ãããã¯ãŒã¯ãã©ãã£ãã¯åæã«ããäŸµå ¥æ€ç¥ã·ã¹ãã ïŒIDSïŒã®äžæ žååãæ¢æ±ããŸããã°ããŒãã«ã»ãã¥ãªãã£ã®ããã®æè¡ãããŒã«ããã¹ããã©ã¯ãã£ã¹ãåŠã³ãŸãããã
äŸµå ¥æ€ç¥ïŒãããã¯ãŒã¯ãã©ãã£ãã¯åæã®åŸ¹åºçãªèå¯
21äžçŽã®åºå€§ã§çžäºæ¥ç¶ãããããžã¿ã«ç°å¢ã«ãããŠãçµç¹ã¯ãã°ãã°ç®ã«èŠããªãæŠå Žã§æŽ»åããŠããŸãããã®æŠå Žã¯åœŒãèªèº«ã®ãããã¯ãŒã¯ã§ãããæŠéå¡ã¯å µå£«ã§ã¯ãªããããŒã¿ãã±ããã®ã¹ããªãŒã ã§ããæ¯ç§ãäœçŸäžãã®ãã±ãããäŒæ¥ãããã¯ãŒã¯ãééããæ¥åžžçãªé»åã¡ãŒã«ããæ©å¯æ§ã®é«ãç¥ç財ç£ãŸã§ããããããã®ãéãã§ããŸãããããããã®ããŒã¿ã®å¥æµã®äžã«ã¯ãæªæã®ããè ãè匱æ§ãæªçšããæ å ±ãçã¿ãæ¥åã劚害ããããšæœãã§ããŸããçµç¹ã¯ãç°¡åã«ã¯èŠããªãè åšããã©ã®ããã«èº«ãå®ãããšãã§ããã®ã§ããããããã®çãã¯ãäŸµå ¥æ€ç¥ã®ããã®ãããã¯ãŒã¯ãã©ãã£ãã¯åæïŒNTAïŒã®æè¡ãšç§åŠãç¿åŸããããšã«ãããŸãã
ãã®å æ¬çãªã¬ã€ãã§ã¯ãå ç¢ãªäŸµå ¥æ€ç¥ã·ã¹ãã ïŒIDSïŒã®åºç€ãšããŠNTAã䜿çšããããã®äžå¿çãªååãæããã«ããŸããåºæ¬çãªæ¹æ³è«ãéèŠãªããŒã¿ãœãŒã¹ãããã³ã°ããŒãã«ã§åžžã«é²åããè åšã®ç¶æ³ã«ãããŠã»ãã¥ãªãã£å°éå®¶ãçŽé¢ããçŸä»£çãªèª²é¡ãæ¢æ±ããŸãã
äŸµå ¥æ€ç¥ã·ã¹ãã ïŒIDSïŒãšã¯ïŒ
ãã®äžæ žã«ãããŠãäŸµå ¥æ€ç¥ã·ã¹ãã ïŒIDSïŒã¯ããããã¯ãŒã¯ãŸãã¯ã·ã¹ãã ã®æŽ»åãç£èŠããŠãæªæã®ããããªã·ãŒãŸãã¯ããªã·ãŒéåãæ€åºããã»ãã¥ãªãã£ããŒã«ïŒããŒããŠã§ã¢ããã€ã¹ãŸãã¯ãœãããŠã§ã¢ã¢ããªã±ãŒã·ã§ã³ïŒã§ãããããã¯ãŒã¯ã®ããžã¿ã«é²ç¯ã¢ã©ãŒã ãšèããŠãã ããããã®äž»ãªæ©èœã¯æ»æã黿¢ããããšã§ã¯ãªããæ»æãæ€åºããŠã¢ã©ãŒããçºè¡ããã»ãã¥ãªãã£ããŒã ã調æ»ããã³å¯Ÿå¿ããããã«å¿ èŠãªéèŠãªæ å ±ãæäŸããããšã§ãã
IDSããããç©æ¥µçãªå åŒã§ããäŸµå ¥é²åŸ¡ã·ã¹ãã ïŒIPSïŒãšåºå¥ããããšãéèŠã§ããIDSãååçãªç£èŠããŒã«ïŒç£èŠããã³å ±åïŒã§ããã®ã«å¯ŸããIPSã¯æ€åºãããè åšãèªåçã«ãããã¯ã§ããã¢ã¯ãã£ããªã€ã³ã©ã€ã³ããŒã«ã§ããç°¡åãªäŸãã¯ãã»ãã¥ãªãã£ã«ã¡ã©ïŒIDSïŒãšãèš±å¯ãããŠããªãè»äž¡ãæ€åºãããšèªåçã«éããã»ãã¥ãªãã£ã²ãŒãïŒIPSïŒã§ããã©ã¡ããäžå¯æ¬ ã§ããããã®åœ¹å²ã¯ç°ãªããŸãããã®èšäºã§ã¯ãæ€åºã®åŽé¢ã«çŠç¹ãåœãŠãŸããããã¯ã广çãªå¯Ÿå¿ãæ¯ããåºç€ãšãªãã€ã³ããªãžã§ã³ã¹ã§ãã
ãããã¯ãŒã¯ãã©ãã£ãã¯åæïŒNTAïŒã®äžå¿çãªåœ¹å²
IDSãã¢ã©ãŒã ã·ã¹ãã ã§ããå Žåããããã¯ãŒã¯ãã©ãã£ãã¯åæã¯ããããæ©èœãããé«åºŠãªã»ã³ãµãŒãã¯ãããžãŒã§ããNTAã¯ããããã¯ãŒã¯éä¿¡ãã¿ãŒã³ãååãèšé²ãåæããŠãã»ãã¥ãªãã£äžã®è åšãæ€åºããã³å¯Ÿå¿ããããã»ã¹ã§ãããããã¯ãŒã¯ãæµããããŒã¿ãã±ãããæ€æ»ããããšã«ãããã»ãã¥ãªãã£ã¢ããªã¹ãã¯ãé²è¡äžã®æ»æã瀺ãå¯èœæ§ã®ããçãããæŽ»åãç¹å®ã§ããŸãã
ããã¯ãµã€ããŒã»ãã¥ãªãã£ã®çå®ã§ããåã ã®ãµãŒããŒãŸãã¯ãšã³ããã€ã³ãããã®ãã°ã¯äŸ¡å€ããããŸãããçç·Žããæ»æè ã«ãã£ãŠæ¹ãããŸãã¯ç¡å¹åãããå¯èœæ§ããããŸãããã ãããããã¯ãŒã¯ãã©ãã£ãã¯ã¯åœé ãŸãã¯é èœããã®ãã¯ããã«å°é£ã§ããæ»æè ãã¿ãŒã²ãããšéä¿¡ããããããŒã¿ãæŒæŽ©ãããããã«ã¯ããããã¯ãŒã¯çµç±ã§ãã±ãããéä¿¡ããå¿ èŠããããŸãããã®ãã©ãã£ãã¯ãåæããããšã«ããã容çè ã®æ¥èšãèªãã ãã§ãªãã容çè ã®é»è©±ãçèŽããæ¢åµã®ããã«ãæ»æè ã®è¡åãçŽæ¥èгå¯ããããšã«ãªããŸãã
IDSã®ããã®ãããã¯ãŒã¯ãã©ãã£ãã¯åæã®ã³ã¢æ¹æ³è«
ãããã¯ãŒã¯ãã©ãã£ãã¯ãåæããããã®åäžã®éæ³ã®åŒŸäžžã¯ãããŸããã代ããã«ãæçããIDSã¯ãå€å±€é²åŸ¡ã¢ãããŒããå®çŸããããã«ãè€æ°ã®è£å®çãªæ¹æ³è«ã掻çšããŸãã
1. ã·ã°ããã£ããŒã¹ã®æ€åºïŒæ¢ç¥ã®è åšã®ç¹å®
ã·ã°ããã£ããŒã¹ã®æ€åºã¯ãæãäŒçµ±çã§åºãçè§£ãããŠããæ¹æ³ã§ããããã¯ãæ¢ç¥ã®è åšã«é¢é£ä»ããããäžæã®ãã¿ãŒã³ãã€ãŸããã·ã°ããã£ãã®èšå€§ãªããŒã¿ããŒã¹ãç¶æããããšã«ãã£ãŠæ©èœããŸãã
- ä»çµã¿ïŒ IDSã¯ãåãã±ãããŸãã¯ãã±ããã¹ããªãŒã ãæ€æ»ãããã®ã³ã³ãã³ããšæ§é ãã·ã°ããã£ããŒã¿ããŒã¹ãšç §åããŸããæ¢ç¥ã®ãã«ãŠã§ã¢ã§äœ¿çšãããŠããç¹å®ã®ã³ãŒãæååããSQLã€ã³ãžã§ã¯ã·ã§ã³æ»æã§äœ¿çšãããŠããç¹å®ã®ã³ãã³ããªã©ãäžèŽãããã®ãèŠã€ãã£ãå Žåãã¢ã©ãŒããããªã¬ãŒãããŸãã
- å©ç¹ïŒæ¢ç¥ã®è åšãéåžžã«äœã誀æ€ç¥çã§æ€åºããã®ã«éåžžã«æ£ç¢ºã§ããäœãããã©ã°ä»ãããå Žåããããæªæã®ãããã®ã§ãããšãã確信床ãéåžžã«é«ããªããŸãã
- çæïŒæå€§ã®åŒ·ã¿ã¯æå€§ã®åŒ±ç¹ã§ããããŸããã·ã°ããã£ãååšããªãæ°ãããŒããã€æ»æã«å¯ŸããŠã¯å®å šã«ç²ç®ã§ãã广ãç¶æããã«ã¯ãã»ãã¥ãªãã£ãã³ããŒããã®ç¶ç¶çãã€ã¿ã€ã ãªãŒãªæŽæ°ãå¿ èŠã§ãã
- ã°ããŒãã«ãªäŸïŒ WannaCryã©ã³ãµã ãŠã§ã¢ã¯ãŒã ã2017幎ã«äžçäžã«æ¡æ£ãããšããã·ã°ããã£ããŒã¹ã®ã·ã¹ãã ã¯ãã¯ãŒã ã®äŒæã«äœ¿çšãããç¹å®ã®ãããã¯ãŒã¯ãã±ãããæ€åºããããã«è¿ éã«æŽæ°ãããææ°ã®ã·ã¹ãã ãåããçµç¹ã广çã«ãããã¯ã§ããããã«ãªããŸããã
2. ç°åžžããŒã¹ã®æ€åºïŒæªç¥ã®æªç¥ã®ãã®ãæ¢ã
ã·ã°ããã£ããŒã¹ã®æ€åºãæ¢ç¥ã®æªãæ¢ãã®ã«å¯Ÿããç°åžžããŒã¹ã®æ€åºã¯ã確ç«ãããæ£åžžããã®éžè±ãç¹å®ããããšã«çŠç¹ãåœãŠãŠããŸãããã®ã¢ãããŒãã¯ãæ¬æ°ã§æŽç·Žãããæ»æãææããããã«äžå¯æ¬ ã§ãã
- ä»çµã¿ïŒã·ã¹ãã ã¯æåã«ããããã¯ãŒã¯ã®éåžžã®åäœãåŠç¿ããçµ±èšçãªããŒã¹ã©ã€ã³ãäœæããã®ã«æéãè²»ãããŸãããã®ããŒã¹ã©ã€ã³ã«ã¯ãå žåçãªãã©ãã£ãã¯éã䜿çšããããããã³ã«ãçžäºã«éä¿¡ãããµãŒããŒãããã³ãããã®éä¿¡ãçºçããæå»ãªã©ã®ã¡ããªãã¯ãå«ãŸããŸãããã®ããŒã¹ã©ã€ã³ããå€§å¹ ã«éžè±ããã¢ã¯ãã£ããã£ã¯ãæœåšçãªç°åžžãšããŠãã©ã°ãç«ãŠãããŸãã
- å©ç¹ïŒä»¥åã«èŠãããªãã£ããŒããã€æ»æãæ€åºãã匷åãªæ©èœããããŸããç¹å®ã®ãããã¯ãŒã¯ã®åºæã®åäœã«åãããŠèª¿æŽãããŠãããããäžè¬çãªã·ã°ããã£ã§ã¯èŠéãããè åšãç¹å®ã§ããŸãã
- çæïŒèª€æ€ç¥çãé«ããªãåŸåããããŸããå€§èŠæš¡ãª1åéãã®ããŒã¿ããã¯ã¢ãããªã©ãæ£åœã§ããç°åžžãªã¢ã¯ãã£ããã£ã«ãã£ãŠã¢ã©ãŒããããªã¬ãŒãããå ŽåããããŸããããã«ãåæåŠç¿ãã§ãŒãºäžã«æªæã®ããã¢ã¯ãã£ããã£ãååšããå Žåããæ£åžžããšããŠèª€ã£ãŠããŒã¹ã©ã€ã³åãããå¯èœæ§ããããŸãã
- ã°ããŒãã«ãªäŸïŒéåžžãå¶æ¥æéäžã«ãšãŒãããã®åäžã®ãªãã£ã¹ããæäœãããåŸæ¥å¡ã®ã¢ã«ãŠã³ãããçªç¶ãåå3æã«å¥ã®å€§éžã®IPã¢ãã¬ã¹ããæ©å¯ãµãŒããŒã«ã¢ã¯ã»ã¹ãå§ããŸããç°åžžæ€ç¥ã¯ã確ç«ãããããŒã¹ã©ã€ã³ããã®ãªã¹ã¯ã®é«ãéžè±ãšããŠãããçŽã¡ã«ãã©ã°ãç«ãŠãã¢ã«ãŠã³ãã䟵害ãããããšã瀺åããŸãã
3. ã¹ããŒããã«ãããã³ã«åæïŒäŒè©±ã®ã³ã³ããã¹ããçè§£ãã
ãã®é«åºŠãªæè¡ã¯ãåã ã®ãã±ãããåç¬ã§æ€æ»ããã ãã§ã¯ãããŸããããããã¯ãŒã¯ãããã³ã«ã®ç¶æ ã远跡ããããšã«ãããéä¿¡ã»ãã·ã§ã³ã®ã³ã³ããã¹ããçè§£ããããšã«çŠç¹ãåœãŠãŠããŸãã
- ä»çµã¿ïŒã·ã¹ãã ã¯ããã±ããã®ã·ãŒã±ã³ã¹ãåæããŠãããããç¹å®ã®ãããã³ã«ïŒTCPãHTTPããŸãã¯DNSãªã©ïŒã®ç¢ºç«ãããæšæºã«æºæ ããŠããããšã確èªããŸããæ£åœãªTCPãã³ãã·ã§ã€ã¯ãã©ã®ããã«èŠãããããŸãã¯é©åãªDNSã¯ãšãªãšå¿çãã©ã®ããã«æ©èœããããçè§£ããŠããŸãã
- å©ç¹ïŒç¹å®ã®ã·ã°ããã£ãããªã¬ãŒããªãå¯èœæ§ã®ãã埮åŠãªæ¹æ³ã§ãããã³ã«ã®åäœãæªçšãŸãã¯æäœããæ»æãæ€åºã§ããŸããããã«ã¯ãããŒãã¹ãã£ã³ãæçåããããã±ããæ»æãããã³äžéšã®åœ¢åŒã®ãµãŒãã¹æåŠãå«ãŸããŸãã
- çæïŒããåçŽãªæ¹æ³ãããèšç®éãå€ããªãå¯èœæ§ããããé«éãããã¯ãŒã¯ã«å¯Ÿå¿ããã«ã¯ãã匷åãªããŒããŠã§ã¢ãå¿ èŠã§ãã
- äŸïŒæ»æè ã¯ããã³ãã·ã§ã€ã¯ãå®äºããããšãªããTCP SYNãã±ããã®ãã©ããããµãŒããŒã«éä¿¡ããå¯èœæ§ããããŸãïŒSYNãã©ããæ»æïŒãã¹ããŒããã«åæãšã³ãžã³ã¯ããããTCPãããã³ã«ã®äžæ£ãªäœ¿çšãšããŠèªèããã¢ã©ãŒããçºè¡ããŸãããåçŽãªãã±ããã€ã³ã¹ãã¯ã¿ãŒã¯ãããããåå¥ã®æå¹ã«èŠãããã±ãããšããŠèªèããå¯èœæ§ããããŸãã
ãããã¯ãŒã¯ãã©ãã£ãã¯åæã®äž»èŠãªããŒã¿ãœãŒã¹
ãããã®åæãå®è¡ããã«ã¯ãIDSã¯çã®ãããã¯ãŒã¯ããŒã¿ã«ã¢ã¯ã»ã¹ããå¿ èŠããããŸãããã®ããŒã¿ã®å質ãšçš®é¡ã¯ãã·ã¹ãã ã®æå¹æ§ã«çŽæ¥åœ±é¿ããŸãã3ã€ã®äž»èŠãªãœãŒã¹ããããŸãã
ãã«ãã±ãããã£ããã£ïŒPCAPïŒ
ããã¯æãå æ¬çãªããŒã¿ãœãŒã¹ã§ããããããã¯ãŒã¯ã»ã°ã¡ã³ããééãããã¹ãŠã®ãã±ããã®ãã£ããã£ãšä¿åãå«ãŸããŸããããã¯ã詳现ãªãã©ã¬ã³ãžãã¯èª¿æ»ã®ããã®ç©¶æ¥µã®çå®ã®æºã§ãã
- äŸãïŒå»ºç©ã®ãã¹ãŠã®äŒè©±ã®é«è§£å床ãããªããã³ãªãŒãã£ãªé²é³ãæã£ãŠãããããªãã®ã§ãã
- ãŠãŒã¹ã±ãŒã¹ïŒã¢ã©ãŒãã®åŸãã¢ããªã¹ãã¯ãã«PCAPããŒã¿ã«æ»ã£ãŠãæ»æã·ãŒã±ã³ã¹å šäœãåæ§ç¯ããã©ã®ããŒã¿ãæŒæŽ©ããããæ£ç¢ºã«ç¢ºèªããæ»æè ã®æ¹æ³ã詳现ã«çè§£ã§ããŸãã
- 課é¡ïŒãã«PCAPã¯èšå€§ãªéã®ããŒã¿ãçæãããããã¹ãã¬ãŒãžãšé·æçãªä¿æãéåžžã«é«äŸ¡ã§è€éã«ãªããŸãããŸããæ©å¯ã®å人æ å ±ãå«ããã¹ãŠã®ããŒã¿ã³ã³ãã³ãããã£ããã£ãããããGDPRã®ãããªå³æ ŒãªããŒã¿ä¿è·æ³ãããå°åã§ã¯ãé倧ãªãã©ã€ãã·ãŒäžã®æžå¿µãçããŸãã
NetFlowãšãã®ããªã¢ã³ãïŒIPFIXãsFlowïŒ
NetFlowã¯ãIPãã©ãã£ãã¯æ å ±ãåéããããã«Ciscoã«ãã£ãŠéçºããããããã¯ãŒã¯ãããã³ã«ã§ãããã±ããã®ã³ã³ãã³ãïŒãã€ããŒãïŒããã£ããã£ããŸããã代ããã«ãéä¿¡ãããŒã«é¢ããé«ã¬ãã«ã®ã¡ã¿ããŒã¿ããã£ããã£ããŸãã
- äŸãïŒé話ã®é²é³ã§ã¯ãªããé»è©±æéã®è«æ±æžãæã£ãŠãããããªãã®ã§ãã誰ã誰ã«ããã€é»è©±ããããããã©ããããé·ã話ããããã©ãã ãã®ããŒã¿ã亀æããããã¯ããããŸããã圌ããäœãèšã£ããã¯ããããŸããã
- ãŠãŒã¹ã±ãŒã¹ïŒå€§èŠæš¡ãªãããã¯ãŒã¯å šäœã§ã®ç°åžžæ€ç¥ãšé«ã¬ãã«ã®å¯èŠæ§ã«åªããŠããŸããã¢ããªã¹ãã¯ããã±ããã³ã³ãã³ãèªäœãæ€æ»ããå¿ èŠãªããæ¢ç¥ã®æªæã®ãããµãŒããŒãšçªç¶éä¿¡ããããç°åžžã«å€§éã®ããŒã¿ã転éãããããã¯ãŒã¯ã¹ããŒã·ã§ã³ããã°ããç¹å®ã§ããŸãã
- 課é¡ïŒãã€ããŒãããªãããããããŒããŒã¿ã ãããè åšã®å ·äœçãªæ§è³ªã倿ããããšã¯ã§ããŸãããç ïŒç°åžžãªæ¥ç¶ïŒã¯èŠããŸãããç«ïŒç¹å®ã®æªçšã³ãŒãïŒãåžžã«ç¢ºèªã§ãããšã¯éããŸããã
ãããã¯ãŒã¯ããã€ã¹ããã®ãã°ããŒã¿
ãã¡ã€ã¢ãŠã©ãŒã«ããããã·ãDNSãµãŒããŒãWebã¢ããªã±ãŒã·ã§ã³ãã¡ã€ã¢ãŠã©ãŒã«ãªã©ã®ããã€ã¹ããã®ãã°ã¯ãçã®ãããã¯ãŒã¯ããŒã¿ãè£å®ããéèŠãªã³ã³ããã¹ããæäŸããŸããããšãã°ããã¡ã€ã¢ãŠã©ãŒã«ãã°ã¯æ¥ç¶ããããã¯ãããããšã瀺ãããããã·ãã°ã¯ãŠãŒã¶ãŒãã¢ã¯ã»ã¹ããããšããç¹å®ã®URLã瀺ããDNSãã°ã¯æªæã®ãããã¡ã€ã³ã®ã¯ãšãªãæããã«ããããšãã§ããŸãã
- ãŠãŒã¹ã±ãŒã¹ïŒãããã¯ãŒã¯ãããŒããŒã¿ããããã·ãã°ãšé¢é£ä»ããããšã§ã調æ»ãå å®ãããããšãã§ããŸããããšãã°ãNetFlowã¯ãå éšãµãŒããŒããå€éšIPãžã®å€§éã®ããŒã¿è»¢éã瀺ããŠããŸããæ¬¡ã«ããããã·ãã°ã¯ããã®è»¢éãããžãã¹ã§ã¯ãªããªã¹ã¯ã®é«ããã¡ã€ã«å ±æWebãµã€ããžã®ãã®ã§ããããšãæããã«ããã»ãã¥ãªãã£ã¢ããªã¹ãã«å³æã®ã³ã³ããã¹ããæäŸã§ããŸãã
çŸä»£ã®ã»ãã¥ãªãã£ãªãã¬ãŒã·ã§ã³ã»ã³ã¿ãŒïŒSOCïŒãšNTA
çŸä»£ã®SOCã§ã¯ãNTAã¯åãªãã¹ã¿ã³ãã¢ãã³ã®ã¢ã¯ãã£ããã£ã§ã¯ãããŸãããããã¯ãããåºç¯ãªã»ãã¥ãªãã£ãšã³ã·ã¹ãã ã®ã³ã¢ã³ã³ããŒãã³ãã§ãããå€ãã®å Žåããããã¯ãŒã¯æ€åºããã³å¯Ÿå¿ïŒNDRïŒãšåŒã°ããããŒã«ã®ã«ããŽãªã«å ·çŸåãããŠããŸãã
ããŒã«ãšãã©ãããã©ãŒã
NTAã®ç¶æ³ã«ã¯ã匷åãªãªãŒãã³ãœãŒã¹ããŒã«ãšé«åºŠãªåçšãã©ãããã©ãŒã ãæ··åšããŠããŸãã
- ãªãŒãã³ãœãŒã¹ïŒSnortãSuricataã®ãããªããŒã«ã¯ãã·ã°ããã£ããŒã¹ã®IDSã®æ¥çæšæºã§ããZeekïŒæ§BroïŒã¯ãã¹ããŒããã«ãããã³ã«åæã®ããã®åŒ·åãªãã¬ãŒã ã¯ãŒã¯ã§ããããããã¯ãŒã¯ãã©ãã£ãã¯ããè±å¯ãªãã©ã³ã¶ã¯ã·ã§ã³ãã°ãçæããŸãã
- åçšNDRïŒãããã®ãã©ãããã©ãŒã ã¯ãããŸããŸãªæ€åºæ¹æ³ïŒã·ã°ããã£ãç°åžžãè¡åïŒãçµ±åããå€ãã®å Žåã人工ç¥èœïŒAIïŒã𿩿¢°åŠç¿ïŒMLïŒã䜿çšããŠãéåžžã«æ£ç¢ºãªè¡åããŒã¹ã©ã€ã³ãäœæãã誀æ€ç¥ãæžãããç°çš®ã¢ã©ãŒããåäžã®ã³ããŒã¬ã³ããªã€ã³ã·ãã³ãã¿ã€ã ã©ã€ã³ã«èªåçã«é¢é£ä»ããŸãã
ãã¥ãŒãã³èŠçŽ ïŒã¢ã©ãŒããè¶ ããŠ
ããŒã«ã¯æ¹çšåŒã®ååã«ãããŸãããNTAã®çã®åã¯ãçç·Žããã»ãã¥ãªãã£ã¢ããªã¹ãããã®åºåã䜿çšããŠè åšãç©æ¥µçã«æ¢ãåºããšãã«å®çŸãããŸããã¢ã©ãŒãããã åŸ ã€ã®ã§ã¯ãªããè åšãã³ãã£ã³ã°ã«ã¯ã仮説ïŒããšãã°ããæ»æè ãDNSãã³ããªã³ã°ã䜿çšããŠããŒã¿ãæŒæŽ©ããŠããçãããããïŒãç«ãŠã次ã«NTAããŒã¿ã䜿çšããŠèšŒæ ãæ€çŽ¢ããããã蚌æãŸãã¯å蚌ããããšãå«ãŸããŸãããã®ç©æ¥µçãªå§¿å¢ã¯ãèªåæ€åºãåé¿ããããšã«çç·Žããã¹ãã«ã¹ãªæµãèŠã€ããããã«äžå¯æ¬ ã§ãã
ãããã¯ãŒã¯ãã©ãã£ãã¯åæã«ããã課é¡ãšå°æ¥ã®ãã¬ã³ã
NTAã®åéã¯ããã¯ãããžãŒã𿻿è ã®æ¹æ³è«ã®å€åã«å¯Ÿå¿ããããã«åžžã«é²åããŠããŸãã
æå·åã®èª²é¡
ãããã仿¥ã®æå€§ã®èª²é¡ã¯ãæå·åïŒTLS/SSLïŒã®åºç¯ãªäœ¿çšã§ãããã©ã€ãã·ãŒã«ã¯äžå¯æ¬ ã§ãããæå·åã«ãããåŸæ¥ã®ãã€ããŒãæ€æ»ïŒã·ã°ããã£ããŒã¹ã®æ€åºïŒãç¡å¹ã«ãªããŸããIDSã¯ãã±ããã®å 容ã確èªã§ããªãããã§ããããã¯ããæéã«ãªããåé¡ãšåŒã°ããããšããããããŸããæ¥çã¯ã次ã®ãããªæè¡ã§å¯Ÿå¿ããŠããŸãã
- TLSæ€æ»ïŒããã«ã¯ãæ€æ»ã®ããã«ãããã¯ãŒã¯ã²ãŒããŠã§ã€ã§ãã©ãã£ãã¯ã埩å·åããå床æå·åããããšãå«ãŸããŸãã广çã§ãããèšç®ã³ã¹ããé«ããªãå¯èœæ§ãããããã©ã€ãã·ãŒãšã¢ãŒããã¯ãã£ã®è€éããçããŸãã
- æå·åããããã©ãã£ãã¯åæïŒETAïŒïŒåŸ©å·åããã«ãæå·åããããããŒèªäœå ã®ã¡ã¿ããŒã¿ãšãã¿ãŒã³ãåæããããã«æ©æ¢°åŠç¿ã䜿çšããæ°ããã¢ãããŒããç¹å®ã®ãã«ãŠã§ã¢ãã¡ããªãŒã«åºæã®ãã±ããé·ãšæéã®ã·ãŒã±ã³ã¹ãªã©ã®ç¹æ§ãåæããããšã«ããããã«ãŠã§ã¢ãèå¥ã§ããŸãã
ã¯ã©ãŠãããã³ãã€ããªããç°å¢
çµç¹ãã¯ã©ãŠãã«ç§»è¡ããã«ã€ããŠãåŸæ¥ã®ãããã¯ãŒã¯å¢çãè§£æ¶ãããŸããã»ãã¥ãªãã£ããŒã ã¯ãã€ã³ã¿ãŒãããã²ãŒããŠã§ã€ã«åäžã®ã»ã³ãµãŒãé 眮ã§ããªããªããŸãããNTAã¯ãã¯ã©ãŠãå ã®æ±è¥¿ïŒãµãŒããŒéïŒãã©ãã£ãã¯ãšååïŒå å€ïŒãã©ãã£ãã¯ã®å¯èŠæ§ãåŸãããã«ãAWS VPCãããŒãã°ãAzureãããã¯ãŒã¯ãŠã©ããã£ãŒãGoogleã®VPCãããŒãã°ãªã©ã®ã¯ã©ãŠããã€ãã£ãããŒã¿ãœãŒã¹ã䜿çšããŠãä»®æ³åãããç°å¢ã§åäœããå¿ èŠããããŸãã
IoTããã³BYODã®ççºçãªå¢å
ã¢ãã®ã€ã³ã¿ãŒãããïŒIoTïŒããã€ã¹ãšBring Your Own DeviceïŒBYODïŒããªã·ãŒã®æ®åã«ããããããã¯ãŒã¯æ»æå¯Ÿè±¡é åãåçã«æ¡å€§ããŸããããããã®ããã€ã¹ã®å€ãã¯ãåŸæ¥ã®ã»ãã¥ãªãã£å¶åŸ¡ããããŸãããNTAã¯ããããã®ããã€ã¹ããããã¡ã€ãªã³ã°ããéåžžã®éä¿¡ãã¿ãŒã³ãããŒã¹ã©ã€ã³åãã䟵害ãããŠç°åžžãªåäœãéå§ãããšãã«ãã°ããæ€åºããããã®éèŠãªããŒã«ã«ãªãã€ã€ãããŸãïŒããšãã°ãã¹ããŒãã«ã¡ã©ãçªç¶éèããŒã¿ããŒã¹ã«ã¢ã¯ã»ã¹ããããšãããªã©ïŒã
çµè«ïŒçŸä»£ã®ãµã€ããŒé²åŸ¡ã®æ±
ãããã¯ãŒã¯ãã©ãã£ãã¯åæã¯ãåãªãã»ãã¥ãªãã£æè¡ã§ã¯ãããŸãããããã¯ãçŸä»£ã®çµç¹ã®ããžã¿ã«ç¥çµç³»ãçè§£ããé²åŸ¡ããããã®åºæ¬çãªåéã§ããåäžã®æ¹æ³è«ãè¶ ããŠãã·ã°ããã£ãç°åžžãã¹ããŒããã«ãããã³ã«åæã®ãã¬ã³ãã¢ãããŒããæ¡çšããããšã«ãããã»ãã¥ãªãã£ããŒã ã¯ç°å¢ãžã®æ¯é¡ã®ãªãå¯èŠæ§ãåŸãããšãã§ããŸãã
æå·åãã¯ã©ãŠããªã©ã®èª²é¡ã«ã¯ç¶ç¶çãªã€ãããŒã·ã§ã³ãå¿ èŠã§ãããååã¯åãã§ãããããã¯ãŒã¯ã¯åãã€ããŸããããããã¯ãŒã¯ãæµãããã±ããã¯ãäœãèµ·ãã£ãŠããã®ãã®çå®ã®ç©èªãèªããŸããäžçäžã®çµç¹ã«ãšã£ãŠããã®ç©èªãèããçè§£ããè¡åããèœåãæ§ç¯ããããšã¯ãã¯ããªãã·ã§ã³ã§ã¯ãããŸããã仿¥ã®è€éãªè åšã®ç¶æ³ã«ãããçåã«ã¯çµ¶å¯Ÿã«å¿ èŠãªããšã§ãã