ç®æ¬¡
VPNãšã¯ïŒ
VPN ãšã¯ä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ã®ããšã§ããŠãŒã¶ãŒããŠã§ãããŒã¹ã®ãµãŒãã¹ããµã€ãã«æ¥ç¶ããéã«ãã»ãã¥ãªãã£ãšå¿åæ§ãæäŸããŸããVPNã¯ããŠãŒã¶ãŒã®å®éã®ãããªãã¯IPã¢ãã¬ã¹ãé ãããŠãŒã¶ãŒã®ããã€ã¹ãšãªã¢ãŒããµãŒããŒéã®ãã©ãã£ãã¯ãããã³ããªã³ã°ãããŸããã»ãšãã©ã®ãŠãŒã¶ãŒã¯ã远跡ãé¿ããããã«å¿åVPNãµãŒãã¹ã«ãµã€ã³ã¢ããããŠããããªã¹ã¯ã®å¢å ã«ããããŒã¿ã®å®å šæ§ãè ããããå ¬å ±ã®Wi-Fiã䜿çšããããšãå€ãã§ãã
ãµã€ããŒã»ãã¥ãªãã£æè²ãšãã¬ãŒãã³ã°ãå§ããŸããã
ç¡æãã©ã€ã¢ã«ã®ãç³ãèŸŒã¿æé 
- åŒç€Ÿã®ãµã€ããŒã»ãã¥ãªã㣠ãšãã¹ããŒãã貎瀟ã«äŒºããã»ãã¥ãªãã£ç°å¢ãè©äŸ¡ããŠãè åšãªã¹ã¯ã蚺æããŸãã
- 24 æé以å ã«æå°éã®æ§æã§ã30 æ¥éãå©çšããã ãããã«ãŒããã€ã³ãã®ãœãªã¥ãŒã·ã§ã³ãå°å ¥ããŸãã
- ãã«ãŒããã€ã³ãã®ãã¯ãããžãŒãå®éã«ãäœéšããã ããŸãã
- çµç¹ãæã€ã»ãã¥ãªãã£ã®è匱æ§ã«é¢ããã¬ããŒãããæäŸããŸãããã®ã¬ããŒãã¯ããµã€ããŒã»ãã¥ãªãã£æ»æã®å¯Ÿå¿ã«çŽã¡ã«ã掻çšããã ãããšãã§ããŸãã
ãã©ãŒã ã«å¿ èŠäºé ããå ¥åã®äžããç³èŸŒã¿ãã ããã远ã£ãŠãæ åœè ãããé£çµ¡ãããŠããã ããŸãã
Proofpointã®æ åœè ããŸããªããé£çµ¡ããããŸãã
VPNã®å¿ èŠæ§
ãŠã§ããµãŒããŒã«æ¥ç¶ãããšãããã©ãŠã¶ã¯ãã¡ã€ã³åãµãŒãã¹ïŒDNSïŒãµãŒããŒãããã¡ã€ã³åã®æ€çŽ¢ãè¡ããIPã¢ãã¬ã¹ãååŸããŠããµãŒããŒã«æ¥ç¶ããŸããå€ãã®å Žåããã®æ¥ç¶ã¯SSL/TLSã«ããæå·åãããŠããŸããSSL/TLSã䜿çšããŠããå ¬è¡Wi-Fiã«å¯Ÿããæ°ã ã®æ»æã¯å¯èœã§ããäŸãã°ãå·§åŠãªæ»æè ã¯ãããŒã¿ã®æå·åã«äœ¿çšããTLSã®ããŒãžã§ã³ã«ããŠã³ã°ã¬ãŒããè¡ãããã«ãŒããã©ãŒã¹ïŒç·åœããæ»æïŒã«å¯ŸããŠè匱ãªéä¿¡ã«ããããšãã§ããŸãã
VPNãæ¥ç¶ã«è¿œå ãããšãVPNãµãŒãã¹ã¯ããŒã¿ãç¬èªã®æå·åã§ããã±ãŒãžåããŠãããã¯ãŒã¯ã«éä¿¡ããŸããæšçãšãªããµãŒããŒã«ã¯ããŠãŒã¶ãŒã®å ¬éIPã¢ãã¬ã¹ã§ã¯ãªããVPNã®å ¬éIPã¢ãã¬ã¹ã衚瀺ãããŸããäžãäžãæ»æè ãæ¥ç¶ããã€ãžã£ãã¯ããŠããŒã¿ãçèŽãããšããŠããVPNã®åªããæå·åã«ãããæå·çã«å®å šã§ãªãæ¥ç¶ã§ããŒã¿ãé瀺ãããã«ãŒããã©ãŒã¹ã¢ã¿ãã¯ã®å¯èœæ§ãæé€ããããšãã§ããŸãã
VPNã®äœ¿ãæ¹
VPNèšå®ã®æåã®ã¹ãããã¯ãèªåã«åã£ããããã€ããèŠã€ããããšã§ããVPNãããã€ãã¯ããã€ããããŸãããããããã«é·æãšçæããããŸããäŸãã°ããã¹ãŠã®ããã€ã¹ããµããŒããããããã³ã«ãæã€ãããã€ããå¿ èŠã§ãããŸããã»ããã¢ãããç°¡åã§ãã©ã®å°åãããå©çšã§ããå ¬è¡Wi-Fiå©çšæã®ååãªã»ãã¥ãªãã£ã®ããã«æå·åãããå®å šãªæå·ãæäŸããŠããå¿ èŠããããŸãã
åªããVPNãšå©ç¹ã®å°ãªãVPNãåºå¥ããäž»ãªèŠå ã¯ã1ã€ã®IPã¢ãã¬ã¹ã®ãŠãŒã¶ãŒæ°ã§ããã¹ãããŒãæªæã®ããæ»æè ãVPNã䜿ã£ãŠæ¥ç¶ãå¿ååãããããVPNã®IPã¢ãã¬ã¹ããããã¯ãããµãŒãã¹ãããã€ãããããŸãããµãŒãã¹ãããã€ãã¯ãVPN IP ã¢ãã¬ã¹ã®ãªã¹ããããŠã³ããŒãããããŒã«ã«ãµãŒãã¹ãžã®ã¢ã¯ã»ã¹ãããããã¯ããããšãã§ããŸããåªããVPNã¯ããã©ã€ããŒãIPã¢ãã¬ã¹ãæäŸããã³ã¹ãã¯ããããŸãããã€ã³ã¿ãŒãããäžã®èªç±åºŠãšå¿åæ§ãé«ããããšãã§ããŸãã
VPNãéžæããããæ¬¡ã«ããã䜿çšããããã«ããã€ã¹ãèšå®ããå¿ èŠããããŸãããããã®èšå®ã¯ãåVPNãããã€ãã«åºæã®ãã®ã§ãããããããããã®ã¹ãããæ¯ã®èª¬æã«åŸããèšå®ããŸãããŸããVPNãããã€ãã«ãã£ãŠã¯ãã»ããã¢ãããæ¯æŽããã€ã³ã¹ããŒã«ãã¡ã€ã«ãæäŸããŠãããšããããããOSã®èšå®ã«äžæ £ããªå Žåã¯ããã®ãã¡ã€ã«ãå©çšãããšäŸ¿å©ã§ãã
VPNã®ä»çµã¿
VPNã¯ãããªãã®ã³ã³ãã¥ãŒã¿ãšå¯Ÿè±¡ãšãªããµãŒããŒã®éã«ä»åšããŸããVPNã¯ãããªãã®ããã€ã¹ãšãµãŒããŒéã®éä¿¡ãæå·åããããã«ãã©ãŠã¶ã«é Œãã®ã§ã¯ãªããç¬èªã®æå·åã远å ããç¬èªã®ãµãŒããŒãçµç±ããŠéä¿¡ãã«ãŒãã£ã³ã°ããŸããVPNãµãŒãã¹ã«é¢ããŠãããã³ããªã³ã°ããšããèšèãããè³ã«ããŸããããã¯ãVPN ãµãŒãã¹ããããªããšã¿ãŒã²ãããšãªããµãŒããŒã®éã«ããã³ãã«ããéããšãããã®ã§ãããããŠãVPNã¯ããªãã®ããŒã¿ããã®ããã³ãã«ããéããŠéä¿¡ãããããã¯ãŒã¯äžã®ä»ã®èª°ããããªãã®ããŒã¿ãçèŽãããä¹ã£åã£ããããããšãã§ããªãããã«ããŸãã
æè¡çã«ã¯ãVPNã¯ãããªãã®ããã€ã¹ããå ¬è¡Wi-Fiãå«ãããŒã«ã«ãããã¯ãŒã¯ã§ã¯ãªããVPNãããã¯ãŒã¯äžã§éä¿¡ããæ¥ç¶ãèšå®ããŸããããªãã¯ãä¿åãããŠããè³æ Œæ å ±ã䜿çšããŠVPNãµãŒããŒã§èªèšŒããVPNãµãŒããŒãžã®æ¥ç¶ãåä¿¡ããŸãããã³ãã«ãèšå®ãããšãããªããšVPNãµãŒããŒã®éã§ãããŒã¿ãæå·åããçèŽè ããããŒã¿ãä¿è·ããä»®æ³ãããã¯ãŒã¯æ¥ç¶ã䜿çšããŸããSSL/TLSæ¥ç¶ã䜿çšããå ŽåãããŒã¿ã¯æå·åãããããã«VPNãµãŒãã¹ã䜿çšããŠå床æå·åãããŸããéä¿¡ã«äºéã®æå·åãå ãããããŒã¿ã®å®å šæ§ãåäžããã®ã§ãã
VPNãµãŒããŒã«æ¥ç¶ããå Žåãæ¥ç¶å ã®ãµãŒããŒã«è¡šç€ºãããIPã¢ãã¬ã¹ã¯ãVPNãµãŒããŒã®IPã¢ãã¬ã¹ã§ããããšãèŠããŠãããŠãã ãããVPN ãµãŒããŒãä»®æ³çãŸãã¯ç©ççã«å¥ã®åœã«ããå Žåãã¿ãŒã²ããã® Web ãµãŒããŒã¯ãããªãã®æåšå°ã VPN ã®åœã®æåšå°ãšããŠèå¥ããŸãã
VPNã®èšå®æ¹æ³
VPN ãèšå®ããã«ã¯ãåã«ãã©ãŠã¶ã䜿çšããã®ã§ã¯ãªããVPN ã䜿çšããããã«OSãèšå®ããå¿ èŠããããŸããäžåºŠèšå®ããã°ãã€ã³ã¿ãŒããããé éå°ã®ãŠã§ããµãŒãã¹ãžã®æ¥ç¶ã¯ããã¹ãŠVPNãµãŒããŒã䜿çšããããã«ãªããŸããVPN ãµãŒããŒãžã®æ¥ç¶ã«äœ¿çšããèšå®ã¯ãéžæãããµãŒãã¹ã«ãã£ãŠç°ãªããŸããWindowsã§VPNãèšå®ããã«ã¯ãæ¬¡ã®æé ã«åŸã£ãŠè¡ããŸãã
æ€çŽ¢ããŒã«ãVPNããšå ¥åãããšããVPNèšå®ããŠã£ã³ããŠã衚瀺ãããŸãã
 
  
ãVPNæ¥ç¶ã®è¿œå ããã¯ãªãã¯ãããšãVPNæ¥ç¶ã«å¿ èŠãªæ å ±ã衚瀺ãããŠã£ã³ããŠã衚瀺ãããŸãã
ãã®ãŠã£ã³ããŠã«å ¥åããæ å ±ã¯ããå©çšã®ãµãŒãã¹ãããã€ãã«ãã£ãŠç°ãªããŸãããã¹ãŠã®æ å ±ã¯ãã¢ã«ãŠã³ãã®ã»ããã¢ããæã«æäŸãããŸãããããã€ãããã€ã³ã¹ããŒã«ãã¡ã€ã«ãéãããŠããå Žåã¯ãæåã§èšå®ããããã³ã«ã®ã€ã³ã¹ããŒã«ãè¡ãã®ã§ã¯ãªããããã䜿ã£ãŠãµãŒãã¹ãèšå®ããŠãã ããã
 
  VPNã®ä»£æ¿ææ®µ
äŒæ¥ã«ãšã£ãŠãVPNã¯å¿ ãããæè¯ã®éžæè¢ã§ã¯ãããŸããããªã¹ã¯å±€ã远å ãããäžå¯©ãªåãããªããç£èŠããå¿ èŠããããŸããããã¯ãå®å šãªã·ã¹ãã ã§äœ¿çšããããç¹æš©ãªããã¢ãã«ãç Žå£ãã远å ãªã¹ã¯ã§ããVPNãšé£æºãã代ããã«ãäŒæ¥ã¯æ¬¡ã®ãããªéžæè¢ãåãããšãã§ããŸãã
èå¥ãšã¢ã¯ã»ã¹ç®¡ç (IAM) ã®å°å ¥
IAMãããã€ãã¯ããããã¯ãŒã¯èªèšŒæ å ±ããªã¢ãŒããµãŒããŒã«çµã¿èŸŒã¿ãå®å šãªæ¥ç¶ãäŒæ¥ç°å¢ã®äžéšãšããŠå®çŸããŸããäŸãã°ãAmazon Web Servicesã¯ããªã¢ãŒããµãŒããŒãšã®æ¥ç¶ã«äœ¿çšã§ããIAMãµãŒãã¹ãæã£ãŠããŸãã
ç¹æš©ã¢ã¯ã»ã¹ç®¡ç (PAM)
PAMãå°å ¥ããããšã§ãäŒæ¥ã¯ããé«ãã»ãã¥ãªãã£ãå¿ èŠãšããé«ã¬ãã«ã®ã¯ã¬ãã³ã·ã£ã«ãäœæããããšãã§ããŸããã¯ã¬ãã³ã·ã£ã«æŠç¥ã«ã¯ãããŒã®é »ç¹ãªããŒããŒã·ã§ã³ã12æåã®ãã¹ã¯ãŒããã·ã¹ãã ã®é£èªåãããåªããããŒã¿ã¢ã¯ã»ã¹å¶åŸ¡ãå«ãŸããŸãã
ãã³ããŒã®ç¹æš©ã¢ã¯ã»ã¹ç®¡ç (VPAM)
VPAMã·ã¹ãã ã¯ããã³ããŒããµãŒãããŒãã£ãŒã³ã³ãã©ã¯ã¿ãŒã«ãµãŒããŒãžã®çŽæ¥ã¢ã¯ã»ã¹ãèš±å¯ãã代ããã«ãåŸæ¥å¡ãšä»ã®ã¯ã¬ãã³ã·ã£ã«ãåé¢ããŸãããããã®ã¯ã¬ãã³ã·ã£ã«ãåé¢ããããšã«ãããçµç¹ã¯ãã¯ã¬ãã³ã·ã£ã«ãå¿ èŠä»¥äžã«ä¿è·ããªãå¯èœæ§ã®ãããµãŒãããŒãã£ãã³ããŒãè«è² æ¥è ã®æŽ»åããã詳现ã«ç£èŠããããšãã§ããŸãã
VPNã«ä»£ãããœãªã¥ãŒã·ã§ã³
VPNã¯äŒæ¥çµç¹ã«ãããŠã䜿çšãéå®çã§ããVPNã€ã³ãã©ã¯ãã¯ã©ãŠã ã¢ããªã±ãŒã·ã§ã³ããªã¢ãŒãã¯ãŒã«ãŒã«äŸåããçµç¹ã«ãšã£ãŠäžå¯æ¬ ãªãŒããã©ã¹ã ãµã€ããŒã»ãã¥ãªã㣠ã¢ãã«ããµããŒãããŠããŸããã
仿¥ãçç£æ§ãé«ããã«ã¯ä¿¡é Œæ§ã®é«ãã¯ã©ãŠããã¹ãåã¢ããªã±ãŒã·ã§ã³ãããŒã¿ãžã®ã¢ã¯ã»ã¹ãäžå¯æ¬ ã§ãããŒããã©ã¹ã ãããã¯ãŒã¯ ã¢ã¯ã»ã¹ïŒZTNAïŒã¯ããŠãŒã¶ãŒãšã¢ããªã±ãŒã·ã§ã³éã®æ¥ç¶ã仲ä»ããä¿¡é Œã§ãããããŒã«ãŒãšããŠæ©èœããŸããZTNAã¯ãªãœãŒã¹ãã€ã³ã¿ãŒãããããéé¢ããå€éšã®è åšããä¿è·ããŸãã
äŒæ¥çµç¹ã¯VPNã®ä»£ããã«ãœãããŠã§ã¢å®çŸ©ã®å¢çïŒSDP)ã®å°å ¥ãæ€èšãã¹ãã§ããSDPã¯ãããã¯ãŒã¯ã®ä¿è·ã«çŠç¹ãåœãŠãã®ã§ã¯ãªãã以äžã®æ¹æ³ã§ãŠãŒã¶ãŒãã¢ããªã±ãŒã·ã§ã³ãããã³ãããã®éã®æ¥ç¶ãä¿è·ããŸãã
- ãŠãŒã¶ãŒãšããã€ã¹ã®äž¡æ¹ãèªèšŒãããåŸã«ã®ã¿ã¢ã¯ã»ã¹ãèš±å¯
- ãã现ããªããŒã¿ã¢ã¯ã»ã¹èš±å¯ã®ãããåããã€ã¹ã«åºæã®èå¥åãå²ãåœãŠã
SDPã¯è©³çްãªã¢ã¯ã»ã¹æš©éãšããã€ã¹ã®èå¥ãå¿ èŠãšãããããã€ã³ã·ãã³ã察å¿ãšåæã«åœ¹ç«ã€è©³çްãªç£æ»èšŒè·¡ãçæããŸãã
 
    