RSAã®äœ¿åœã¯ãããžã¿ã«ã»ã»ãã¥ãªãã£ã®åŒ±ç¹ããªããããšã§ããæ¬æ¥ããã®æ ã®éèŠãªãã€ã«ã¹ããŒã³ãçºè¡šã§ããããšãå¬ããæããŸãã RSA Authenticatorã¢ããªV4.4 iOSããã³Androidåãã RSA ID Plus ã¯FIDO2èªèšŒãµãŒããŒã§ãããä»åã®ãã€ã«ã¹ããŒã³ã«ãããç§ãã¡ã®iOSããã³Androidåãã®èªèšŒã¢ããªãFIDO2èªèšŒãåããèªèšŒåšãšãªããŸããã
ããã¯ãå®å šã§çŽæçã§ã·ãŒã ã¬ã¹ãªãŠãŒã¶äœéšã®ãã€ãªãã¢ã§ããããã¹ã¯ãŒãã«äŸåããªããšããç§ãã¡ã®ç®æšãžã®ã³ãããã¡ã³ãã瀺ããŠããŸãã
ãã¹ã¯ãŒãã¯é·ãéããµã€ããŒã»ãã¥ãªãã£ã«ãããé倧ãªè匱æ§ã§ããã人éã®èšæ¶ãšè£éã«äŸåããŠããããããã°ãã°è匱ãªãã¹ã¯ãŒããåå©çšãããŠããŸããç§ãã¡ã¯é·ãé ãã¹ã¯ãŒãã¬ã¹ã»ãœãªã¥ãŒã·ã§ã³ QRã³ãŒãããã€ãªã¡ããªã¯ã¹ãã¯ã³ã¿ã€ã ãã¹ã³ãŒãããŸãã¯FIDO2èªå®ããŒããŠã§ã¢èªèšŒã®ãããªãã®ã§ãã RSA DS100 ãªã©ããã¹ã¯ãŒãã¬ã¹ãœãªã¥ãŒã·ã§ã³ããµããŒãããŠããŸããã
ãã®ææ°ã®ãã€ã«ã¹ããŒã³ã¯ãRSA Authenticatorã¢ããªã«ããã€ã¹ã»ããŠã³ãã»ãã¹ããŒã»ãµããŒãïŒã¢ãã€ã«FIDOïŒã远å ããããšã§ãäŒæ¥ã«ã»ãã¥ã¢ãªãã¹ã¯ãŒãã¬ã¹ãããããããµã€ããŒç¯çœªè ã奜ãè匱æ§ãåãé€ããçµç¹ã®ã»ãã¥ãªãã£ã匷åãããŠãŒã¶ãŒã®æ¥ç¶ãšçç£æ§ãç¶æãããã»ãã¥ã¢ã§ãŠãŒã¶ãŒãã¬ã³ããªãŒãªä»£æ¿ææ®µãæäŸããŸãã
ãã¹ã㌠ã¯ãFacebookãAppleãAmazonã®æ¶è²»è åããœãªã¥ãŒã·ã§ã³ãžã®ã³ãããã¡ã³ãã«å ããŠã FIDOã¢ã©ã€ã¢ã³ã¹ ã¯ãããããã¿ã€ãã® FIDO ã¯ã¬ãã³ã·ã£ã«ã«å¯ŸããŠããã¹ããŒããšããçšèªãæ¡çšããŸããããã®ãããããçµç¹ãããã¹ããŒããšããèšèã䜿ããšããå ·äœçã«äœãæå³ããã®ãã«ã€ããŠæ··ä¹±ãçããŠããŸãã ïŒãã¡ãã®ããã°ããèªã¿ãã ããïŒ.
ç§ãã¡ãèŠã€ããæãéèŠãªéãã¯ãããã€ã¹ããŠã³ããã¹ããŒãšåæãã¹ããŒã®éãã§ãïŒ
- ããã€ã¹ã»ãã€ã³ãã»ãã¹ããŒïŒãã®ã¿ã€ãã®ãã¹ããŒã¯å®å šã«äœæããã1å°ã®ããã€ã¹ã«ä¿åãããŸããç§å¯éµãããã€ã¹ããé¢ããããšããªããããé«åºŠãªã»ãã¥ãªãã£ãä¿èšŒãããŸããããã€ã¹ã»ããŠã³ãã»ãã¹ããŒã¯ãéµã®æŒæŽ©ãªã¹ã¯ãæå°éã«æããæ¬¡ã®ãããªè åšãã匷åºã«ä¿è·ããŸãã ãã£ãã·ã³ã° ããã®ä»ã®ãµã€ããŒè åšããä¿è·ãããŸããã€ãŸããæåã§ç»é²ãçŽããªããã°ããã¹ããŒãå¥ã®ããã€ã¹ã§äœ¿çšããããšãã§ããªããããäŒæ¥ãå ¬å ±æ©é¢ã«ãšã£ãŠçæ³çãªéžæè¢ãšãªããŸãããããã®ãœãªã¥ãŒã·ã§ã³ã¯ãã£ãã·ã³ã°ã«åŒ·ããããé«åºŠãªã»ãã¥ãªãã£ãæäŸããŸãã
- åæãã¹ããŒïŒåæãã¹ããŒã¯ãã¯ã©ãŠããµãŒãã¹ãä»ããŠè€æ°ã®ããã€ã¹éã§ä¿åã»åæãããåããã€ã¹ãåå¥ã«ç»é²ããããšãªããç°ãªãããã€ã¹éã§ãµãŒãã¹ã«ã¢ã¯ã»ã¹ã§ããå©äŸ¿æ§ãæäŸããŸãããŸãããã¹ãã»ããã€ã¹ãçŽå€±ãçé£ã亀æããå Žåã§ããã¹ããŒã®åŸ©å ãå¯èœã§ãç¹ã«ãŠãŒã¶ãŒã¯æºåž¯é»è©±ãæ°å¹Žããšã«ã¢ããã°ã¬ãŒãããããšãå€ããããéåžžã«äŸ¿å©ã§ãããã®ããã«ãŠãŒã¶ãŒã®å©äŸ¿æ§ãåäžããäžæ¹ã§ãã¯ã©ãŠãäžã§åæããããã¹ããŒãä¿è·ããããã®åŒ·åºãªã»ãã¥ãªãã£å¯Ÿçãå¿ èŠã«ãªããŸããåæããããã¹ããŒã¯ãæ¶è²»è åãã®äœ¿çšã«ã¯é©ããŠãããããããŸããããé£éŠæ¿åºãäŒæ¥ç°å¢ã§å¿ èŠãšãããã®ãšåãã¬ãã«ã®ã»ãã¥ãªãã£ãæäŸã§ããªãå¯èœæ§ããããŸãã
iOSããã³Androidçšã®RSA Authenticatorã¢ããªã«ããã€ã¹ããŠã³ãã»ãã¹ããŒã»ãœãªã¥ãŒã·ã§ã³ãå®è£ ããããšã§ãã¯ã©ã€ã¢ã³ãã®ã»ãã¥ãªãã£åŒ·åãæ¯æŽããŸãã ãŒããã©ã¹ã ãã¬ãŒã ã¯ãŒã¯ã«ããããã£ãã·ã³ã°ã«åŒ·ããã¹ã¯ãŒãã¬ã¹èªèšŒãžã®æ·±ãçµ±åããããããããããã¹ã確ä¿ãããŸãããã®ãã¯ãããžãŒã¯ãåŸæ¥ã®ãã¹ã¯ãŒãã®åŒ±ç¹ãæé€ããã·ãŒã ã¬ã¹ã§çŽæçãªãŠãŒã¶ãŒäœéšãæäŸããŸãã
RSAã®UXæ åœãããã§ãããã£ãªããã»ã³ãªãŽã©ãŒã¯ããã®éçºã®éèŠæ§ã«ã€ããŠæ¬¡ã®ããã«åŒ·èª¿ããŠããŸãïŒãRSAã§ã¯ãã»ãã¥ãªãã£ã¯éå£ã§ããã¹ãã§ã¯ãªãããŠãŒã¶ãšã¯ã¹ããªãšã³ã¹ã®äžéšã§ããã¹ãã ãšèããŠããŸããRSA Authenticatorã¢ããªã«ãããããã€ã¹ããŠã³ããã¹ããŒã®ãµããŒãã«ãããç§ãã¡ã¯ã»ãã¥ãªãã£ãåäžãããã ãã§ãªãããŠãŒã¶ãããžã¿ã«ã¢ã€ãã³ãã£ãã£ãšã©ã®ããã«å¯Ÿè©±ããããå€é©ããŠããŸããã
ããã€ã¹ã«ãã€ã³ãããããã¹ããŒã¯ãäžè¬çãªæ»æãç¡å¹åããè€æ°ã®ã»ãã¥ãªãã£ã¬ã€ã€ãŒãæäŸããŸãã
- ãã£ãã·ã³ã°: ãã©ã€ããŒãããŒã¯ããã€ã¹ããå€ã«åºãããšããªããããæ»æè ã¯ãã£ãã·ã³ã°ã®è©Šã¿ãéããŠããŒãååãããçãã ãããããšãã§ããŸããããã¹ããŒãçŽæ¥ãŠãŒã¶ã®ããã€ã¹ãããã£ãã·ã³ã°ããããšã¯æè¡çã«äžå¯èœã§ããæªæã®ããè ãã¯ã©ãŠããžã®ã¢ã¯ã»ã¹ããã£ãã·ã³ã°ãããŒã®ã³ããŒãããŠã³ããŒãããããšããå¯èœæ§ã¯ãããŸããããã©ã€ããŒãããŒèªäœã¯ããã€ã¹äžã«å®å šã«ä¿ãããŠããã倧éšåã®æ»æãé²ããŸãã
- ãœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°: ããã€ã¹ããŠã³ããã¹ããŒã§ã¯ããã©ã€ããŒãããŒã¯å ±æå¯èœã§ãæœåºå¯èœã§ããããŸããããŠãŒã¶ããã©ã€ããŒãããŒã«ã¢ã¯ã»ã¹ãããèŠãããæ±ã£ããããå¿ èŠããªãããããœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°æ»æã®ãªã¹ã¯ãå€§å¹ ã«äœæžããŸããæ»æè ã¯ãŠãŒã¶ãæã£ãŠããªãæ å ±ãæŽé²ããããããªæå£ã䜿ãããšãã§ããŸããã
- äžéè æ»æ: æ»æè ããµãŒãã¹ãšèªèšŒåšéã®éä¿¡ãååããŠããå ¬ééµã ãã§ã¯ã¢ã¯ã»ã¹ãååŸããããšã¯ã§ããŸããã
ã»ãŒãã¹ãŠã®çµç¹ãã¢ãã€ã«FIDOã®æ©æµãåããããšãã§ããŸããããã®ãœãªã¥ãŒã·ã§ã³ã¯ç¹ã«å€§çµ±é ã®ãµã€ããŒã»ãã¥ãªãã£åœä»€ ãšã°ãŒã¯ãã£ããªãŒããŒ14028 ã«åŸãã2024äŒèšå¹ŽåºŠæ«ãŸã§ã«å®æœããå¿ èŠãããæ¿åºæ©é¢ã«ãšã£ãŠäŸ¡å€ããããŸãã
Executive Order 14028ïŒEO14028ïŒã¯ãæ¿åºæ©é¢ã«å¯ŸããŠãã¹ã¯ãŒãã¬ã¹ã§ãã£ãã·ã³ã°ã«åŒ·ãèªèšŒãœãªã¥ãŒã·ã§ã³ã䜿çšããããæ±ããŠããŸããããã¯ãéèŠãªã€ã³ãã©ã¹ãã©ã¯ãã£ã®è¿ä»£åãšé²åŸ¡ã®éèŠãªèŠçŽ ã§ãããæ¿åºæ©é¢ã¯è¿ éã«è¡åããå®èšŒæžã¿ã®ãœãªã¥ãŒã·ã§ã³ã宿œããå¿ èŠããããŸãã
é«ä¿èšŒç°å¢ãŸãã¯ã¢ãã€ã«å¶éç°å¢ã§æŽ»åããæ©é¢ããã³äŒæ¥ã«ãšã£ãŠã RSA iShield Key 2 ã·ãªãŒãº FIDO2èªèšŒã®ãã£ãã·ã³ã°èæ§èªèšŒããé£éŠæ¿åºã®ã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ããã³ãŒããã©ã¹ãèŠä»¶ãæºããããŒããŠã§ã¢åœ¢æ ã«æ¡åŒµããŸãã.
RSAé£éŠæ åœãã¬ãžãã³ãã®ã±ãã³ã»ãªãŒã«æ°ã¯æ¬¡ã®ããã«è¿°ã¹ãŠããŸãïŒãRSAã®FIDO2èªèšŒãåããããã€ã¹ããŠã³ããã¹ããŒã¯ã倧統é åœä»€ããã³2024äŒèšå¹ŽåºŠã®ç· åãæºããããã«åªåããŠããé£éŠæ©é¢ã«ãšã£ãŠéèŠãªè³ç£ã§ããåã«ãã§ãã¯ããã¯ã¹ãæºããã ãã§ãªããRSAã¯æ°å幎ã«ãããã»ãã¥ãªãã£éèŠã®å®çžŸãšãååã匷åã§ããçµ±äžãããã¹ã±ãŒã©ãã«ã§ãŠãŒã¶ãã¬ã³ããªãŒãªãœãªã¥ãŒã·ã§ã³ãæäŸããŸããã
åœç€Ÿã®ã¢ãã€ã«FIDOãœãªã¥ãŒã·ã§ã³ã¯ãæåããæåŸãŸã§äžè²«ããã·ãŒã ã¬ã¹ãªãã¹ã¯ãŒãã¬ã¹äœéšãæäŸããããã®éèŠãªã¹ãããã§ããiOSããã³AndroidåãRSA Authenticatorã¢ããªV4.4ã¯ããã¯ãã«ã«ã»ãã¬ãã¥ãŒãšããŠã¢ãã€ã«FIDOããµããŒãããŠããŸããã¢ãã€ã«FIDOæ©èœã¯ãiOSããã³Androidåãã®RSA Authenticatorã¢ããªV4.5ã§äžè¬çã«å©çšå¯èœã«ãªãäºå®ã§ãããã®ããŒãžã§ã³ã§ã¯ããããªãæ©èœæ¡åŒµãšåçåããããŠãŒã¶ãŒãšã¯ã¹ããªãšã³ã¹ãæäŸãããäºå®ã§ãã
RSAã¢ãã€ã«FIDOãœãªã¥ãŒã·ã§ã³ã¯ãå®å šãªãã¹ã¯ãŒãã¬ã¹ã¢ã¯ã»ã¹ãéèŠãªãŒããã©ã¹ãç°å¢ã«åŒ·åã«é©åããŸããããã€ã¹ã»ããŠã³ãã»ãã¹ããŒã¯ããã£ãã·ã³ã°ãã¯ã¬ãã³ã·ã£ã«ã®çé£ã«è匱ãªãã¹ã¯ãŒãã«äŸåããããšãªããåã¢ã¯ã»ã¹ã®è©Šè¡ãæ€èšŒããããšã§ããŒãã»ãã©ã¹ãã®ååã«æ²¿ããŸããããã€ã¹ã»ããŠã³ãã»ãã¹ããŒã®å Žåãç§å¯éµã¯å ã®ããã€ã¹ã«å®å šã«ä¿ç®¡ããããããã¢ã¯ã»ã¹ã¯èªèšŒãããããã€ã¹ã®ã¿ã«å¶éããããªã¢ãŒãã»ã¯ãŒã¯ããã€ããªããã»ã¯ãŒã¯ã®ä¿è·ã«æé©ã§ãã
ã»ãã¥ãªãã£ã®åŒ·åã«å ããRSAã¢ãã€ã«FIDOãœãªã¥ãŒã·ã§ã³ã¯ãè·å Žç°å¢å šäœãžã®å®¹æãªã¢ã¯ã»ã¹ãå¯èœã«ããããšã§æè»æ§ãåäžãããæ©å¯ããŒã¿ã®ã»ãã¥ãªãã£ãç¶æããªããäžæãæžãããŸãããã£ãã·ã³ã°ã«åŒ·ãèªèšŒãæ¿åºã«ãã£ãŠçŸ©åä»ããããäžãRSAã¢ãã€ã«FIDOãœãªã¥ãŒã·ã§ã³ã¯ãçµç¹ã仿¥ã®ããŒãºãä¿è·ããã ãã§ãªããææ¥ã®æšæºã«åããã®ã«åœ¹ç«ã¡ãŸãã
RSAã§ã¯ããã¹ã¯ãŒãã¬ã¹æè¡ã®æåç·ã«ç«ã£ãŠããŸããç§ãã¡ã®é©æ°ãžã®å·å¿µã¯ãããžã¿ã«ã»ãã¥ãªãã£ãåå®çŸ©ãããœãªã¥ãŒã·ã§ã³ã®åµåºãæšé²ããŸããç§ãã¡ã¯ãããå®å šã§ãŠãŒã¶ãŒãã¬ã³ããªãŒãªäžçãç®æãããã¹ã¯ãŒãã¬ã¹ç°å¢ãžã®ç§»è¡ãé²ããŠããŸãã
ç§ãã¡ã¯ãçæ§ãšãšãã«ãã®æ ãç¶ããç§ãã¡ã®ã¢ãã€ã«FIDOãœãªã¥ãŒã·ã§ã³ãV4.5ã®äžéšãšããŠäžè¬çã«å©çšå¯èœã«ãªãããšã楜ãã¿ã«ããŠããŸããç§ãã¡ã¯å ±ã«ãæ¥çã«æ°ããªåºæºãæã¡ç«ãŠãã»ãã¥ãªãã£ãå®å šãã€çŽæçã§ããæªæ¥ãžãšå°ãããšãã§ããã®ã§ãã
ãã¹ã¯ãŒãã¬ã¹ãªæªæ¥ã«åããåãçµã¿ãåŒãç¶ããªãŒãããŠããäžã§ããããªãæŽæ°ãšæŽå¯ã«ãæåŸ ãã ããã
###
RSAã¯2024幎12æã«4.5 Authenticator Appãçºè¡šããŸãããã€ãããŒã·ã§ã³ã®è©³çްã¯ãã¡ã èãã£ãã·ã³ã°ããã¹ã¯ãŒãã¬ã¹ãFIDO2èªèšŒ ããŠãŒã¶ãŒã®ã¢ãã€ã«ããã€ã¹ã«çŽæ¥éä¿¡ããããšãã§ããŸãããããã¯ãããªãã管çè
ãªã RSA ID Plusã§æ©èœãæå¹ã«ããæ¹æ³ãåŠã¶.