãŒãžã«ãã£ãŠããªã¬ãŒãããŸãã
- æéã®ããããªãããŒç®¡ç: Proofpointã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ã¯ãããŒç®¡çäœæ¥ãæé€ããŸããããŒãçæããããšãå®å šã«ä¿ç®¡ããã管çãããProofpointã®ã¯ã©ãŠãããŒã¹ã®ã€ã³ãã©ã¹ãã©ã¯ãã£ãéããŠé«å¯çšæ§ã確ä¿ãããŸãã管çè ã¯ããšã³ããŠãŒã¶ãŒãæå·åãããã¡ãŒã«ã¡ãã»ãŒãžãžã®ã¢ã¯ã»ã¹ãåãæ¶ããããæéåãã«ãããã埩å ãããããããšãèš±å¯ã§ããŸãã
- çµ±åãããæ å ±ä¿è·: Proofpointã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ã¯ãæ¢åã®Emailããã³Information Protectionãœãªã¥ãŒã·ã§ã³ãžã®æè³ãæå€§éã«æŽ»çšããŸãã補åã«ã¯ãPCIãHIPAAãPIIãªã©ã80以äžã®ãã³ãã¬ãŒãããŒã¹ã®ããªã·ãŒãå«ãŸããŠããŸãã
Proofpointã®ã¡ãŒã«æå·åãœãªã¥ãŒã·ã§ã³ã¯ãäŒæ¥ãæ©å¯æ å ±ãä¿è·ããèŠå¶èŠä»¶ãéµå®ããã»ãã¥ãªãã£ã匷åããã®ã«åœ¹ç«ã¡ãŸãã詳现ã«ã€ããŠã¯ãProofpointã«ãåãåãããã ããã