ã¬ãã¥ãŒã®2çªç®ã®éšåã§ã¯ãSQLããŒã¿ããŒã¹ãç©ççã»ãã¥ãªãã£ãã¯ã©ã€ã¢ã³ãåŽã®ã»ãã¥ãªãã£æ©èœããã©ãããã©ãŒã ã®èªå®ãããã³ã»ãã¥ãªãã£ã®æšå¥šäºé ã«é¢ããæ å ±ãæäŸããŸãã
SQL ããŒã¿ããŒã¹ã® ã»ãã¥ãªãã£
SQL Azure Databasesã¯æšæºã®SQL Server Tabular Data StreamïŒTDSïŒãããã³ã«ã䜿çšããŸãããæä»çã«æå·åãããéä¿¡ã¯èš±å¯ãããŸãã SQL Server 2008ã¯ãééçãªããŒã¿æå·åïŒTDEïŒãšããæ°æ©èœãå°å ¥ããŸãããããã«ãããæå°éã®åŽåã§ããŒã¿ãå®å šã«æå·åã§ããŸãã ãã ããçŸæç¹ã§ã¯ãSQL AzureããŒã¿ããŒã¹ã¯ããŒã¿ããŒã¹ã¬ãã«ã®æå·åããµããŒãããŠããŸããã çŸæç¹ã§ã¯ãSQL AzureããŒã¿ããŒã¹ã¯TCPæ¥ç¶ããã³ããŒã1433ã§ã®ã¿äœ¿çšå¯èœã§ãããããã£ãŠãADO.NETæå·åæ©èœãšèšŒææžãèæ ®ããå¿ èŠããããŸãã ãŸããããšãã°ãEncrypt = Trueããã³TrustServerCertificate = Falseæ¥ç¶ã®ããããã£ã¯ãéä¿¡ãããããŒã¿ãä¿è·ããäžéè æ»æãé²ãã®ã«åœ¹ç«ã¡ãŸãã SQL Database Azureã®2çªç®ã®ã»ãã¥ãªãã£ããŒã«ãããã³äžè¬çã«äž»ãªãã®ã¯ãSQL Azure Databasesãã¡ã€ã¢ãŠã©ãŒã«ã§ãããæåã¯SQL Azure DatabasesãµãŒããŒãžã®ãã¹ãŠã®ã¢ã¯ã»ã¹ããããã¯ããŸãã é©åãªèšå®ã«æ¥ç¶ããããšãããšå€±æããŸãã SQL AzureããŒã¿ããŒã¹ãµãŒããŒã®æäœãéå§ããã«ã¯ãSQL AzureããŒã¿ã«ã«ç§»åããŠããµãŒããŒã«ã¢ã¯ã»ã¹ããããã®ãã¡ã€ã¢ãŠã©ãŒã«èšå®ã決å®ããå¿ èŠããããŸãã Azure SQLãã¡ã€ã¢ãŠã©ãŒã«ã¯ãAzure SQL Portalãä»ããŠããŸãã¯sp_set_firewall_ruleãsp_delete_firewall_ruleãªã©ã®ã¹ãã¢ãããã·ãŒãžã£ã䜿çšããŠã¡ã€ã³ããŒã¿ããŒã¹ã§çŽæ¥ç®¡çã§ããŸãã
SQL Serverã®å®è£ ãšåæ§ã«ããŠãŒã¶ãŒã¢ã«ãŠã³ã管çãå³å¯ã«å¶åŸ¡ããå¿ èŠããããã1ã€ã®åŽé¢ã§ãã ãããã®ããŒã«ã«ãããSQL Azureã¯ã¯ã©ãŠãã¢ããªã±ãŒã·ã§ã³åãã®é«åºŠã«å®å šãªç®¡çãã©ãããã©ãŒã ã§ãã
ã»ãã¥ãªãã£ã³ã³ããã¹ãã«ã¯ãSQL ServerãšSQL AzureããŒã¿ããŒã¹ã®éãã®ãªã¹ãããããŸãã
- Microsoft SQL Serverã¯ãActive Directoryã®ã¢ã¯ã»ã¹èšå®ã䜿çšããWindowsçµ±åèªèšŒããµããŒãããŠããŸãã SQL AzureããŒã¿ããŒã¹ã¯ãSQL ServerèªèšŒã®ã¿ããµããŒãããŸãã
- Microsoft SQL Serverããã³SQL AzureããŒã¿ããŒã¹ã¯ãåããŒã¿ããŒã¹ã§äœæããããŠãŒã¶ãŒãã°ã€ã³ã«é¢é£ä»ãããããŠãŒã¶ãŒãšããŒã«ã«åºã¥ããŠåãæ¿èªã¢ãã«ã䜿çšããŸãã
- Microsoft SQL Serverã«ã¯ãserveradminãsecurityadminãdbcreatorãªã©ã®æšæºçãªãµãŒããŒã¬ãã«ã®åœ¹å²ããããŸãã SQL AzureããŒã¿ããŒã¹ã«ã¯ãããã®ããŒã«ã¯ãããŸããã 代ããã«ãSQL AzureããŒã¿ããŒã¹ã«ã¯loginmanagerïŒãã°ã€ã³ã®äœæïŒãšdbmanagerïŒããŒã¿ããŒã¹ã®äœæãšç®¡çïŒã®åœ¹å²ããããŸãã ãããã®ããŒã«ã¯ãmasterããŒã¿ããŒã¹ã®ãŠãŒã¶ãŒã«é¢é£ä»ããããšãã§ããŸãã
- SQL Serverããã³SQL AzureããŒã¿ããŒã¹ãžã®ã¢ã¯ã»ã¹ã¯ãTCP / 1433ããŒããä»ããŠSSLãããã³ã«ã§ä¿è·ãããŠãã衚圢åŒããŒã¿ã¹ããªãŒã ïŒTDSïŒã¢ããªã±ãŒã·ã§ã³ã¬ã€ã€ãŒãããã³ã«ãä»ããŠè¡ãããŸãã SSLã®äœ¿çšã¯ãMicrosoft SQL Serverã§ã¯ãªãã·ã§ã³ã§ãããSQL AzureããŒã¿ããŒã¹ã§ã¯å¿ é ã§ãã
- SQL Serverã§ã¯ãIPããŒã¹ã®ã¢ã¯ã»ã¹å¶åŸ¡ã¯ããã¡ã€ã¢ãŠã©ãŒã«ã䜿çšããŠãã¹ãã¬ãã«ãŸãã¯ãããã¯ãŒã¯ã¬ãã«ã§å®è¡ããå¿ èŠããããŸãã SQL Azure Databasesã«ã¯ãSQL Azure DatabasesãµãŒããŒãžã®ãã¹ãŠã®ã¢ã¯ã»ã¹ãå¶éãããã¡ã€ã¢ãŠã©ãŒã«ãçµã¿èŸŒãŸããŠãããã©ã®ã¯ã©ã€ã¢ã³ããæ¿èªãããã³ã³ãã¥ãŒã¿ãŒã§ããããå€æããŸãã ãã¡ã€ã¢ãŠã©ãŒã«ã¯ãåãªã¯ãšã¹ãã®IPã¢ãã¬ã¹ã«åºã¥ããŠã¢ã¯ã»ã¹ãçºè¡ããŸãã
- SQL Serverã¯ãééçããŒã¿æå·åïŒTDEïŒæ©èœã䜿çšããŠãããŒãžã¬ãã«ã§ãã¹ãŠã®ä¿åããŒã¿ã®ãªã¢ã«ã¿ã€ã æå·åãæäŸããŸãã ãã®ãããªæå·åã¯ãSQL AzureããŒã¿ããŒã¹ã§ã¯ãµããŒããããŠããŸããã
Windows Azure Trust Servicesã䜿çšããŠããŒã¿ãæå·åããããšãã§ããŸãã
ç©ççã»ãã¥ãªãã£
Windows AzureãµãŒãã¹ã¯ã24æéäœå¶ã§åäœããå¿ èŠã®ããããŒã¿ã»ã³ã¿ãŒã®ã°ããŒãã«ãããã¯ãŒã¯ãéããŠãŠãŒã¶ãŒã«æäŸãããŸããåãããã¯ãŒã¯ã¯ãããŸããŸãªæ段ã䜿çšããŠãåé»ãç©ççãªäŸµå ¥ããããã¯ãŒã¯æ¥ç¶ã®åæããã·ã¹ãã ãä¿è·ããŸãã ãããã®å°ççã«åæ£ããããŒã¿ã»ã³ã¿ãŒã¯ãç©ççãªã»ãã¥ãªãã£ãšä¿¡é Œæ§ã«é¢ããæ¥çæšæºãæºãããŠããŸãã ãã€ã¯ããœããã¯ãèªç€Ÿã®ããŒã¿ã»ã³ã¿ãŒã®ãµãŒãã¹ãä»ã®äŒæ¥ã«å§ä»»ããããšã¯ããããã€ã¯ããœããã®åŸæ¥å¡ã¯äŒæ¥ã®ããŒã¿ã»ã³ã¿ãŒãå®å šã«ç®¡çãç£èŠãããã³ç®¡çããŸãã
ãã€ã¯ããœããã¯ã管çè ã¢ã¯ã»ã¹ãã¹ã¯ãŒããå®æçã«å€æŽããéãããæ°ã®åŸæ¥å¡ã®ã¿ãå©çšã§ããé«åºŠã«å®å šãªã¢ã¯ã»ã¹ã¡ã«ããºã ã䜿çšããŠããŸãã ããŒã¿ã»ã³ã¿ãŒãžã®ã¢ã¯ã»ã¹ããã³ããŒã¿ã»ã³ã¿ãŒãžã®ã¢ã¯ã»ã¹ãã±ãããéãæš©éã¯ãããŒã¿ã»ã³ã¿ãŒã®ã»ãã¥ãªãã£ã«é¢ããçŸå°ã®æšå¥šäºé ã«åŸã£ãŠããããã¯ãŒã¯éçšç®¡çè ã«ãã£ãŠå¶åŸ¡ãããŸãã
ã»ãã¥ãªãã£éçºã©ã€ããµã€ã¯ã«
Windows Azureã¯ãããªãé«åºŠãªãœãããŠã§ã¢ã»ãã¥ãªãã£ã¢ãã«ãšããŠèªèãããŠããMicrosoftã®ã»ãã¥ãªãã£éçºã©ã€ããµã€ã¯ã«ïŒSDLïŒã«å®å šã«æºæ ããŠããŸãã
ã客æ§ã®å®å š
ãã¡ããã顧客ããŒã¿ã®ã»ãã¥ãªãã£ãšèªç€Ÿã®ããŒã¿ã»ã³ã¿ãŒã®ãã¹ãŠã®åŽé¢ã確ä¿ããããã®Microsoft Corporationã®å€å€§ãªåªåã«ãããããããã¯ã©ã€ã¢ã³ãã¯ãã®ããã»ã¹ã«çŽæ¥é¢äžããå¿ èŠããããŸãã çŸæç¹ã§ã¯ããã€ã¯ããœããèªå®ãœãããŠã§ã¢ããŒã«ãªã©ãã¯ã©ã€ã¢ã³ãåŽã®ã»ãã¥ãªãã£ã確ä¿ããããã®å€ãã®æ¹æ³ãããŒã«ãããŒã«ããããŸãã ãã®ã»ã¯ã·ã§ã³ã§ã¯ãã»ãã¥ãªãã£ã«äœ¿çšã§ããããŸã䜿çšãã¹ãMicrosoftèªå®ããŒã«ã®çããªã¹ããæäŸããŸãã
Windows Azure ä»®æ³ ãããã¯ãŒã¯
Windows Azureä»®æ³ãããã¯ãŒã¯ã䜿çšãããšãWindows Azureã§ä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ïŒVPNïŒãæ§æããã³ç®¡çã§ããã ãã§ãªããããŒã«ã«ã€ã³ãã©ã¹ãã©ã¯ãã£ãšå®å šã«çµ±åã§ããŸãã ä»®æ³ãããã¯ãŒã¯ã䜿çšãããšããªã³ãã¬ãã¹ã€ã³ãã©ã¹ãã©ã¯ãã£ãã¯ã©ãŠãã«æ¡åŒµããªãããIPã¢ãã¬ã¹ãã«ãŒãã£ã³ã°ããŒãã«ãã»ãã¥ãªãã£ããªã·ãŒã®æ§æãªã©ã®ãããã¯ãŒã¯ããããžã管çã§ããŸãã Windows Azureä»®æ³ãããã¯ãŒã¯ã䜿çšããäžè¬çãªã·ããªãªã«ã¯ãããŒã¿ã»ã³ã¿ãŒã®ã¯ã©ãŠããžã®å®å šãªæ¡åŒµãå«ãŸããŸãïŒããŒã¿ã»ã³ã¿ãŒãå®å šã«ã¹ã±ãŒãªã³ã°ããããã®åŸæ¥ã®VPNãä»®æ³ãããã¯ãŒã¯ã¯IPSECã䜿çšããŠäŒæ¥VPNã²ãŒããŠã§ã€ãšWindows Azureã®éã«å®å šãªæ¥ç¶ã確ç«ããŸãã ïŒä»»æã®æ°ã®ã³ã³ãã¥ãŒã¿ãŒïŒããã³ãã€ããªããã·ããªãªã®éçºïŒã¯ã©ãŠãã¢ããªã±ãŒã·ã§ã³ãšä»»æã®ã¿ã€ãã®ããŒã«ã«ã€ã³ãã©ã¹ãã©ã¯ãã£ïŒUnixã·ã¹ãã ãå«ãïŒã®çµ±åïŒã
Windows Azure Connect
Windows Azure Connectã¯ãWindows AzureãšãããŒã¿ããŒã¹ãµãŒããŒããã¡ã€ã³ã³ã³ãããŒã©ãŒãªã©ã®Azure ConnectãšãŒãžã§ã³ãã«åºã¥ãããŒã«ã«ãªãœãŒã¹ã®çµ±åãæäŸããŸãã Windows Azureã¯ãä»®æ³ãããã¯ãŒã¯ãäœæããã¯ã©ãŠãã§IPã¢ãã¬ã¹ãèšå®ããããã®ãã«ã³ã³ãããŒã«ãæäŸããŸãã
Windows Azure Connectã䜿çšããäžè¬çãªã·ããªãªã«ã¯ãåæ£ã¢ããªã±ãŒã·ã§ã³ã®äœæïŒäžå¿ èŠãªã³ãŒããªãã§ããŒã«ã«ã€ã³ãã©ã¹ãã©ã¯ãã£ã«å®å šã«æ¥ç¶ãããããšãã°ã¯ã©ãŠãã¢ããªã±ãŒã·ã§ã³ãããŒã«ã«SQL ServerãŸãã¯Active DirectoryããŒã¿ããŒã¹ãµãŒããŒã«ã¢ã¯ã»ã¹ã§ããïŒãã¢ããªã±ãŒã·ã§ã³ã®ãããã°ïŒãªã¢ãŒããçŽæ¥æ¥ç¶ã䜿çšããã Windows Azureãã©ãããã©ãŒã ã§ãã¹ããããŠããéçºè ãšã¢ããªã±ãŒã·ã§ã³ã®ããŒã«ã«ã³ã³ãã¥ãŒã¿ãŒãããã«ãããããŒã«ã«ã¢ããªã±ãŒã·ã§ã³ã«äœ¿çšãããããŒã«ã䜿çšãããã©ãã«ã·ã¥ãŒãã£ã³ã°ãšãããã°ãå¯èœã«ãªããŸãã
ãµãŒãã¹ ãã¹
Service Busã¯ãããŒã¿ãå®å šã«è»¢éãããªã¬ãŒãæäŸããæ©èœãæäŸããŸããããã«ãããã¯ã©ãŠãã§åæ£ããã³ççµåã®ã¢ããªã±ãŒã·ã§ã³ãæ§ç¯ã§ããŸãã Service Busã䜿çšãããšãããŒã«ã«ã¯ã©ã€ã¢ã³ãããã¯ã©ãŠããŸãã¯ã¯ã©ãŠãå ãžã®éä¿¡ãã£ãã«ãç°¡åã«ä¿è·ã§ããŸãã
èªèšŒ
ã¢ã¯ãã£ãã«äœ¿çšãããŠãããã©ââãããã©ãŒã ã®ã»ãã¥ãªãã£ã¬ãã¥ãŒã§ã¯ãããŸããŸãªçµç¹ã«ãããã©ãããã©ãŒã ã®èªèšŒã®åé¡ãç¡èŠããããšã¯ã§ããŸããã Windows Azureã«ã¯ãæ¥çããªãŒãããèªèšŒäŒç€Ÿããã®äžé£ã®èšŒææžããããŸãã
èªèšŒã«é¢ããäžè¬æ å ±ã¯è¡šã«èšèŒãããŠããŸãã 1ã
è¡š1. Windows Azureæ©èœã®èªå®
Windows Azureæ©èœ | ISO 27001 | SSAE 16 ISAE 3402 | EUã¢ãã«æ¡é | HIPAA BAA |
ãŠã§ããµã€ã | ||||
ä»®æ³ãã·ã³ | X | X | X | X |
ã¯ã©ãŠããµãŒãã¹ | X | X | X | X |
ã¹ãã¬ãŒãžïŒããŒãã«ããããããã¥ãŒïŒ | X | X | X | X |
SQLããŒã¿ããŒã¹ | ||||
ãã£ãã·ã³ã° | ||||
ã³ã³ãã³ãé ä¿¡ãããã¯ãŒã¯ïŒCDNïŒ | ||||
ãããã¯ãŒãã³ã° | X | X | X | X |
Windows Azure Active Directory | ||||
ãµãŒãã¹ãã¹ | ||||
ã¡ãã£ã¢ãµãŒãã¹ |
ISO 27001
Windows Azureãã©ãããã©ãŒã ã¯ãISO 27001 British Standards InstituteïŒBSIïŒã«æºæ ããŠããããšãèªå®ãããŠããŸããå·çæç¹ã§ãISOã¯æ¬¡ã®ãã©ãããã©ãŒã ã³ã³ããŒãã³ããèªå®ããŠããŸãã
â¢èšç®ïŒWebããã³WorkerããŒã«ãå«ãïŒ
â¢ã¹ãã¬ãŒãžïŒãããã¹ãã¬ãŒãžãµãŒãã¹ããã¥ãŒãããŒãã«ãå«ãïŒ
â¢ä»®æ³ãã·ã³ïŒVMããŒã«ãå«ãïŒ
â¢ä»®æ³ãããã¯ãŒã¯ïŒTraffic Managerããã³Connectãå«ãïŒ
åæã«ãMicrosoft Global Foundation Servicesã¯ãWindows Azureãã©ãããã©ãŒã ããã¹ãããããŒã¿ã»ã³ã¿ãŒã«å¯ŸããŠISO 27001ã«æºæ ããåå¥ã®èªèšŒãååŸããŠããŸãã
ãã£ã¹ã
Windows Azureãã©ãããã©ãŒã ã¯ãé£éŠæ å ±ã»ãã¥ãªãã£ç®¡çæ³ïŒFISMAïŒã«åºã¥ãé£éŠæ¿åºã®éçšèŠä»¶ãæºããããšãèªå®ãããŠããŸãã
ã»ãã¥ãªãã£ã«é¢ããæšå¥šäºé
ææ°ã®ã»ãã¥ãªãã£æŽæ°ããã°ã©ã ã䜿çšãã
ServiceConfiguration.cscfgã§osFamilyããã³osVersionããããã£ã䜿çšããããšããå§ãããŸããå©çšå¯èœãªææ°ã®OSããŒãžã§ã³ãæå®ããããšã«ãããã»ãã¥ãªãã£ãå«ãææ°ã®èªåã€ã³ã¹ããŒã«ãããæŽæ°ãä¿èšŒããŸãã
ä¿åããããã°ã®æ倧éãå¶éãããã®å 容ãç£èŠããŸã
ãã°ã¹ãã¬ãŒãžã倧ãããªãããµãŒãã¹ã倱æããå¯èœæ§ãããå Žåãæ»æã®1ã€ã«DoSããããŸãã ä¿åããããã°ã®æ倧éãå¶éããŸãã ããã«ãã³ã³ãã³ãã泚ææ·±ãç£èŠããéèŠãªããŒã¿ãéèŠãªããŒã¿ãèšé²ããªãã§ãã ããã ãã¹ãŠã®æ»æãè¿ éã§ãããšã¯éããªããããåä¿¡ãããã°ãå®æçã«åæããŸã-ãããã®å€ãã¯é·æéã«ããã£ãŠæ¡å€§ããå¯èœæ§ãããããã®å Žåã®äž»ãªã¿ã¹ã¯ã¯ã¿ã€ã ãªãŒã«ããããæ€åºããããšã§ã ããã«ãŒãæåãããšããŠããæ»æè ãèªåã®æŽ»åã®çè·¡ãæ¶å»ã§ããªãããã«ãå®æçãªããã¯ã¢ãããäœæããŸãã
æ©å¯ããŒã¿ã®ã¯ã©ã€ã¢ã³ãåŽã®ãã§ãã¯ãé¿ãã
æ·±å»ãªããžãã¹ããžãã¯ããµãŒããŒã«è»¢éããŠãã¯ã©ã€ã¢ã³ãåŽã®æ€èšŒã¡ã«ããºã ãå®è£ ããªãã§ãã ããã
匷åãªãã¹ã¯ãŒãã䜿çšãã
ã»ãã¥ãªãã£äžã®æåã®æ¹æ³ã¯ãè€éãªãã¹ã¯ãŒãã䜿çšããäžå®æéåŸã«ããããå€æŽããããšã§ãã åçŽãªãã¹ã¯ãŒãã¯ããã«ãŒããã©ãŒã¹æ»æãèŸæžæ»æãªã©ã®ããŸããŸãªæ»æã䜿çšããŠè§£èªã§ããŸãã
æ¥ç¶ããŒã«ã¢ãã«ãæ éã«äœ¿çšãã
æ¥ç¶ããŒã«ã䜿çšããããšã§ããã©ãŒãã³ã¹ãæé©åããããšããå©ç¹ã¯ãããŸãããããã¯æœåšçãªå±éºã§ããå¯èœæ§ããããŸãã
è³æ Œæ å ±ãšããŒã¿ã ããå®å šã§ãªãå Žæã«ä¿ç®¡ããªãã§ãã ãã
å¿ ãè³æ Œæ å ±ãæå·åããè³æ Œæ å ±ããã¬ãŒã³ããã¹ãã§éä¿¡ããèªèšŒããã³æ¿èªã¡ã«ããºã ã䜿çšããŠãã ããã ã¯ã¬ãŒã ããŒã¹èªèšŒã䜿çšããå Žåã¯ãæå·åããããã£ãã«ã䜿çšããŠã»ãã¥ãªãã£ããŒã¯ã³ã転éããŸãã æå·åããããã£ãã«ã¯ãã·ã¹ãã ã誀解ãããããã«æ»æè ãã¡ãã»ãŒãžãååããŠç¹°ãè¿ããå Žåãããšãã°ã»ãã·ã§ã³ã®ãªãã¬ã€ãªã©ã®ããŸããŸãªæ»æã«å¯ŸããŠã圹ç«ã¡ãŸãã HTTP GETãªã¯ãšã¹ãã§ããŒã¿ãéä¿¡ããªãã§ãã ããããªã¯ãšã¹ãã©ã€ã³ãã³ããŒããã ãã§éèŠãªããŒã¿ãã³ããŒã§ããå ŽåããããŸããããã«ãHTTP GETãªã¯ãšã¹ãã©ã€ã³ã¯ãã©ãŠã¶ã®å±¥æŽããããã·ãµãŒããŒãWebãµãŒããŒãã°ã«ä¿åãããŸãã
圹å²ã¢ãã«ã«åºã¥ããŠæ¿èªã·ã¹ãã ãèšèšãã
ããã€ãã®ã¿ã€ãã®ããŒã«ãååšããã·ã¹ãã ãèšèšããŸã-ããšãã°ãæå°éã®ç¹æš©ãæã€ããŒã«ãŸãã¯ã¢ã«ãŠã³ããšç®¡çè ãããã³ãµãŒãã¹ã®ããŸããŸãªé åãžã®ã¢ã¯ã»ã¹ãå¶éããããã®ååã å€ãã®äººã«ç®¡çè æš©éãäžããªãã§ãã ããã ã¹ãŒããŒãŠãŒã¶ãŒã管çè ã«ããªãã§ãã ããã
äºåã«èªèšŒã¿ã€ããèšç»ãã
ã¿ã¹ã¯ã«å¿ããŠãç°ãªãããŒã¿ãœãŒã¹ã§ç°ãªãã¿ã€ãã®èªèšŒã䜿çšã§ããŸãã ããšãã°ãã¡ã³ããŒã·ããã䜿çšããæ¢è£œã®ASP.NETã¢ããªã±ãŒã·ã§ã³ããããã¿ã¹ã¯ã«è€éãªæ¿èªã®äœ¿çšãå¿ ãããå«ãŸããŠããªãå Žåãã€ãŸããåçŽãªãã°ã€ã³ããã¹ã¯ãŒããããã³ããŒã«ã¢ãã«ã䜿çšããã ãã®å ŽåãèªèšŒã䜿çšããããšã¯è¯ããœãªã¥ãŒã·ã§ã³ã§ãWindows Azureã¹ãã¬ãŒãžãµãŒãã¹ã®ããŒã¿ãœãŒã¹ãæã€ãã©ãŒã ã«åºã¥ããŠããŸãã ããè€éãªããžãã¹ããžãã¯ãå¿ èŠãªå Žåã¯ãAzureããŒã¿ããŒã¹ãSQLããŒã¿ãœãŒã¹ãšããŠäœ¿çšã§ããŸãããŸãã¯ãã¯ã©ãŠãã¢ããªã±ãŒã·ã§ã³ããããŒã«ã«Active Directoryã䜿çšããè€éãªçµ±åã¿ã¹ã¯ãã·ããªãªã«å«ãŸããå Žåã¯ãã¯ã¬ãŒã ããŒã¹èªèšŒãšAD FS 2.0ã䜿çšããããšãã§ããŸãã ãã§ãã¬ãŒã·ã§ã³èªèšŒã䜿çšããå¿ èŠãããå ŽåãWindows Azure Active DirectoryïŒã¢ã¯ã»ã¹å¶åŸ¡ãµãŒãã¹ïŒãæé©ãªãªãã·ã§ã³ã§ãããã®èåŸã§ã¯ããããªãã¯ïŒFacebookãã©ã€ãIDãªã©ïŒãšãã©ã€ããŒãïŒActive DirectoryïŒã®äž¡æ¹ã®IDãããã€ããŒã®ã»ãããçµã¿åãããããšãã§ããŸãã
ã°ã«ãŒãã¢ããªããŒã
ãµãŒãã¹ã®ã³ã³ããŒãã³ãã®æ倧æ°ã1ã€ã®ããŒã¿ã»ã³ã¿ãŒãŸãã¯å°åå ã«é 眮ãããšãããŒã¿ã»ã³ã¿ãŒå€ã«éä¿¡ããããã©ãã£ãã¯ãæå°éã«æããããšã§ãçç£æ§ãšé床ã®äž¡æ¹ãããã³ã»ãã¥ãªãã£ã®åºŠåããé«ããããšãã§ããŸãã
äŸå€ãæ£ããåŠçãã
ã¹ããŒãããäŸå€ã®åé·ãªããã¹ããåå ã§ãæœåšçã«è匱æ§ãçºçããå ŽåããããŸãããéåžžã«æ·±å»ãªå ŽåããããŸãã äŸå€æ å ±ã®ããã¹ãã«ã¯ãèŠç¥ãã¬äººã«ç¥ãããããªãããšãã·ã¹ãã ã«ã€ããŠäŒããå¯èœæ§ã®ããæ å ±ãå«ããªãã§ãã ããã
ãŠãŒã¶ãŒãæäŸãããã®ã確èªãã
ãããæ€èšŒããããã€ãã®å±€ããªããã°ãã¯ã©ã€ã¢ã³ããå ¥åããå 容ãä¿¡é Œããªãã§ãã ããã ãã¹ãŠã確èªããŠãã ãããããããªããšãSQLã€ã³ãžã§ã¯ã·ã§ã³ãªã©ã®ããŸããŸãªæ»æã䜿çšããŠã·ã¹ãã ããããã³ã°ããå¯èœæ§ããããŸãã å°çšã©ã€ãã©ãªãéçºããããšã«ãããæ€èšŒã¡ã«ããºã ãäžå åããŸãã ãŠãŒã¶ãŒãæäŸããæ å ±ã䜿çšããŠãWindows Azureã¹ãã¬ãŒãžã«ã³ã³ãããŒããã®ä»ã®ãšã³ãã£ãã£ãããã«äœæããªãã§ãã ãããæåã«ç¢ºèªããããå€æããŠãã ããã
éšåçãªä¿¡é Œ
æ¢å®ã§ã¯ãWindows Azureãã©ãããã©ãŒã ã«å±éãããããŒã«ã¯å®å šãªä¿¡é Œã䜿çšããŠåäœããŸããããã«ããã.NET以å€ã®ã³ãŒããåŒã³åºãããã管çè æš©éãå¿ èŠãšããé©åãªã©ã€ãã©ãªã䜿çšãããã§ããŸãã éšåä¿¡é Œã䜿çšãããšãã¯ã©ãã«ãŒãã·ã¹ãã ã«å®å šã«ã¢ã¯ã»ã¹ã§ããå¯èœæ§ãå°ãªããšããããã«å¶éã§ããŸããããšãã°ãéšåä¿¡é Œã§ã¯ãã¯ã©ãã«ãŒã¯ãã¡ã€ã«ãå€æŽã§ããŸããã éšåä¿¡é Œã¯ãenableNativeCodeExecutionå±æ§ã䜿çšããŠãµãŒãã¹å®çŸ©ãã¡ã€ã«ïŒServiceDefinition.cscfgïŒã§æ瀺çã«å®çŸ©ãããã®å€ãfalseã«èšå®ã§ããŸãã
ããŒãè³¢ã管çãã
ååã¯åçŽã§ã-ããŒã¿ãæå·åããããã®ããŒãšããŠWindows AzureãæäŸããããŒã䜿çšããããšã¯ã§ããŸããã ããã«ãããŒç®¡çã«é¢ããŠã¯ãäžå®ã®æéå ã«ããŒãå€æŽããããšãåªãããœãªã¥ãŒã·ã§ã³ã§ãã ããšãã°ãåã¹ãã¬ãŒãžã¢ã«ãŠã³ãã«2ã€ã®256ãããããŒãå²ãåœãŠãããŠãããããäžæ¹ãããäžæ¹ã§äœ¿çšãããã1ã€ã䜿çšããŠããã°ããããŠããæ°ãããã©ã€ããªããŒãçæããŠäœ¿çšã«ç§»ãããšãã§ããŸãã
å ±æ ã¢ã¯ã»ã¹ 眲å ãšã¢ã¯ã»ã¹èš±å¯ã ç©æ¥µçã«äœ¿çšãã
å ±æã¢ã¯ã»ã¹çœ²åãšããŸããŸãªã¢ã¯ã»ã¹èš±å¯ãç©æ¥µçã«äœ¿çšããŠãã¹ãã¬ãŒãžã¢ã«ãŠã³ããžã®ã¢ã¯ã»ã¹ãå¶éããŸã2012幎6æ7æ¥ä»¥éãå ±æã¢ã¯ã»ã¹çœ²åã¯ãã¹ãŠã®ã¹ãã¬ãŒãžãµãŒãã¹ã§äœ¿çšå¯èœã«ãªããŸããïŒ6æ7æ¥ãŸã§ã¯BLOBã§ã®ã¿äœ¿çšå¯èœïŒã
æå·åãµãŒãã¹ãç©æ¥µçã«äœ¿çšãã
æå·åæšæºïŒæå·åãµãŒãã¹ãããã€ããŒïŒãã¢ã«ãŽãªãºã ãªã©ã®ããŸããŸãªå®è£ ã®ååšãå¿ããªãã§ãã ãããMicrosoftã®å®è£ ãå«ããŸãã
Microsoft Baseæå·åãããã€ããŒ
Microsoft Strong Cryptographic Provider
Microsoft Enhanced Cryptographic Provider
Microsoft AESæå·åãããã€ããŒ
Microsoft DSSæå·åãããã€ããŒ
Microsoft Base DSSããã³Diffie-Hellmanæå·åãããã€ããŒ
Microsoft Enhanced DSSããã³Diffie-Hellmanæå·åãããã€ããŒ
Microsoft DSSããã³Diffie-Hellman / Schannelæå·åãããã€ããŒ
Microsoft RSA / Schannelæå·åãããã€ããŒ
Microsoft RSA Signature Cryptographic Provider
ç¬èªã®æå·åã¡ã«ããºã ã®éçºã¯é¿ããŠãã ãã-ã»ãšãã©ã®å Žåãåãå ¥ããããæšæºã¡ã«ããºã ãããå®å šã§ã¯ãããŸããã
Windows Azureã¹ãã¬ãŒãžã®ãšã³ãã£ãã£ã®ããŒãã£ã·ã§ã³ããŒãæå·åãŸãã¯ããã·ã¥ããªãã§ãã ããã
åæ¹åããã·ã¥é¢æ°ã䜿çšããå Žåãæå°ããŒé·256ãããã®SHAã䜿çšãã察称æå·åã䜿çšããå Žåãæå°ããŒé·256ãããã®AESã䜿çšããé察称æå·åã䜿çšããå Žåãæå°ããŒé·2048ãããã®RSAã䜿çšããŸãã
ãããã«
èŠçŽãããšãã»ãã¥ãªãã£ã«é¢ããäž»èŠãªãã€ã³ãã1ã€ã®çããªã¹ãã«ãŸãšããããšãã§ããŸãã
⢠ãã¹ãŠã®å éšãã©ãã£ãã¯ã® SSLèªèšŒ -ãã©ãããã©ãŒã å ã®ãã¹ãŠã®éä¿¡ã¯SSLã§ä¿è·ãããŸãã
⢠蚌ææžãšç§å¯ããŒã¯ããããã䜿çšããã³ãŒããšã¯å¥ã«ã€ã³ã¹ããŒã«ãããŸãã
â¢ãœãããŠã§ã¢ã®æå°ç¹æš©ã®åå -ãŠãŒã¶ãŒã¯ä»®æ³ãã·ã³ã®ç®¡çè ç¹æš©ãæã¡ãŸãããããã©ãããã©ãŒã ã«ãããã€ããããœãããŠã§ã¢ã¯ç¹æš©ã®ãªãã¢ã«ãŠã³ãã§å®è¡ãããŸãã
⢠ããŒã¿ã㌠-ãã¹ãŠã®ã¹ãã¬ãŒãžã¢ã«ãŠã³ãã«ã¯ãããŒã¿ãžã®ã¢ã¯ã»ã¹ãå¶åŸ¡ããããã«äœ¿çšããã2ã€ã®ç§å¯ããŒããããŸãã
â¢ãã€ããŒãã€ã¶ãŒãã«ãŒãOSãã²ã¹ãOSãããã³ãã¡ããªãã¯ã³ã³ãããŒã©ãŒã®åé¢-ã«ãŒãOSã¯ã²ã¹ãããåé¢ãããã²ã¹ãOSã¯äºãã«åé¢ããããã¹ãŠããã€ããŒãã€ã¶ãŒãšã«ãŒãOSã«ãã£ãŠå¶åŸ¡ãããŸãã Fabric Controllerãžã®ã¢ã¯ã»ã¹ã¯å³ããå¶éãããŠããŸãã
⢠ãã±ãããã£ã«ã¿ãŒ ã ãã€ããŒãã€ã¶ãŒãšã«ãŒãOSã¯ããã±ãããã£ã«ã¿ãŒã䜿çšããŠãä¿¡é Œã§ããªãä»®æ³ãã·ã³ããã®ãã©ãã£ãã¯ãã¹ããŒãã£ã³ã°ããæ©èœãå¶éããŸãã ãããŒããã£ã¹ããã©ãã£ãã¯ãå¶éãããŠããŸãã
⢠VLAN-ãã¹ãŠã®éèŠãªã³ã³ããŒãã³ãã¯ãç¬èªã®åé¢VLANã«é 眮ãããŸãã
â¢ã¯ã©ã€ã¢ã³ããããŒã¿åé€æäœãå®è¡ãããšããã·ã¹ãã ã¯ããã埩å ã§ããªãããšãä¿èšŒããŸãã
ãã¹ãŠã®æ°ãããã©ãããã©ãŒã ãšåæ§ã«ãè¡ããããã¹ãŠã®å€æŽãèæ ®ããŠããWindows Azureã®ã»ãã¥ãªãã£ããã³æå·åããŒã«ã¯ãŸã éçºäžã§ããã絶ãéãªãæ¹åãå¿ èŠã§ãããããã¯çµ¶å¯Ÿã«éåžžã®ç¶æ³ã§ã-ãã©ãããã©ãŒã ã®éçºãèšç»ããéã«èæ ®ããå¿ èŠãããæ°ããè åšãå®æçã«è¡šç€ºãããŸãã
䟿å©ãª ãªã³ã¯
Windows Azureãã©ã¹ãã»ã³ã¿ãŒ-www.windowsazure.com/en-us/support/trust-center