Content
HSM
ããŒããŠã§ã¢ ã»ãã¥ãªã㣠ã¢ãžã¥ãŒã« (HSM) ãšã¯äœã§ãã?
ããŒããŠã§ã¢ ã»ãã¥ãªã㣠ã¢ãžã¥ãŒã«ïŒHSMïŒã¯ãæ©å¯ããŒã¿ãä¿åããæå·åæäœãå®è¡ããããã®ãéåžžã«å®å šã§æ¹ãã鲿¢ã®ç°å¢ãæäŸããŸãã
ãããã¯ç©çããã€ã¹ãšããŠããµãŒãã¹ãšããŠãå©çšã§ããŸãã HSM ã®å®å šãªã¹ãã¬ãŒãžãšæå·ååŠçæ©èœã掻çšããããšã§ãçµç¹ã¯æå·åããŒã眲åã³ãŒããããžã¿ã«èšŒææžããã¹ã¯ãŒããããŒã¯ã³ãªã©ãä¿è·ã§ããŸãã
HSM ã¯ãå®å šãªéèååŒãããžã¿ã«çœ²åãæ©å¯ããŒã¿ã®æå·å/埩å·åãªã©ãæãéèŠãªã»ãã¥ãªãã£æäœã®äžéšã§äžè¬çã«äœ¿çšãããŸãã
ã¬ã¬ã·ãŒ HSM ã·ã¹ãã ãšããŠç¥ãããç©çããã€ã¹ã¯ãè€éã§äœ¿çšãé£ããå ŽåããããŸãã
ã¬ã¬ã·ãŒ ã·ã¹ãã ãææ°ã®ã¯ã©ãŠã ã€ã³ãã©ã¹ãã©ã¯ãã£ãšçµ±åããããšã¯å°é£ã§ãããææ°ã®ã³ã³ãã©ã€ã¢ã³ã¹æšæºãæºãããŠããŸããããã®çµæãçµç¹ã¯çŸåš HSM SaaS ã«åãæ¿ããŠããŸãã
ããŒããŠã§ã¢ ã»ãã¥ãªã㣠ã¢ãžã¥ãŒã« (HSM) ã¯ã©ã®ããã«æ©èœããŸãã?
HSM ã¯ãããŒã®ã©ã€ããµã€ã¯ã«ãå®å šã«ç®¡çããããã«ãã€ãŸããããŒã¿ã®æå·åãšåŸ©å·åã®ããã®æå·ããŒãäœæãä¿åã管çããããã«äœ¿çšãããŸãã
ãã©ã³ã¶ã¯ã·ã§ã³ãéå§ããããšãHSM ã¯ãã©ã³ã¶ã¯ã·ã§ã³ ããŒã¿ãæå·åããããã®äžæã®ããŒãçæããŸããæå·åãããããŒã¿ã¯ãããã¯ãŒã¯çµç±ã§éä¿¡ãããHSM ã¯åä¿¡æã«ããŒã¿ã埩å·åããŸãã
HSM ã¯æ¹ãã鲿¢ãç®çãšããŠèšèšãããŠãããå éšã«ä¿åãããŠããæå·åããŒãžã®äžæ£ã¢ã¯ã»ã¹ãé²ããŸãã
HSM ã䜿çšãããšãçµç¹ã¯ããŒã¿äŸµå®³ã®ãªã¹ã¯ã軜æžããæ©å¯æ å ±ã®æ©å¯æ§ãšå®å šæ§ã確ä¿ã§ããŸãã
ããŒããã®ä»ã®æ©å¯ããŒã¿ã¯ HSM ã«ã©ã®ããã«ä¿åããã³ç®¡çãããŸãã?
ããŒããŠã§ã¢ ã»ãã¥ãªã㣠ã¢ãžã¥ãŒã« (HSM) ã¯ãããŒã®çæãä¿ç®¡ãç Žæ£ãªã©ã®æå·åããŒã®ã©ã€ããµã€ã¯ã«ã管çããŸãã
ãã®ããã€ã¹ã¯èæ¹ããæ§ãåããèšèšã«ãªã£ãŠãããæš©éã®ãªãè ãå éšã«ä¿åãããŠããæå·åããŒã«ã¢ã¯ã»ã¹ããããšãå°é£ã«ãªããŸãã
æå·åã埩å·åãããžã¿ã«çœ²åãªã©ã®ãã¹ãŠã®æå·åæäœã¯ HSM å ã§å®è¡ãããŸãã
HSM ã¯ã»ãã¥ã¢ ããŒã ããã»ã¹ãç©çã»ãã¥ãªãã£æ©èœãªã©ã®åŒ·åãªã»ãã¥ãªãã£ææ®µãæ¡çšããŠãããããçªç Žããããšã¯éåžžã«äžå¯èœã§ãã
ãã®çµæãæš©éã®ãªããŠãŒã¶ãŒã¯ HSM å ã«ä¿åãããŠããæå·åããŒã«ã¢ã¯ã»ã¹ã§ããªããªããŸãã
æ©å¯ããŒã¿ãžã®ã¢ã¯ã»ã¹ã¯èªèšŒã¡ã«ããºã ã«ãã£ãŠå³å¯ã«å¶åŸ¡ãããŠãããèš±å¯ãããæ åœè ã®ã¿ãã¢ã¯ã»ã¹ã§ããŸãã
HSM ãæºãããªããã°ãªããªãã³ã³ãã©ã€ã¢ã³ã¹åºæºã¯äœã§ãã?
äžè¬çã«èªèãããŠãã HSM ã®ã³ã³ãã©ã€ã¢ã³ã¹åºæºã«ã¯æ¬¡ã®ãããªãã®ããããŸãã
GDPR (äžè¬ããŒã¿ä¿è·èŠå): å人ããŒã¿ãä¿è·ããããã®å³æ Œãªæ³åŸãå®ããæ¬§å·é£åã®èŠå¶ã§ããããããæ ãäŒæ¥ã«ã¯å³ãã眰åãç§ããããŸãã
PCI DSS (Payment Card Industry Data Security Standard): æ¯æãã«ãŒãææè ã®ããŒã¿ãæ±ãéèæ©é¢ãéè¡çµç¹ãããªãã³ã¯ãæå·é貚æ©é¢ã«é©çšãããŸãã
FIPS 140-2 (é£éŠæ å ±åŠçæšæº): æ©å¯ããŒã¿ã®æ©å¯æ§ãšå®å šæ§ã確ä¿ããããã®æå·åã¢ã«ãŽãªãºã ããã³æå·åã¢ãžã¥ãŒã«ã«é¢ããç±³åœæ¿åºã®æšæºã
ISO/IEC 27001: æ å ±ã»ãã¥ãªãã£ãããžã¡ã³ãã·ã¹ãã (ISMS) ã®åœéèŠæ Œãããã«ã¯ããªã¹ã¯ã®è©äŸ¡ãšç®¡çãã»ãã¥ãªãã£ç®¡çãšæé ãISMS ã®å®æçãªã¬ãã¥ãŒãšè©äŸ¡ã«é¢ããã¬ã€ãã©ã€ã³ãå«ãŸããŠããŸãã
SOC 2 (Service Organization Control 2): ãµãŒãã¹ ãããã€ããŒã®ã»ãã¥ãªãã£ãšãã©ã€ãã·ãŒã®ç®¡çãå¿ èŠãªåºæºã«åŸã£ãŠããããšãä¿èšŒããã»ãã¥ãªãã£ç£æ»ã
Common Criteria: ç¹å®ã®èŠä»¶ã«ç §ãã㊠HSM ããã¹ãããã³è©äŸ¡ããããã®åœéèŠæ Œ (ISO 15408)ã
FIPS 140-2 ã¬ãã« 3 HSM ãšã¯
(é£éŠæ å ±åŠçæšæº) FIPS 140-2 ã¬ãã« 3 èªå®ã® HSM ã¯ãäžæ£éå°é²æ¢ã·ãŒã«ãäŸµå ¥ã»ã³ãµãŒãããã³èªå·±ç Žå£æ©æ§ã«ãã£ãŠç©ççãªæ¹ããã鲿¢ããããã«èšèšãããŠããŸãããããã®ããã€ã¹ã¯ãFIPS 140-2 æšæºã®ã¬ãã« 3 ã®èŠä»¶ãæºãããŠããŸããæé«ã®ã»ãã¥ãªãã£åºæºãæºããããã«ã峿 Œãªãã¹ããšèªèšŒãåããŠããŸããã¬ãã« 3 èªå®ãååŸãããšãçµç¹ã¯æ©å¯æ å ±ãšæå·ããŒãç©ççæ»æããååã«ä¿è·ãããŠããããšãå®å¿ã§ããŸãã
FIPS æšæºã¯ NIST ã®ã³ã³ãã¥ãŒã¿ ã»ãã¥ãªãã£éšéã«ãã£ãŠéçºãããäžçäžã®æ¿åºéšéãšéæ¿åºéšéã®äž¡æ¹ã§ã»ãã¥ãªã㣠ãã³ãããŒã¯ãšããŠåºãæ¡çšãããŠããŸãã
FIPS 140-3 ã¯æå·åããŒããŠã§ã¢ã®æå¹æ§ãæ€èšŒããããã®ææ°ã®ãã³ãããŒã¯ã§ãããFIPS 140-3 èªå®ãåãã補åã¯ç±³åœãšã«ããã®äž¡æ¿åºã«ãã£ãŠæ£åŒã«æ€èšŒãããŠããŸãã
ç±³åœååé·å®ã¯ 2019 幎 5 æ 1 æ¥ã« FIPS 140-3 ã«çœ²åãã2022 幎 4 æ 1 æ¥ä»¥éãæ°ããç³è«ã¯ FIPS 140-2 ã«ä»£ãã£ãŠãæå·ã¢ãžã¥ãŒã«ã® FIPS PUB 140-3 ã»ãã¥ãªãã£èŠä»¶ã«æºæ ããå¿ èŠããããŸãã
ç±³åœæ¿åºã¯ãFIPS 140-2 ã䜿çšããŠãæ°ééšéã®æå·åã¢ãžã¥ãŒã«ããã³ãœãªã¥ãŒã·ã§ã³ (ããŒããŠã§ã¢ããã³ãœãããŠã§ã¢) ã NIST æšæºãæºããã2002 幎é£éŠæ å ±ã»ãã¥ãªãã£ç®¡çæ³ (FISMA) ã«æºæ ããŠããããšãæ€èšŒããŸãã
FIPS 140-2 ã«ã¯ 4 ã€ã®ã¬ãã«ããããŸããæå·ã¢ãžã¥ãŒã«ã FIPS 140-2 ã®ã¬ãã« 3 ã®å³ããèŠä»¶ãæºããã«ã¯ãèŠæ Œã® 4 ã€ã®ã¬ãã«ãã¹ãŠã«æºæ ããŠããããšãå®èšŒããããã«å³æ Œãªãã¹ããåããå¿ èŠããããŸãã
ã»ãã¥ãªã㣠ã¬ãã« 1 ã¯ãæå·åã¢ãžã¥ãŒã«ã®åºæ¬çãªã»ãã¥ãªãã£èŠä»¶ãæå®ããŸããå®çšŒåã°ã¬ãŒãã®æ©åšãé€ããç©ççãªã»ãã¥ãªã㣠ã¡ã«ããºã ã¯å¿ èŠãããŸãããäŸãšããŠã¯ãIC ã«ãŒããã¢ããªã³ ã»ãã¥ãªãã£è£œåãPC æå·åããŒããªã©ããããŸãããœãããŠã§ã¢æå·æ©èœã¯æ±çšPCã§èš±å¯ãããŠããŸãããã®ã¬ãã«ã¯ãããŒããŠã§ã¢ãé«äŸ¡ãããäœã¬ãã«ã®ã»ãã¥ãªã㣠ã¢ããªã±ãŒã·ã§ã³ã«é©ããŠããŸãã
ã»ãã¥ãªã㣠ã¬ãã« 2 ã¯ãã»ãã¥ãªã㣠ã¬ãã« 1 ã®æå·åã¢ãžã¥ãŒã«ã«ç©ççãªã»ãã¥ãªãã£ã远å ããŸãããã®ã¬ãã«ã§ã¯ãäžæ£éå°é²æ¢ã³ãŒãã£ã³ã°ãã·ãŒã«ããããã³ã°é²æ¢ããã¯ãå¿ èŠã§ããã¢ãžã¥ãŒã«å ã®å¹³ææå·ããŒããã®ä»ã®éèŠãªã»ãã¥ãªã㣠ãã©ã¡ãŒã¿ã«ç©ççã«ã¢ã¯ã»ã¹ããã«ã¯ãã³ãŒãã£ã³ã°ãŸãã¯ã·ãŒã«ãç Žãå¿ èŠããããŸããããŒã«ããŒã¹ã®èªèšŒãå¿ èŠã§ãããœãããŠã§ã¢æå·åã¯ãC2 ãŸãã¯åçã®ä¿¡é Œã§ãããªãã¬ãŒãã£ã³ã° ã·ã¹ãã ã§äœ¿çšãããå Žåããã«ããŠãŒã¶ãŒ ã¿ã€ã ã·ã§ã¢ãªã³ã° ã·ã¹ãã ã§èš±å¯ãããŸãã
ã»ãã¥ãªã㣠ã¬ãã« 3 ã§ã¯ãã¢ãžã¥ãŒã«å ã«ä¿æãããŠããéèŠãªã»ãã¥ãªã㣠ãã©ã¡ãŒã¿ãžã®äŸµå ¥è ã«ããã¢ã¯ã»ã¹ãé²ãããã«ã匷åãããç©çã»ãã¥ãªãã£ãå¿ èŠã§ããããšãã°ããã«ããããçµã¿èŸŒã¿ã¢ãžã¥ãŒã«ã¯ã匷åãªçäœã«åããå¿ èŠããããŸããã«ããŒãåãå€ããããããã¢ãéããããããšãéèŠãªã»ãã¥ãªã㣠ãã©ã¡ãŒã¿ããŒãåãããŸãããã®ã¬ãã«ã§ã¯ãID ããŒã¹ã®èªèšŒãšãéèŠãªã»ãã¥ãªã㣠ãã©ã¡ãŒã¿ã®å ¥åãšåºåã«å¯Ÿãããã匷åãªèŠä»¶ãå¿ èŠã«ãªããŸãããœãããŠã§ã¢æå·åã¯ãB1 ãŸãã¯åçã®ä¿¡é Œã§ãããªãã¬ãŒãã£ã³ã° ã·ã¹ãã ããéèŠãªã»ãã¥ãªã㣠ãã©ã¡ãŒã¿ã®å ¥åãšåºåã®ããã®ä¿¡é Œã§ãããã¹ãšãšãã«æ¡çšãããŠããå Žåã«ããã«ããŠãŒã¶ãŒ ã¿ã€ã ã·ã§ã¢ãªã³ã° ã·ã¹ãã ã§èš±å¯ãããŸãã
ã»ãã¥ãªã㣠ã¬ãã« 4 ã¯æé«ã¬ãã«ã®ã»ãã¥ãªãã£ãæäŸããŸããããã¯ãæå·åã¢ãžã¥ãŒã«ã®åšå²ã«ä¿è·ã®ãšã³ãããŒããæäŸããŸããã¬ãã« 4 ã®ç©çã»ãã¥ãªãã£ã¯ãããããæ¹åããã®ããã€ã¹ã®äŸµå ¥ãæ€åºããããšãç®çãšããŠãããéèŠãªã»ãã¥ãªã㣠ãã©ã¡ãŒã¿ããŒãåããå¿ èŠããããŸãããã®ã¬ãã«ã¯ãã¢ãžã¥ãŒã«ã®é»å§ãšæž©åºŠã®éåžžã®åäœç¯å²å€ã®ç°å¢æ¡ä»¶ãå€åã«ããã»ãã¥ãªãã£ã®äŸµå®³ãããã¢ãžã¥ãŒã«ãä¿è·ããŸããã¬ãã« 4 ããã€ã¹ã¯ãç©ççã«ä¿è·ãããŠããªãç°å¢ã§ã®éçšã«ç¹ã«åœ¹ç«ã¡ãŸãã
éè¡ã«ãããHSMãšã¯äœã§ããïŒ
HSMïŒããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ïŒã¯ãæå·éµãšãã®åŠçãä¿è·ããç©ççãªè£ 眮ã§ããéè¡ã®ããžã¿ã«ã·ã¹ãã å ã«ããå®å šãªãé庫ãã®ãããªãã®ã§ãæå·éµãä¿æããéèŠãªã»ãã¥ãªãã£æ©èœãå®è¡ããŸãã
ATMãå©çšããããã«ãŒã決æžãè¡ã£ããããªã³ã©ã€ã³ãã³ãã³ã°ã«ãã°ã€ã³ãããšããHSMã¯PINãæå·åãããããéè¡ã®ã¹ã¿ããã§ãããå¹³æã§èŠãããšã¯ã§ããŸãããæ±ºæžåŠçäžã«ã«ãŒãææè ã®å£åº§æ å ±ãä¿è·ããæ»æè ãæ å ±ãååãããæ¹ãããããããã®ãé²ããŸãã
HSMã¯æå·éµã®ã©ã€ããµã€ã¯ã«å šäœã管çããå®å šã«ä»ã®ä¿¡é Œã§ããã·ã¹ãã ãšäº€æã§ããããã«éµãçæããŸãããŸãããªã¢ã«ã¿ã€ã ã§ååŒã®æ€èšŒãšæ¿èªãè¡ããŸããHSMã¯PCI PINã»ãã¥ãªãã£ãªã©ã®éè¡èŠå¶ãæºããããã«åœ¹ç«ã¡ãŸãã
HSMã®ãŠãŒã¹ã±ãŒã¹ã¯äœã§ããïŒ
HSMã¯ãæå·éµãæ©å¯æäœãçé£ã誀çšãæ¹ããããä¿è·ããããã«äœ¿çšãããŸããéèååŒã§äœ¿çšãããå ŽåãHSMã¯PINãæå·åããã«ãŒãååŒãåŠçããPCI DSSåºæºã«åŸã£ãŠæ¯æãããŒã¿ãä¿è·ããŸããæ¿åºãé²è¡åéã§ã¯ãHSMã¯æ©å¯æ å ±ãä¿è·ããå®å šãªéä¿¡ãã£ãã«ãå¯èœã«ããŸãã
HSMã¯ã¯ã©ãŠãã¢ããªã±ãŒã·ã§ã³ã®æå·éµããœãããŠã§ã¢ç°å¢ã®å€éšã«ä¿åããããšã§ãã·ã¹ãã ã®äŸµå®³ãªã¹ã¯ãäœæžããã»ãã¥ãªãã£ã確ä¿ããŸããäŒæ¥ã®ITç°å¢ã§ã¯ãHSMã¯ããžã¿ã«èšŒææžã«äœ¿çšãããç§å¯éµãçæã»ä¿è·ããPKIïŒå ¬ééµåºç€ïŒã·ã¹ãã ã«ãããæ¬äººç¢ºèªãããã€ã¹èªèšŒãå®å šãªéä¿¡ãæ¯ããŠããŸãã
å»çããšãã«ã®ãŒãéä¿¡ãªã©ã®èŠå¶æ¥çã®çµç¹ã¯ããœãããŠã§ã¢ãæ¹ãããããŠããªãããšãæ€èšŒããã³ãŒã眲åããç§å¯éµãå®å šã«ä¿ç®¡ããããšã§ãããã¯ãã§ãŒã³ãŠã©ã¬ãããä¿è·ããããã«HSMãå©çšããŠããŸããæ©å¯ããŒã¿ãéèååŒãããžã¿ã«IDãæ±ãçµç¹ã¯ãä¿¡é Œãç¶æãéèŠãªè³ç£ãä¿è·ããããã«HSMãæŽ»çšã§ããŸãã
HSMã¯ãªãéèŠãªã®ã§ããããïŒ
HSMïŒããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ïŒã¯ãæå·åãããžã¿ã«çœ²åãèªèšŒã«äœ¿çšãããæå·éµãæãå®å šã«ä¿ç®¡ã»äœ¿çšã§ããå Žæã§ãããããéåžžã«éèŠã§ããæå·éµãçãŸãããæ¹ãããããããããšãã©ããªã«åŒ·åãªæå·åãç¡æå³ã«ãªããæ©å¯ããŒã¿ãé²åºããŠããŸããããHSMã¯æ¬ ãããŸããã
HSMããã€ã¹ã¯ãäžæ£ã¢ã¯ã»ã¹ãé²ãããã«ç¹å¥ã«èšèšãããæ¹ãã鲿¢ããŒããŠã§ã¢å ã«éµãä¿ç®¡ããŸããããšã誰ãããããã¯ãŒã¯ããµãŒããŒã«ã¢ã¯ã»ã¹ã§ãããšããŠããHSMã«ä¿åãããéµãååŸããã䜿çšãããããããšã¯ã§ããŸããã
ããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ã¯ã決æžååŒã®ä¿è·ãå人æ å ±ã財åããŒã¿ã®ä¿è·ãéè¡æ¥çãå»çãæ¿åºãªã©ã®å³ããã³ã³ãã©ã€ã¢ã³ã¹èŠåã®éµå®ã«å©çšãããŠããŸããçµç¹ãæãæ©å¯æ§ã®é«ãã»ãã¥ãªãã£æäœãä¿¡é Œã§ããããŒããŠã§ã¢å ã§å®è¡ããããšã§ãããŒã¿ã®æ£ç¢ºæ§ãç¶æãã顧客ã®ãã©ã€ãã·ãŒãå®ããã»ãã¥ãªãã£äŸµå®³ã®ãªã¹ã¯ãäœæžã§ããŸãã
HSMã®å©ç¹ã¯äœã§ããïŒ
HSMã¯ãèªå®ãããæ¹ãã鲿¢ããŒããŠã§ã¢å ã«æå·éµãä¿ç®¡ããŸããHSMã¯äžæ£ã¢ã¯ã»ã¹ãé²ããé«ãªã¹ã¯ç°å¢ã§ã®ããŒã¿æŒæŽ©ã®ãªã¹ã¯ã軜æžããŸããæå·åãããžã¿ã«çœ²åãèªèšŒããã»ã¹ããµããŒãããä¿¡é Œæ§ãç¶æããŸãã
ããŒããŠã§ã¢ããŒã¹ã®ã¢ãããŒããçšããããšã§ãçµç¹ã¯PCI DSSãGDPRãHIPAAãªã©ã®å³æ Œãªã»ãã¥ãªãã£èŠä»¶ãæºããããšãã§ããŸãã
HSMã¯éµç®¡çãéäžåããè€æ°ã®å Žæã«éµãä¿ç®¡ããããšã«äŒŽãè€éãããªã¹ã¯ãæžãããŸããããã«ãããé«ãã»ãã¥ãªãã£ã¬ãã«ãç¶æãã€ã€ãéçšå¹çãåäžããŸãã
ããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ã¯ãéèãµãŒãã¹ãå»çãæ¿åºæ©é¢ããã®ä»ã®æ©å¯æ å ±ãæ±ãåéã«ãããŠã䟡å€ããã»ãã¥ãªãã£æè³ã§ãã
HSMã®çš®é¡ã¯äœã§ããïŒ
HSMã¯ãçµç¹ãã©ã®ããã«äœ¿çšãããã«ãã£ãŠãããŸããŸãªæ¹æ³ã§èšå®ã§ããŸãããããã¯ãŒã¯æ¥ç¶åHSMã¯ãã¢ããªã±ãŒã·ã§ã³ãšå®å šãªãããã¯ãŒã¯æ¥ç¶ãä»ããŠãªã³ã¯ããã¹ã¿ã³ãã¢ãã³ã®ããã€ã¹ã§ãã
å€ãã®ã·ã¹ãã ã§éµãäžå 管çãããäŒæ¥ããå€§èŠæš¡ãªéçšã§é«éãªããã©ãŒãã³ã¹ãå¿ èŠãªå Žåã«ããéžã°ããŸãã
PCIe HSMã¯ããµãŒããŒã®æ¡åŒµã¹ãããã«çŽæ¥å·®ã蟌ãããŒããŠã§ã¢ã«ãŒãã§ãããµãŒããŒå ã§åäœãããããéåžžã«äœé å»¶ã§ãHSMãçµç¹ã®æ¢åã·ã¹ãã ã®ç©ççãªäžéšã§ãªããã°ãªããªãç¶æ³ã«é©ããŠããŸãã
ã¯ã©ãŠãHSMã¯ãåŸæ¥ã®ããŒããŠã§ã¢ãšã»ãŒåæ§ã«æ©èœããŸãããã¯ã©ãŠããããã€ããŒã®ã€ã³ãã©ã¹ãã©ã¯ãã£äžã§ãã¹ããããŸãããã®ãªãã·ã§ã³ã«ãããç©çããã€ã¹ã®è³Œå ¥ãç¶æãäžèŠã«ãªããéµã®ä¿ç®¡ãæå·åŠçã«ãããŠåãèªèšŒã¬ãã«ã®ã»ãã¥ãªãã£ãæäŸããŸãã
ã¯ã©ãŠãHSMã¯ããªã³ãã¬ãã¹ã®ããŒããŠã§ã¢ãç¶æããã«HSMã®æ©èœãå©çšã§ãããããæè»æ§ããããã¯ã©ãŠãã¢ããªã±ãŒã·ã§ã³ãšã®çµ±åã容æã§ãã
HSM as a serviceãšã¯äœã§ããïŒ
HSM as a Serviceã¯ãã¯ã©ãŠããéããŠå®å šãªããŒããŠã§ã¢ããŒã¹ã®éµç®¡çãæäŸãããµãã¹ã¯ãªãã·ã§ã³åã®ãµãŒãã¹ã§ããçµç¹ããµãŒãã¹ãããã€ããŒãããªã³ããã³ãã§åãèªå®ã»ãã¥ãªãã£æ©èœã«ã¢ã¯ã»ã¹ã§ããå Žåãç©ççãªHSMããã€ã¹ã®è³Œå ¥ãšç¶æã«æè³ããå¿ èŠã¯ãããŸããã
HSM as a Serviceã¢ãã«ã¯ãã€ã³ãã©ç®¡çãªãã§ãå°çšã®æ¹ãã鲿¢ããŒããŠã§ã¢å ã§æå·éµã®çæãä¿åã䜿çšãå¯èœã§ãããŸããè€æ°ã®ç°å¢ã«ãããæå·åãããžã¿ã«çœ²åã®äœæãå®å šãªã¢ããªã±ãŒã·ã§ã³èªèšŒããµããŒãããŸãã
HSM as a Serviceã¯ãããŒã¿ä¿è·ãå¿ èŠãªå ŽåãèŠå¶ã³ã³ãã©ã€ã¢ã³ã¹ãæºããå¿ èŠãããå Žåãããã³ãªã³ãã¬ãã¹ããŒããŠã§ã¢ã®é«ã³ã¹ããšéçšãªãŒããŒããããåé¿ãããå Žåã«æé©ã§ãã
