ãŠãŒã¶ãŒèªèšŒã®ã³ã³ããã¹ãã§ã¯ãã¢ã€ãã³ãã£ã㣠ãããã€ã㌠(IdP) ã¯ãããŸããŸãªãµãŒãã¹ãã¢ããªã±ãŒã·ã§ã³ããã©ãããã©ãŒã ãžã®å®å šãã€ã·ãŒã ã¬ã¹ãªã¢ã¯ã»ã¹ãå¯èœã«ããããã«ããŠãŒã¶ãŒ ID ãäœæã管çãæ€èšŒãããµãŒãã¹ãŸãã¯ã·ã¹ãã ãæããŸãã IdP ã®äž»ãªç®çã¯ããŠãŒã¶ãŒã® ID ã確å®ã«ç¢ºç«ãããŠãŒã¶ãŒãæ¬äººã§ããããšã確èªããããšã§ãŠãŒã¶ãŒãèªèšŒããããšã§ãã
IdP ã¯ãè€æ°ã®ãµãŒãã¹ããã³ã¢ããªã±ãŒã·ã§ã³ã«ãããèªèšŒããã³èªå¯ããã»ã¹ã管çããããã®çµ±åã·ã¹ãã ã§ããéäž ID 管çã«ãããŠéèŠãªåœ¹å²ãæãããŸããããã«ããããŠãŒã¶ãŒã¯ãè€æ°ã®ã¢ã«ãŠã³ããç¶æããããè€æ°ã®ãã°ã€ã³æ å ±ãèšæ¶ãããããããšãªããåäžã»ããã®è³æ Œæ å ± (ãŠãŒã¶ãŒåãšãã¹ã¯ãŒããªã©) ã䜿çšããŠããŸããŸãªãµãŒãã¹ã«ã¢ã¯ã»ã¹ã§ããããã«ãªããŸããããã«ãIdP ã¯å®å šãã€å¹ççãªã¢ã¯ã»ã¹ç®¡çãä¿é²ãããŠãŒã¶ãŒã®ããããžã§ãã³ã°ãšããããžã§ãã³ã°è§£é€ã®ç°¡çŽ åããŠãŒã¶ãŒèªèšŒãšããŒã¿ ãã©ã€ãã·ãŒã«é¢é£ããèŠå¶éµå®èŠä»¶ã®åçåãªã©ã®è¿œå ã®å©ç¹ãæäŸããŸãã
ID ãããã€ããŒã¯ãLDAP (Lightweight Directory Access Protocol)ãSSO (ã·ã³ã°ã« ãµã€ã³ãªã³)ãOIDC (OpenID Connect)ãSAML (Security Assertion Markup Language)ãOAuth (Open Authorization) ãªã©ã®ããŸããŸãª ID èªèšŒããã³ãŠãŒã¶ãŒç®¡çãããã³ã«ãå®è£ ããŸãããã£ãšããããã®ãããã³ã«ã¯ãIdP ããµãŒãã¹ãã¢ããªã±ãŒã·ã§ã³ãšéä¿¡ããæ¹æ³ã決å®ããID é¢é£ã®æ å ±ã管çããå¹ åºãã·ã¹ãã ãšã®ã·ãŒã ã¬ã¹ãªçµ±åãå¯èœã«ããŸãã
AppMasterãã©ãããã©ãŒã ã§ã¯ããŠãŒã¶ãŒã¯ IdP ãæŽ»çšããŠããŠãŒã¶ãŒ ãšã¯ã¹ããªãšã³ã¹ãæãªãããšãªããããã¯ãšã³ããWebãã¢ãã€ã« ã¢ããªã±ãŒã·ã§ã³ã®å®å šãªèªèšŒãšã¢ã¯ã»ã¹å¶åŸ¡ã確ä¿ã§ããŸããããã¯ãéçºè ãã¢ããªã±ãŒã·ã§ã³ ã»ãã¥ãªãã£ã®éèŠãªåŽé¢ã«å¯ŸåŠããã®ã«åœ¹ç«ã€ã ãã§ãªãããŠãŒã¶ãŒ ã¢ã¯ã»ã¹ãåçåãããã©ãããã©ãŒã ã§äœæãããã¢ããªã±ãŒã·ã§ã³å šäœã«ããã£ãŠã¢ã«ãŠã³ã管çãç°¡çŽ åããŸããããã«ã AppMasterç°å¢å ã§ IdP ã䜿çšãããšãã¢ããªã±ãŒã·ã§ã³éçºãè¿ éåãããã³ã¹ããåæžãããæœåšçãªã»ãã¥ãªãã£è匱æ§ã«å¯Ÿããå埩åãåäžããŸãã
èªèšŒããã»ã¹å šäœã«ããã IdP ã®åœ¹å²ã«ã¯ããŠãŒã¶ãŒè³æ Œæ å ±ã®åéãä¿åãããããŒã¿ãšã®ç §åãèªèšŒãèŠæ±ãããµãŒãã¹ãŸãã¯ã¢ããªã±ãŒã·ã§ã³ãžã®èªèšŒããŒã¯ã³ã®æäŸãå«ãŸããŸããèªèšŒã¿ã¹ã¯ã IdP ã«ã¢ãŠããœãŒã·ã³ã°ããããšã§ããµãŒãã¹ãŸãã¯ã¢ããªã±ãŒã·ã§ã³ã¯ãŠãŒã¶ãŒç®¡çã®è²¬ä»»ãå§ä»»ããã³ã¢æ©èœã«éäžã§ããããã«ãªããŸãããã§ãã¬ãŒã·ã§ã³ ID 管çãšããŠç¥ããããã®ã¢ãŒããã¯ãã£ã«ãããããŸããŸãªã·ã¹ãã éã®çžäºéçšæ§ã容æã«ãªããæ©å¯æ§ã®é«ããŠãŒã¶ãŒ ããŒã¿ã®åŠçã«äŒŽããªã¹ã¯ã軜æžãããŸãã
å€§èŠæš¡ãªèª¿æ»ã«ãããIdP ã®çµ±åã«ããããã£ãã·ã³ã°æ»æããã¹ã¯ãŒãã®åå©çšãããã³äžæ£ã¢ã¯ã»ã¹ã®è©Šã¿ã«é¢é£ãããªã¹ã¯ãå€§å¹ ã«è»œæžãããããšã瀺ãããŠããŸãã IdP ã®æåã®éèŠãªèŠçŽ ã¯ãå€èŠçŽ èªèšŒ (MFA) ã®äœ¿çšã§ããMFA ã¯ããŠãŒã¶ãŒã« 2 ã€ä»¥äžã®å¥åã®èšŒæ (ãŠãŒã¶ãŒãç¥ã£ãŠããããšãææããŠããããšããŸãã¯ãŠãŒã¶ãŒãç¥ã£ãŠããããšãææããŠããããšãç¶æ¿) ããŠããã¢ã¯ã»ã¹ãèš±å¯ããŠãã ããã
æå㪠ID ãããã€ããŒã«ã¯ãMicrosoft Azure Active Directory (Azure AD)ãGoogle Identity PlatformãAmazon AWS CognitoãOktaãAuth0 ãªã©ããããŸãããããã®å IdP ã¯ãããŸããŸãªãŠãŒã¹ã±ãŒã¹ãããžãã¹èŠä»¶ã«å¯Ÿå¿ãããããŸããŸãªç¬èªã®æ©èœãæäŸããŸãã
ããšãã°ãAzure AD ã¯ãOffice 365 ã Azure ã¯ã©ãŠã ãµãŒãã¹ãªã©ã® Microsoft ã®ãµãŒãã¹ ãšã³ã·ã¹ãã åãã«èšèšãããã¯ã©ãŠãããŒã¹ã® ID ãããã€ããŒã§ãããšã³ã¿ãŒãã©ã€ãº ã°ã¬ãŒãã®ã»ãã¥ãªãã£ãå€èŠçŽ èªèšŒæ©èœãä»ã® Microsoft ãµãŒãã¹ãšã®ã·ãŒã ã¬ã¹ãªçµ±åãªã©ã®æ©èœãæäŸããŸããäžæ¹ãGoogle Identity Platform ã¯ããŠãŒã¶ãŒèªèšŒãèªå¯ãããŸããŸãª ID é¢é£ãµãŒãã¹ã 1 ã€ã®çµ±åããããµãŒãã¹ã«çµ±åãããå æ¬ç㪠Identity-as-a-Service (IDaaS) ãœãªã¥ãŒã·ã§ã³ãæäŸããããšã«éç¹ã眮ããŠããŸãã
çµè«ãšããŠãã¢ã€ãã³ãã£ã㣠ãããã€ããŒã¯ãå®å šã§åçåããããŠãŒã¶ãŒèªèšŒãšã¢ã€ãã³ãã£ãã£ç®¡çãæäŸããããšã§ãææ°ã®ã¢ããªã±ãŒã·ã§ã³éçºã«ãããŠæ¥µããŠéèŠãªåœ¹å²ãæãããŸããæ¥çæšæºã®ãããã³ã«ãšãã¹ã ãã©ã¯ãã£ã¹ãçµã¿èŸŒãããšã§ããŠãŒã¶ãŒ ãšã¯ã¹ããªãšã³ã¹ãåäžãããã¢ã¯ã»ã¹å¶åŸ¡ãç°¡çŽ åããã¢ããªã±ãŒã·ã§ã³ã®ã»ãã¥ãªãã£ã匷åããŸãã AppMasterãã©ãããã©ãŒã ãš IdP ã®çµ±åã«ãããWebãã¢ãã€ã«ãããã³ããã¯ãšã³ã ã¢ããªã±ãŒã·ã§ã³ã®éçºããã»ã¹ãè¿ éåãããã ãã§ãªãããŠãŒã¶ãŒ ID ãšã¢ã¯ã»ã¹èš±å¯ã®ç®¡çã«åºæã®ã»ãã¥ãªãã£ãšãã©ã€ãã·ãŒã®åé¡ã«å¯ŸåŠããªãããæè¡çè² åµãæé€ãããŸãã