å€ãã®ããžã¿ã«èšŒææžãããããããããç¬èªã®ç®çã«åœ¹ç«ã¡ãŸãã 蚌ææžã®æãäžè¬çãªã¿ã€ãã¯ãåœç¶SSL蚌ææžã§ãããããã«ã¯ããã€ãã®ãµãã¿ã€ãããããŸãã ã³ãŒã眲å蚌ææžãWebãµã€ããã«ãŠã§ã¢å¯Ÿçã¹ãã£ããŒèšŒææžãããã³ãŠããã¡ã€ãã³ãã¥ãã±ãŒã·ã§ã³èšŒææžããããŸãã
ããããçš®é¡ã®èšŒææžã販売ããŠããããã蚌ææžã«é¢ããäžå®ã®çµéšãšãç¹å®ã®ç¶æ³ã«é©ãã蚌ææžãéžæããæ¹æ³ã«é¢ããç¥èãç²åŸããŠããŸãã ãã®æ
å ±ãå
±æããããã«ããã€ãã®æçš¿ãè©Šã¿ãŸãã
ãããã£ãŠããµã€ãã®å®å
šãªhttpsæ¥ç¶ã確ç«ããã¿ã¹ã¯ãããå Žåã¯ããã®æçš¿ã§SSL蚌ææžã®ãã¹ãŠã®è©³çŽ°ãšæ©èœãæããã«ããŠãæ£ããéžæã容æã«ããããã«ããŸãã
æãäžè¬çãªSSL蚌ææžããå§ããŸãããã
SSL蚌ææžã¯ãçŸæç¹ã§ã€ã³ã¿ãŒãããäžã§æãäžè¬çãªçš®é¡ã®èšŒææžã§ãã ã»ãšãã©ã®å Žåããªã³ã©ã€ã³ã¹ãã¢ãã€ãŸã泚ææ©èœãããã顧客ãå人ããŒã¿ãå
¥åãããµã€ãã§äœ¿çšãããŸãã ãã©ãŠã¶ãããµãŒããŒãžã®è»¢éæã«ãã®ããŒã¿ãååã§ããªãããã«ããããã«ããã¹ãŠã®éä¿¡ããŒã¿ãæå·åããç¹å¥ãªHTTPSãããã³ã«ã䜿çšãããŸãã
HTTPSãããã³ã«ãæäœããæ©èœãæå¹ã«ããã«ã¯ãããžã¿ã«SSL蚌ææžãå¿
èŠã§ãïŒç¹å®ã®ãµã€ãå°çšã®IPãå¿
èŠã§ãïŒã
SSL蚌ææžãšã¯äœã§ããïŒ
SSLã¯ãWebãµãŒããŒïŒãµã€ãïŒãšãã©ãŠã¶éã®æå·åãããæ¥ç¶ãæäŸããããã«äœ¿çšãããæšæºã®ã€ã³ã¿ãŒãããã»ãã¥ãªãã£ãã¯ãããžã§ããSecure Socket Layerã®ç¥ã§ãã SSL蚌ææžã«ãããhttpsãããã³ã«ã䜿çšã§ããŸãã ããã¯ããã©ãŠã¶ãŒãããµãŒããŒã«è»¢éãããæ
å ±ããã©ã€ããŒãã®ãŸãŸã§ããããšãä¿èšŒããå®å
šãªæ¥ç¶ã§ãã ã€ãŸããããã«ãŒãæ
å ±ãçãããšãã人ããä¿è·ãããŠããŸãã SSLã䜿çšããæãäžè¬çãªäŸã®1ã€ã¯ããªã³ã©ã€ã³ãã©ã³ã¶ã¯ã·ã§ã³ïŒååã®è³Œå
¥ãæ¯æãïŒäžã®ã¯ã©ã€ã¢ã³ãã®ä¿è·ã§ãã
SSL蚌ææžãååŸããæ¹æ³ã¯ïŒ
æãç°¡åã§æãç¡æã®æ¹æ³ã¯ãããããèªå·±çœ²å蚌ææžã䜿çšããããšã§ããããã¯ãWebãµãŒããŒã§çŽæ¥çæã§ããŸãã ã¡ãªã¿ã«ãæãäžè¬çãªãã¹ãŠã®ãã¹ãã£ã³ã°ã³ã³ãããŒã«ããã«ïŒCpanelãISPmanagerãDirectadminïŒã§ã¯ããã®æ©èœã¯ããã©ã«ãã§äœ¿çšã§ãããããããã§ã¯èšŒææžäœæããã»ã¹ã®æè¡é¢ãçç¥ããŸãã
ããã«ãèªå·±çœ²å蚌ææžã¯ãã®äŸ¡æ Œã§ããããããäžåšã§ããããã¯ããã®ãããªèšŒææžã«å¯ŸããŠ1ãã€ã ãæ¯æããªãããã§ãã ãã ãããã€ãã¹ã®ç¹ã¯ããã¹ãŠã®ãã©ãŠã¶ããã®ãããªèšŒææžã«å¯ŸããŠãšã©ãŒã衚瀺ãããµã€ããæ€èšŒãããŠããªããšããèŠåã衚瀺ãããããšã§ãã
ã€ãŸããå
¬åŒã®ç®çããã³å
éšäœ¿çšã®ããã«ããã®ãããªèšŒææžã¯é©ããŠããŸãããå
¬éãµã€ããããã«ã¯ãµãŒãã¹ã販売ãããµã€ãã«ãšã£ãŠã¯ããã®ãããªèšŒææžã¯çŠå¿ã§ãã èªåã§å€æããŠããµãŒãã¹ã泚æãããšãã«ãã¯ã©ã€ã¢ã³ãã«ãã®ãšã©ãŒãç»é¢å
šäœã«è¡šç€ºããŠã»ããã§ããïŒ å®è·µã瀺ãããã«ãã»ãšãã©ã®é¡§å®¢ã¯ãã®ãããªããŒãžãenterè¿·ã«é¥ãã泚æãããã«ç¶ããããšãã欲æ±ãèœèãããŸãã
ãã©ãŠã¶ãèªå·±çœ²å蚌ææžã«å¯ŸããŠãã®ãããªèŠåãåºãã®ã¯ãªãã§ããïŒãããåé¿ããæ¹æ³ã¯ïŒ ãã®è³ªåã«çããã«ã¯ãSSL蚌ææžèªäœã®åçã«ã€ããŠå°ã話ãå¿
èŠããããŸãã
SSL蚌ææžã¯ã©ã®ããã«æ©èœããŸããïŒ
ãããã£ãŠãSSL蚌ææžãååŸããããã«æåã«è¡ãããšã¯ã蚌ææžçºè¡ã®ç¹å¥ãªèŠæ±ãããããïŒèšŒææžçœ²åèŠæ±ïŒãäœæããããšã§ãã ãã®ãªã¯ãšã¹ããäœæããéã«ã¯ããã¡ã€ã³ãšäŒç€Ÿã«é¢ãã詳现ãæ確ã«ããããã«äžé£ã®è³ªåãæ±ããããŸãã å®äºãããšãWebãµãŒããŒã¯2çš®é¡ã®æå·åããŒïŒç§å¯ããŒãšå
¬éããŒïŒãäœæããŸãã
å
¬ééµã¯ç§å¯ã§ã¯ãªããCSRãªã¯ãšã¹ãã«é
眮ãããŸãã
ãã®ãããªãªã¯ãšã¹ãã®äŸã次ã«ç€ºããŸãã
-----蚌ææžãªã¯ãšã¹ãã®éå§-----
MIIC3zCCAccCAQAwgZkxCzAJBgNVBAYTAlVBMQ0wCwYDVQQIEwRLaWV2MQ0wCwYD
VQQHEwRLaWV2MRQwEgYDVQQKEwtIb3N0QXV0b21hdDEQMA4GA1UECxMHaG9zdGlu
ZzEmMCQGCSqGSIb3DQEJARYXc3VwcG9ydEBob3N0YXV0b21hdC5jb20xHDAaBgNV
BAMTE3d3dy5ob3N0YXV0b21hdC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw
ggEKAoIBAQDTg7iUv / iX + SyZl74GcUVFHjFC5IqlTNEzWgLWrsSmxGxlGzXkUKid
NyXWa0O3ayJHOiv1BSX1l672tTqeHxhGuM6F7l5FTRWUyFHUxSU2Kmci6vR6fw5c
cgWOMMNdMg7V5bMOD8tfI74oBkVE7hV95Ds3c594u7kMLvHR + xui2S3z2JJQEwCh
mflIojGnSCO / iv64RL9vjZ5B4jAWJwrruIXO5ILTdis41Z1nNIx3bBqkif0H / G4e
O5WF6fFb7etm8M + d8ebkqEztRAVdhXvTGBZ4Mt2DOV / bV4e / ffmQJxffTYEqWg8w
b465GdAJcLhhiSaHgqRzrprKns7QSGjdAgMBAAGgADANBgkqhkiG9w0BAQUFAAOC
AQEAuCfJKehyjt7N1IDv44dd + V61MIqlDhna0LCXH1uT7R9H8mdlnuk8yevEcCRI
krnWAlA9GT3VkOY3Il4WTGg3wmtq6WAgLkVXQnhIpGDdYAflpAVeMKil8Z46BGIh
KQGngL2PjWdhMVLlRTB / 01nVSKSEk2jhO8 + 7yLOY1MoGIvwAEF4CL1lAjov8U4XG
NfQldSWT1o8z9sDeGsGSf5DAXpcccx0gCyk90HFJxhbm / vTxjJgchUFro / 0goVpB
credpKxtkwBMuCzeSyDnkQft0eLtZ9b9Q4 + ZNDWsPPKxo / zWHm6Pa / 4F4o2QKvPC
Px9x4fm + / xHqkhkR79LxJ + EHzQ ==
-----蚌ææžãªã¯ãšã¹ãã®çµäº-----
ãã®ããŒã«å«ãŸããããŒã¿ã¯ãCSR DecoderãµãŒãã¹ã䜿çšããŠç°¡åã«ç¢ºèªã§ããŸãã äŸïŒ
CSRãã³ãŒããŒ1ãŸãã¯
CSRãã³ãŒããŒ2 ã 2çªç®ã®ãµãŒãã¹ã¯ãCSRã«é¢ãã詳现æ
å ±ãæäŸããæå¹æ§ãã€ãŸãã¹ãã£ã³çµæã®çœ²åãã£ãŒã«ãã確èªããŸãã
ãã®ãããªãªã¯ãšã¹ãã埩å·åã®ããã«ãã©ãŒã ã«æ¿å
¥ãããšãå
¬éããŒã«å«ãŸããããŒã¿ã衚瀺ãããŸãã
CSRæ
å ±ïŒ
å
±éåïŒtuthost.ua-ãã®ãããªèšŒææžã§ä¿è·ãããã¡ã€ã³å
çµç¹ïŒTutHost-ãã¡ã€ã³ãå±ããçµç¹ã®åå
çµç¹åäœïŒãã¹ãã£ã³ã°éšé-çµç¹åäœ
ããŒã«ãªãã£ïŒããšã-çµç¹ã®ãªãã£ã¹ãããéœåž
å·ïŒããšã-å°åãŸãã¯å·
åœïŒUA-2æåã®ã³ãŒããå€ååœã
é»åã¡ãŒã«ïŒsupport@tuthost.com-æè¡ç®¡çè
ãŸãã¯ãµããŒããµãŒãã¹ã®é£çµ¡å
é»åã¡ãŒã«
éèŠãªç¹ -åœãã£ãŒã«ãã«æ³šæããŠãã ãã-ãã®ãã£ãŒã«ãã®åœ¢åŒã¯ãISO 3166-1æšæºã«åºã¥ãã2æåã®ã³ãŒãã®ã¿ãæå³ããŸããåœã®ã³ãŒããããããªãå Žåã¯ã
è¡šISO-3166-1ã§ç¢ºèªã§ããŸãã CSRãªã¯ãšã¹ããçæããéã«ã客æ§ãç¯ãæãäžè¬çãªééãã¯ãééã£ãåœã³ãŒãã§ããããããã®åéã«æ³šç®ããŠããŸãã ãã®çµæããã®ãããªCSRã§èšŒææžãçºè¡ããããšã¯äžå¯èœã§ãã
CSRãçæããããã蚌ææžã®çºè¡ç³è«ã«é²ãããšãã§ããŸãã ãã®ããã»ã¹äžã«ã蚌ææ©é¢ïŒCA-蚌ææ©é¢ïŒã¯å
¥åãããããŒã¿ãæ€èšŒããæ€èšŒã«æåãããšãããŒã¿ãšå
±ã«SSL蚌ææžãçºè¡ããHTTPSã䜿çšã§ããããã«ããŸãã ãµãŒããŒã¯ãçºè¡ããã蚌ææžãšçæãããç§å¯ããŒãèªåçã«ç
§åããŸãã ããã¯ããµã€ããšã¯ã©ã€ã¢ã³ããã©ãŠã¶ã®éã«æå·åãããå®å
šãªæ¥ç¶ãæäŸããæºåãã§ããŠããããšãæå³ããŸãã
SSL蚌ææžã«ã¯ã©ã®ããŒã¿ãå«ãŸããŠããŸããïŒ
次ã®æ
å ±ã蚌ææžã«ä¿åãããŸãã
- 蚌ææžææè
ã®å®å
šãªïŒäžæã®ïŒåå
- ææè
ã®å
¬ééµ
- SSL蚌ææžã®çºè¡æ¥
- 蚌ææžã®æå¹æé
- 蚌ææ©é¢ã®å®å
šãªïŒäžæã®ïŒåå
- åºç瀟ã®ããžã¿ã«çœ²å
èªèšŒå±ïŒCAïŒãšã¯äœã§ããïŒ
ããã¯ãããžã¿ã«èšŒææžãçºè¡ããæš©å©ãæã€çµç¹ã§ãã 蚌ææžãçºè¡ããåã«ãCSRã«å«ãŸããããŒã¿ããã§ãã¯ããŸãã æãåçŽãªèšŒææžã§ã¯ããã¡ã€ã³åã®é©åæ§ã®ã¿ããã§ãã¯ãããæãé«äŸ¡ãªèšŒææžã§ã¯ã蚌ææžãèŠæ±ããçµç¹èªäœã«å¯ŸããŠããã€ãã®ãã§ãã¯ãè¡ãããŸãã ããã«ã€ããŠã¯ä»¥äžã§èª¬æããŸãã
ãã®ããã蚌ææ©é¢ã«ãã£ãŠçºè¡ãããèªå·±çœ²åä»ãã®ç¡æ蚌ææžãšææ蚌ææžã®éãã¯ã蚌ææžã®ããŒã¿ã蚌ææ©é¢ã«ãã£ãŠæ€èšŒããããšããäºå®ã«ããããµã€ãã§ãã®ãããªèšŒææžã䜿çšããå Žåã蚪åè
ã¯ç»é¢å
šäœã«å€§ããªãšã©ãŒãèŠãããšã¯ãããŸããã
äžè¬çã«ãSSL蚌ææžã«ã¯ããã¡ã€ã³åãçµç¹åãäœæãéœåžãããã³ããŒãžïŒå°ãªããšã1ã€ïŒãå«ãŸã衚瀺ãããŸãã ãŸãã蚌ææžã«ã¯åžžã«æå¹æéãšèšŒææžã®çºè¡ãæ
åœãã蚌ææ©é¢ã«é¢ããæ
å ±ãå«ãŸããŠããŸãã ãã©ãŠã¶ãŒã¯å®å
šãªãµã€ãã«æ¥ç¶ããããããSSL蚌ææžãåä¿¡ããŠââäžé£ã®ãã§ãã¯ãè¡ããŸãïŒèšŒææžã倱å¹ãããããã®åŸãæ¢ç¥ã®èªèšŒå±ïŒCAïŒã«ãã£ãŠèšŒææžãçºè¡ãããŠãããã©ãããããã³çºè¡ããããµã€ãã§èšŒææžã䜿çšãããŠãããã©ããã確èªããŸã
ãããã®ãã©ã¡ãŒã¿ãŒã®ããããã倱æãããšããã©ãŠã¶ãŒã¯èšªåè
ã«èŠåã衚瀺ããŠããã®ãµã€ããå®å
šãªSSLæ¥ç¶ã䜿çšããŠããªãããšãéç¥ããŸãã 圌ã¯ãµã€ããé¢ãããããã©ãŠãžã³ã°ãç¶ããããšãç³ãåºãŸããã现å¿ã®æ³šæãæã£ãŠããŸãã ããã¯ããªããããªãã®æœåšçãªé¡§å®¢ã«äŒãã¹ãæåŸã®ãã®ã§ãã
èªå®ã»ã³ã¿ãŒã¯å€æ°ãããŸãããããã«æã人æ°ã®ãããªã¹ãã瀺ããŸãã
Comodo-1998幎以æ¥ãç±³åœãã¥ãŒãžã£ãŒãžãŒå·ãžã£ãŒãžãŒã·ãã£ã«æ¬ç€Ÿã眮ããŠäºæ¥ãå±éããŠããŸãã
Geotrust-2001幎ã«èšç«ããã2006幎ã«ç±³åœã«ãªãã©ã«ãã¢å·ããŠã³ãã³ãã¥ãŒã®æ¬ç€Ÿã§ããããªãµã€ã³ã«ãã£ãŠè²©å£²ãããŸããã
Symantec-以åã®VerisignãGeotrustãå«ãŸããŸãã 2010幎ã«ã¿ããªãè²·ããŸããã
Thawte-1995幎ã«èšç«ããã1999幎ã«Verisignã«ãã£ãŠè²©å£²ãããŸããã
Trustwave-1995幎以æ¥å¶æ¥ããŠãããæ¬ç€Ÿã¯ç±³åœã€ãªãã€å·ã·ã«ãŽã«ãããŸãã
ã芧ã®ãšãããSSL蚌ææžåžå Žã§æ倧ã®ãã¬ãŒã€ãŒã¯ãThawteãVerisginãGeotrustã®3ã€ã®æ倧ã®èªèšŒæ©é¢ãææããSymantecã§ãã
蚌ææžã泚æããèªèšŒå±ã«éãã¯ãããŸããïŒ
ããŸããŸãªèªèšŒå±ã®äž»ãªéãã¯ã蚌ææžã®äŸ¡æ Œãšãã«ãŒã蚌ææžãã€ã³ã¹ããŒã«ãããŠãããã©ãŠã¶ãŒã®æ°ã§ãã çµå±ã®ãšããããã©ãŠã¶ããã®èªèšŒå±ã®ã«ãŒã蚌ææžãæã£ãŠããªãå Žåããã®ãããªãã©ãŠã¶ã䜿çšãã蚪åè
ã¯ããã®ãããªã»ã³ã¿ãŒããã®èšŒææžã䜿çšããŠãµã€ãã«å
¥ããšãã«ãšã©ãŒãåãåããŸãã
äžèšã®èšŒææ©é¢ã«é¢ããŠã¯ããããã®ã«ãŒã蚌ææžã¯ãããããã¹ãŠã®æ¢åã®ãã©ãŠã¶ãŒã®99.99ïŒ
ã«ã€ã³ã¹ããŒã«ãããŠããŸãã
ãã©ãŠã¶ã«èªèšŒå±ãã€ã³ã¹ããŒã«ãããŠããã«ãŒã蚌ææžã確èªããã«ã¯ããã©ãŠã¶èšå®ã§ãã®ãããªãªãã·ã§ã³ãèŠã€ããã ãã§ååã§ãã ïŒChromeã®èšå®->詳现èšå®ã衚瀺->蚌ææžç®¡ç->ä¿¡é Œãããã«ãŒã蚌ææ©é¢ïŒã Chromeã«ã¯ããããã®ã«ãŒã蚌ææžã50å以äžãããŸãã
éèŠãªç¹ã¯ããµãŒããŒã«SSL蚌ææžãã€ã³ã¹ããŒã«ããããšãã«ã¯ã©ã€ã¢ã³ãã§é »ç¹ã«ç¶æ³ãçºçããŸãããããµã€ãã«å
¥ããšããã©ãŠã¶ãŒããšã©ãŒã衚瀺ããããšã§ãã ãã®ãããªç¶æ³ã¯ãçºè¡ã»ã³ã¿ãŒã®ã«ãŒã蚌ææžãca-bundle.crtãã¡ã€ã«ã«ãªãããã«ãŒã蚌ææžãå€ãããã«çºçããå¯èœæ§ããããŸãã ã«ãŒã蚌ææžã«ã¯æå¹æéããããŸãïŒãã©ãŠã¶ã§ã¯ããã©ãŠã¶ãæŽæ°ããããšæŽæ°ãããŸãïŒã
2010幎7æ以éãèªèšŒã»ã³ã¿ãŒã¯2048ãããRSAããŒã®äœ¿çšã«åãæ¿ããŸããããã®ããããã¹ãŠã®æ°ãã蚌ææžãæ£ããåäœãããã«ã¯ãæ°ããã«ãŒã蚌ææžãã€ã³ã¹ããŒã«ããå¿
èŠããããŸãã
æ°ããã«ãŒã蚌ææžãã€ã³ã¹ããŒã«ãããŠããªãå Žåã蚌ææžã®æ£ããã€ã³ã¹ããŒã«ããã³äžéšã®ãã©ãŠã¶ã«ããèªèã§åé¡ãçºçããå¯èœæ§ããããŸãã
æ°ããã«ãŒã蚌ææžãããŠã³ããŒãã§ãã蚌ææ©é¢ã®ããŒãžãžã®ãªã³ã¯ã以äžã«ç€ºããŸãã
RapidSSL蚌ææžGeoTrust SSL蚌ææžThawte SSL蚌ææžVeriSign SSL蚌ææžèšŒææžã蚌ææ©é¢ããçŽæ¥è³Œå
¥ããããšã¯ããšã³ããŠãŒã¶ãŒã®äŸ¡æ ŒãããŒãããŒã®äŸ¡æ Œãããããªãé«ããããå©çããããŸããããŸããäŒèšã§ãã®ãããªè³Œå
¥ãçµäºããå¿
èŠãããå Žåããããå°é£ã«ãªããŸãã ãã®ãããªèšŒææžãããŒãããŒãéããŠè³Œå
¥ããããšãæãæçã§ãã ããŒãããŒã¯èšŒææžããŸãšããŠè³Œå
¥ããç¹å¥ãªäŸ¡æ Œãæã£ãŠããããã蚌ææžãçŽæ¥èªèšŒã»ã³ã¿ãŒã§è²©å£²ãããããã¯ããã«å®äŸ¡ã«è²©å£²ã§ããŸãã
ãããã£ãŠãSSL蚌ææžã®çš®é¡ã«è¿ã¥ããŸãã
ã©ã®ãããªçš®é¡ã®SSL蚌ææžãååšããŸããïŒ
ãããã®éã§ã蚌ææžã¯ããããã£ãšæ€èšŒã¬ãã«ãç°ãªããŸãã
æ€èšŒã®çš®é¡ããšã®èšŒææžã®çš®é¡
- ãã¡ã€ã³åã®ã¿ã確èªãã蚌ææžïŒãã¡ã€ã³æ€èšŒ-DVïŒã
- ãã¡ã€ã³ãšçµç¹ã確èªãã蚌ææžïŒçµç¹ã®æ€èšŒ-OVïŒã
- é«åºŠãªæ€èšŒä»ã蚌ææžïŒãšã¯ã¹ãã³ãããæ€èšŒ-EVïŒã
ããããé çªã«åŠçããŸãã
ãã¡ã€ã³ã®ã¿ã®èšŒææž
ãããã¯æãç°¡åãªèšŒææžã§ãã蚌ææžãç·æ¥ã«å¿
èŠãªå Žåã¯ãèªåçãã€å³åº§ã«çºè¡ããããããéžæããããšãã§ããŸãã
ãã®ãããªèšŒææžã確èªãããšãã蚌ææžã®çºè¡ã確èªããããã«ã¯ãªãã¯ããå¿
èŠãããç¹å¥ãªãªã³ã¯ãå«ãã¬ã¿ãŒãéä¿¡ãããŸãã
éèŠãªç¹ã¯ããã®æçŽã¯ã蚌ææžã泚æãããšãã«æå®ããããããæ¿èªè
ã®é»åã¡ãŒã«ã«ã®ã¿éä¿¡ã§ããããšã§ãã ãŸããæ¿èªè
ã®é»åã¡ãŒã«ã¢ãã¬ã¹ã«ã¯ç¹å®ã®èŠä»¶ãããã蚌ææžã泚æãããã¡ã€ã³ãšåããã¡ã€ã³ã«ååšãããããã¡ã€ã³ã®whoisã§æå®ããå¿
èŠããããŸãã
蚌ææžãšåããã¡ã€ã³ã§é»åã¡ãŒã«ãæå®ããå ŽåããšããŒã«ãæå®ã§ããŸããããã³ãã¬ãŒãã®ãããããšäžèŽããå¿
èŠããããŸãã
管çè
@
管çè
@
ãã¹ããã¹ã¿ãŒ@
ãã¹ããã¹ã¿ãŒ@
ãŠã§ããã¹ã¿ãŒ@
ãã1ã€ã®
éèŠãªãã€ã³ãïŒããã«çºè¡ããã蚌ææžã¯ãèªèšŒå±ã«ããè¿œå ã®æåæ€èšŒã®ããã«èœã¡ãããšããããæ€èšŒçšã®èšŒææžã¯ã©ã³ãã ã«éžæãããŸãã ãã®ããã蚌ææžãããã«çºè¡ãããªãå¯èœæ§ã¯ãããã§ããããšã«æ³šæããŠãã ããã
蚌ææ©é¢ããç³è«è
ãæå®ããããã¡ã€ã³åã«å¯Ÿããæš©å©ãæã£ãŠããããšã確èªãããšãã«ããã¡ã€ã³æ€èšŒä»ãã®SSL蚌ææžãçºè¡ãããŸãã çµç¹ã«é¢ããæ
å ±ã®æ€èšŒã¯å®è¡ããããçµç¹ã«é¢ããæ
å ±ã¯èšŒææžã«è¡šç€ºãããŸããã
çµç¹æ€èšŒä»ãã®èšŒææžã
ãã®ãããªèšŒææžã«ã¯ãçµç¹ã®ååããââã§ã«ç€ºãããŠããŸãã å人ã¯ãã®ãããªèšŒææžãåãåãããšãã§ããŸããã ãã®ãããªèšŒææžãçºè¡ããæéã¯ãèªèšŒå±ã«å¿ããŠéåžž3ã10å¶æ¥æ¥ã§ãã
OV蚌ææžãçºè¡ããããã»ã¹
çµç¹ã®æ€èšŒã䌎ã蚌ææžã®çºè¡èŠæ±ãåãåã£ãåŸãèªèšŒã»ã³ã¿ãŒã¯ãCSRã«ç€ºãããŠããããã«çµç¹ãå®éã«ååšãããã©ãããããã³æå®ããããã¡ã€ã³ãããã«å±ããŠãããã©ããã確èªããŸãã
ãã®ãããªå Žåã«äœããã§ãã¯ãããŸããïŒ
ããŸããŸãªèªèšŒæ©é¢ã§ã¯ãæ€èšŒã¯ãããã«ç°ãªãããã確èªãŸãã¯èŠæ±ã§ãããã€ã³ãã®äžè¬çãªãªã¹ãã瀺ããŸãã
- åœéã€ãšããŒããŒãžã§ã®çµç¹ã®ååš-ãã¹ãŠã®èªèšŒã»ã³ã¿ãŒã§ãã§ãã¯ãããŠããŸãã
- whoisãã¡ã€ã³å
ã®çµç¹ã®ååã®ååšâãã ããããã¯æ¢ã«ç¢ºèªãããŠããããã®ãããªååãããã«ç€ºãããŠããªãå Žåããã¡ã€ã³ãæ¬åœã«çµç¹ã«å±ããŠããããšã瀺ãå¿
èŠãããä¿èšŒæžãå¿
èŠã«ãªãå¯èœæ§ãé«ããã¬ãžã¹ãã©ããã®ç¢ºèªãå¿
èŠã«ãªãå ŽåããããŸã
- å·ã®ç»é²èšŒææž-ãŸããŸãå¿
èŠæ§ãå°ãªããªããŸãããçŸåšã§ã¯ããã£ãã«ãéããŠçµç¹ã®ååšã確èªããç¹å¥ãªäŒç€ŸãéããŠç¢ºèªãè¡ãããããšãå€ããªã£ãŠããŸãã ããšãã°ããŠã¯ã©ã€ãã®å ŽåãEDRPOUã«åºã¥ããŠç¢ºèªã§ããŸãã
- é»è©±äŒç€Ÿããã®è«æ±æžãçµç¹ã®ååãšæ³šæã«èšèŒãããŠããé»è©±çªå·ãèšèŒãããŠããŸããããã«ãããé»è©±ã®æå¹æ§ã確èªãããŸãã éèŠã¯ãŸããŸãå°ãªããªã£ãŠããŸãã
- é話ã®ãã¹ã-ãŸããŸãã泚æã§æå®ããé»è©±çªå·ã«é»è©±ããããããšã§ãé»è©±ã®æ£åœæ§ããã§ãã¯ãããŸãã é»è©±ãããããšãã管çè
ã®é£çµ¡å
ã«ç€ºãããŠããåŸæ¥å¡ã«å°ããŸãã ãã¹ãŠã®èªèšŒå±ã«ãã·ã¢èªã話ãåŸæ¥å¡ãããããã§ã¯ãªããããé»è©±ã«å¿çãã人ã«è±èªã話ãäŒç€Ÿããã®é»è©±ãå¯èœã§ããããšãéç¥ããŠãã ããã
é«åºŠãªæ€èšŒèšŒææžã
ãããã¯æãé«äŸ¡ãªèšŒææžã§ãããå
¥æãæãå°é£ã§ãã ãã®ãããªèšŒææžã«ã¯ããããããç·ã®ããŒããå«ãŸããŠããŸããã€ãŸãã蚌ææžãã€ã³ã¹ããŒã«ãããŠãããµã€ãã«å
¥ããšã蚪åè
ã®ãã©ãŠã¶ãŒã®ã¢ãã¬ã¹ããŒã«ç·ã®ç·ã衚瀺ããã蚌ææžãåãåã£ãçµç¹ã®ååã瀺ããŸã
Thawteã®Webãµã€ãã§ã®è¡šç€ºã¯æ¬¡ã®ãšããã§ãã
ãã®ãããªèšŒææžã¯ããµã€ããžã®äžçŽèšªåè
ã®éã§æé«ã¬ãã«ã®ä¿¡é Œãæã£ãŠããŸãã蚌ææžã¯ãäŒç€Ÿãå®éã«ååšããå®å
šãªç£æ»ã«åæ Œãããµã€ããå®éã«æå±ããŠããããšã瀺ãããã§ãã
é«åºŠãªæ€èšŒïŒEVïŒã䌎ãSSL蚌ææžã¯ãèªèšŒæ©é¢ïŒCAïŒã2ã€ã®ãã§ãã¯ãå®è¡ããŠãç¹å®ã®ãã¡ã€ã³ãšèªèšŒæ©é¢ãçµç¹ã®å®å
šãªç£æ»ãå®è¡ããæš©éãçµç¹ãæã£ãŠããããšã確èªããå Žåã«ã®ã¿çºè¡ãããŸãã EV蚌ææžãçºè¡ããããã»ã¹ã¯æšæºåãããŠããã2007 CA / Browser Forumã§äœæãããEVã«ãŒã«ã«å³å¯ã«æºæ ããå¿
èŠããããŸãã EV蚌ææžãçºè¡ããåã«èšŒææ©é¢ãå®è¡ããå¿
èŠãããæé ã瀺ããŸãã
- 察象ã®æ³çã身äœçãããã³éçšäžã®æŽ»åã確èªããå¿
èŠããããŸãã
- çµç¹ãå
¬åŒææžã«æºæ ããŠããããšã確èªããå¿
èŠããããŸãã
- EV蚌ææžã§æå®ããããã¡ã€ã³ã䜿çšããæä»çæš©å©ãçµç¹ã«ããããšã確èªããå¿
èŠããããŸãã
- çµç¹ãEV蚌ææžã®çºè¡ãå®å
šã«èš±å¯ãããŠããããšã確èªããå¿
èŠããããŸãã
å
·äœçã«æ€èšŒããããã®ã®ãªã¹ãã¯ãçµç¹ã®æ€èšŒã䌎ã蚌ææžã®ãªã¹ããšåãã§ãã
EV蚌ææžã¯ãæ¿åºãéå¶å©çµç¹ãå«ãããããçš®é¡ã®äŒæ¥ã«äœ¿çšãããŸãã ãªãªãŒã¹ã«ã¯10ã14æ¥ããããŸãã
ã«ãŒã«ã®2çªç®ã®éšåã¯èªèšŒå±ã«é¢é£ããŠãããEV蚌ææžãçºè¡ããèš±å¯ãååŸããåã«èªèšŒå±ãæºãããªããã°ãªããªãåºæºã説æããŠããŸãã EVç£æ»ã«ãŒã«ãšåŒã°ããæ¯å¹Žãããã®ã«ãŒã«ãžã®æºæ ã®ãã§ãã¯ãè¡ãããŸãã
ããããã£ã«ããSSL蚌ææžã®çš®é¡ã
éåžžã®SSL蚌ææž
ããã§ã¯ãã¹ãŠãæ確ã§ãããããã¯èªåçã«çºè¡ããããã¡ã€ã³ã®ã¿ã確èªãã蚌ææžã§ãã ãã¹ãŠã®ãµã€ãã«é©ããŠããŸãã
äŸ¡æ ŒïŒå¹Žé20ãã«ãã
SGC蚌ææž
æ¡åŒµæå·åããµããŒããã蚌ææžã 40ãŸãã¯56ãããæå·åã®ã¿ããµããŒãããéåžžã«å€ããã©ãŠã¶ã§å®éã«äœ¿çšãããŸãã ãã®èšŒææžã䜿çšããå Žåãæå·åã¬ãã«ã¯128ãããã«åŒ·å¶ãããŸãã
åžžã«ããã®ãããªèšŒææžãè€æ°è³Œå
¥ããããšã¯ãããŸããã ç§ã®æèŠã§ã¯ãéåžžã«å€ãéãä¿åãããŠãã倧äŒæ¥ã§ã®å
éšäœ¿çšãé€ããŠããããã¯ãã¯ãå¿
èŠã§ã¯ãªããšããããšã§ãã
äŸ¡æ ŒïŒå¹Žé300ãã«ããã
ã¯ã€ã«ãã«ãŒã蚌ææž
ãããã¯ãã¡ã€ã³ãã¡ã€ã³ã«å ããŠãåããã¡ã€ã³ã®ãã¹ãŠã®ãµããã¡ã€ã³ã§ãæå·åãæäŸããå¿
èŠãããå Žåã«å¿
èŠã§ãã äŸïŒdomain.comãã¡ã€ã³ããããsupport.domain.comãforum.domain.comãããã³billing.domain.comã«åã蚌ææžãã€ã³ã¹ããŒã«ããå¿
èŠããããŸã
ãã³ãïŒèšŒææžãå¿
èŠãªãµããã¡ã€ã³ã®æ°ãæ°ããŸããéåžžãããã€ãã®éåžžã®èšŒææžãåå¥ã«è³Œå
¥ããæ¹ãæå©ãªå ŽåããããŸãã
äŸ¡æ ŒïŒå¹Žé180ãã«ããã ã芧ã®ãšããããµããã¡ã€ã³ã9ã€æªæºã®å Žåã¯ãéåžžã®èšŒææžã賌å
¥ããæ¹ãå®ããªããŸãããã¯ã€ã«ãã«ãŒãã1ã€äœ¿çšãããšäŸ¿å©ã§ãã
SAN蚌ææž
åããµãŒããŒã§ãã¹ããããŠããè€æ°ã®ç°ãªããã¡ã€ã³ã«1ã€ã®èšŒææžã䜿çšããå Žåã«äŸ¿å©ã§ãã éåžžããã®ãããªèšŒææžã«ã¯5ã€ã®ãã¡ã€ã³ãå«ãŸãããã®æ°ã¯5åäœã§å¢ããããšãã§ããŸãã
äŸ¡æ ŒïŒå¹Žé395ãã«ãã
EV蚌ææž
ãããã¯ãäžèšã§èª¬æããæ¡åŒµæ€èšŒãšãã©ãŠã¶ãŒã®ç·è²ã®ç·ãåããåã蚌ææžã§ãã æ³äººãåæ¥ãéå¶å©å£äœããŸãã¯å·ã®çµç¹ã®ã¿ãããããåãåãããšãã§ããŸãã
äŸ¡æ ŒïŒå¹Žé250ãã«ããã
IDNãµããŒã蚌ææž
ååãšããŠããã¹ãŠã®èªèšŒå±ã蚌ææžã®èª¬æã§ãã®ãªãã·ã§ã³ãæå®ããŠããããã§ã¯ãããŸãããããã¹ãŠã®èšŒææžãIDNãã¡ã€ã³ããµããŒãããŠããããã§ã¯ãããŸããã ãããã£ãŠããã®ãµããŒãããã蚌ææžãããã«ãªã¹ãããŸãã
- Thawte SSL123蚌ææž
- Thawte SSL WebãµãŒããŒ
- ã·ãã³ããã¯ã»ãã¥ã¢ãµã€ã
- Thawte SGC SuperCerts
- Thawte SSL WebãµãŒããŒã¯ã€ã«ãã«ãŒã
- EVã䜿çšããThawte SSL WebãµãŒããŒ
- Symantec Secure Site Pro
- EVã䜿çšããSymantec Secure Site
- EVã䜿çšããSymantec Secure Site Pro
æãå®ã蚌ææžãéžæããæ¹æ³ã¯ïŒ
Geotrustã¯æãå®äŸ¡ãªSAN蚌ææžãæã£ãŠããŸãã ãµã€ãã®ã¿ã®æ€èšŒä»ãã®èšŒææžãšã¯ã€ã«ãã«ãŒãã¯ãRapidSSLã§æãå©çããããŸãã EV蚌ææžã¯Geotrustãããæãå®äŸ¡ã§ãã ThawteãšVerisignã®ã¿ãSGC蚌ææžãæã£ãŠããŸãããThawteã¯å®äŸ¡ã§ãã
蚌ææžã®éãã¯äœã§ãã
- ãªãªãŒã¹ã®é床ã ãã¡ã€ã³ã®ã¿ã®æ€èšŒã§æãé«éã«çºè¡ããã蚌ææžã§ãEVæ€èšŒã§æãé·ãã7å¶æ¥æ¥ããã
- 蚌ææžã®åçºè¡ã®åæ°ã¯ãã»ãšãã©ã®èªèšŒå±ã§ç¡å¶éã§ãã çµç¹ããŒã¿ãééããå Žåã«å¿
èŠã§ãã
- ä¿èšŒ-äžéšã®èšŒææžã«ã€ããŠã¯ã10,000ãã«ã®ä¿èšŒããããŸãã ãã®ä¿èšŒã¯ããããã蚌ææžã®è³Œå
¥è
ã§ã¯ãªãã蚌ææžãã€ã³ã¹ããŒã«ãããŠãããµã€ãã®èšªåè
ã«å¯Ÿãããã®ã§ãã ãã®ãããªèšŒææžãæã€ãµã€ã蚪åè
ãè©æ¬ºã«èŠããã§ãéã倱ã£ãå ŽåãèªèšŒã»ã³ã¿ãŒã¯ä¿èšŒã§æå®ãããéé¡ãŸã§è£åãã矩åããããŸãã ã€ãŸãã蚌ææ©é¢ã¯ãçŸç¶ã®ãŸãŸã§ããã®èšŒææžã«ä¿èšŒãäžãããå·Šããã¡ã€ã³ã«ã€ã³ã¹ããŒã«ã§ããªãããšãä¿èšŒããŸãã å®éã«ã¯ããã®ãããªã±ãŒã¹ã¯ç§ã«ã¯ç¥ãããŠããªãããããã®ãã©ã¡ãŒã¿ãŒã¯ç¡èŠã§ããŸãã
- ç¡æè©Šçšæé-ã·ãã³ããã¯ã»ãã¥ã¢ãµã€ããgeotrust rapidsslãcomodo positive sslãthawte ssl WebãµãŒããŒã¯èšŒææžãæ¯æããŸããã ãã¹ãçšã«ç¡æã®èšŒææžã䜿çšããããšãã§ããŸããStartSSLâ¢Free
- æãæ»ã-ã»ãšãã©ãã¹ãŠã®èšŒææžã«ã¯30æ¥ããããŸãããè¿éæéã®ãªã蚌ææžããããŸã
䟿å©ãªãŠãŒãã£ãªãã£ïŒ
- OpenSSLã¯ãå
¬ééµïŒèšŒææžèŠæ±ïŒãšç§å¯éµãçæããããã®æãäžè¬çãªãŠãŒãã£ãªãã£ã§ãã
http://www.openssl.org/ - CSR Decoder-CSRããã³CSRã«å«ãŸããããŒã¿ããã§ãã¯ããããã®ãŠãŒãã£ãªãã£ã蚌ææžã泚æããåã«äœ¿çšããããšããå§ãããŸãã
CSRãã³ãŒããŒ1ãŸãã¯CSRãã³ãŒããŒ2
- DigiCert Certificate Tester-蚌ææžèªäœããã§ãã¯ãããŠãŒãã£ãªãã£
http://www.digicert.com/help/?rid=011592
http://www.sslshopper.com/ssl-checker.html
次ã®ããŒãã§ã¯ãä»ã®çš®é¡ã®èšŒææžã«ã€ããŠèª¬æããŸãã
PSã³ã¡ã³ãã§SSL蚌ææžã®éžæã«é¢é£ãã質åã«åçãããŠããã ããŸãã
PPS SSL蚌ææžã®30ïŒ
å²åŒãåžæããæ¹ã¯ãPMã«ãèšå
¥ãã ããã
æŽæ°ïŒ
éèŠãªãã€ã³ã -äžéšã®èšŒææžã¯wwwã®ãããã¡ã€ã³ãšwwwã®ãªããã¡ã€ã³ã§æ©èœããŸããã€ãŸãã
www.domain.comãšdomain.comãä¿è·ããã«ã¯1ã€ã®èšŒææžã§ååã§ããã
www.domain.comã§æ³šæããå¿
èŠããããŸãã
蚌ææžã®å®éïŒ
â¢RapidSSL
â¢QuickSSLãã¬ãã¢ã
â¢çã®BusinessID
â¢EVã䜿çšããçã®BusinessID