SSL/TLS (Secure Sockets Layer/Transport Layer Security) ã¯ãæå·åããŒã¹ã®ã»ãã¥ãªãã£ãæäŸããåºãæ¡çšãããŠãããã¯ãããžã§ãã€ã³ã¿ãŒããããªã©ã®ãããã¯ãŒã¯äžã§ã®éä¿¡äžã®ããŒã¿ã®æ©å¯æ§ãšæŽåæ§ã確ä¿ããŸããã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã®èгç¹ãããSSL/TLS ã¯ã¯ã©ã€ã¢ã³ããšãµãŒããŒéã§äº€æãããæ©å¯æ å ±ã®ä¿è·ããŠãŒã¶ãŒã®ãã©ã€ãã·ãŒã®ä¿è·ã顧客ãšã®ããžãã¹äžã®ä¿¡é Œã®ç¶æã«ãããŠéèŠãªåœ¹å²ãæãããŸãã
ã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã®èгç¹ãã SSL/TLS ã®éèŠæ§ãããã«æãäžããåã«ãããã 2 ã€ã®çšèªãåºå¥ããããšãéèŠã§ãã SSL ãš TLS ã¯åãæå³ã§äœ¿çšãããŸãããç°ãªããããã³ã«ã§ãã SSL 㯠TLS ã®å身ã§ãããåŸè 㯠SSL ã®æ¢ç¥ã®è匱æ§ã«å¯ŸåŠããããã«ç»å ŽããŸãããçŸåšãSSL/TLS ãšããçšèªã¯ããããã®æå·åãã¯ãããžãç·ç§°ããŠæãã®ã«äžè¬çã«äœ¿çšãããŠããŸãã
SSL/TLS ã¯ãããŒã¿ã®æå·åãšèªèšŒãæäŸãããšãã 2 ã€ã®ç®çãæãããWeb ã¢ããªã±ãŒã·ã§ã³ãšãµãŒãã¹ã®ã»ãã¥ãªãã£äœå¶ãå€§å¹ ã«åŒ·åããŸããããŒã¿æå·åã«ãããããããã®åœäºè ã«ãã£ãŠéä¿¡ãããæ å ±ã¯ãååãããå¯èœæ§ã®ããæš©éã®ãªãåœäºè ã«ã¯çè§£ã§ããªããªããŸãã SSL/TLS ã¯ã察称æå·åæ©èœãšé察称æå·åæ©èœãçµã¿åãããŠãã®ä¿è·ãå®çŸããŸããæå·åã«å ããŠãSSL/TLS ã¯ããžã¿ã«èšŒææžã«ãããµãŒããŒèªèšŒãæäŸããŸããããžã¿ã«èšŒææžã¯ã¯ã©ã€ã¢ã³ããæ¥ç¶ãããµãŒããŒã®æ£åœæ§ãæ€èšŒãããããããã«ãŒãæ¬ç©ã®ãµãŒããŒã«ãªãããŸããŠæ©å¯æ å ±ãçãããšãé²ããŸãã
AppMasterã®no-codeãã©ãããã©ãŒã ã®ã³ã³ããã¹ãã§ã¯ãSSL/TLS ã¯ã¢ããªã±ãŒã·ã§ã³ãã¢ã㪠ãŠãŒã¶ãŒãããã¯ãšã³ã ã·ã¹ãã éã®ããŒã¿äº€æãä¿è·ããããã«äžå¯æ¬ ã§ãããã©ãããã©ãŒã ã¯ãœãŒã¹ ã³ãŒããçæããã³ã³ãã€ã«ããã¢ããªã±ãŒã·ã§ã³ãããŸããŸãªã·ã¹ãã ã«ãããã€ãããããããããããžãã¹ãçµç¹ã«ãšã£ãŠããŒã¿ ã»ãã¥ãªãã£ãæåªå äºé ã§ãããããSSL/TLS ãé©åã«å®è£ ããããšãæãéèŠã§ãã AppMasterã®ã¢ããªã±ãŒã·ã§ã³ã¯ãSSL/TLS çµç±ã§å®å šã«éä¿¡ãã䟵害ãããŒã¿çé£ã®å¯èœæ§ãå¿é ããããšãªããã¢ã«ãŠã³ãè³æ Œæ å ±ãå人è奿 å ± (PII) ãªã©ã®æ©å¯æ å ±ãå ±æã§ããŸãã
SSL/TLS å®è£ ã«é¢ããéå€§ãªæžå¿µäºé ã® 1 ã€ã¯ãé¢é£ããããžã¿ã«èšŒææžã®ç®¡çã§ãããããã®èšŒææžã¯ããµãŒããŒã®ä¿¡é Œæ§ãæ€èšŒãã DigiCert ã Let's Encrypt ãªã©ã®ä¿¡é Œã§ããèªèšŒå± (CA) ã«ãã£ãŠçºè¡ãããå¿ èŠããããŸãã广çãªèšŒææžç®¡çã«ã¯ã宿çãªæŽæ°ã倱å¹ãã»ãã¥ãªã㣠ã€ã³ã·ãã³ãã®å Žåã®äº€æãå«ãŸããŸãããããã¯ãã¹ãŠãã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã®èгç¹ãã SSL/TLS ã®éèŠãªåŽé¢ã§ãã
SSL/TLS ã¯ãçµç¹ãæ¥çå šäœã®ããŸããŸãªã»ãã¥ãªãã£ããã³ã³ã³ãã©ã€ã¢ã³ã¹æšæºãæºããã®ã«åœ¹ç«ã¡ãŸããããšãã°ãéèåéã§ã¯ãPayment Card Industry Data Security Standard (PCI DSS) ã«ããããããã¯ãŒã¯äžã§éä¿¡ãããã¯ã¬ãžãã ã«ãŒãçªå·ãªã©ã®ããŒã¿ãæå·åããããšãäŒæ¥ã«çŸ©åä»ããããŠããŸããåæ§ã«ãå»çä¿éºã®çžäºéçšæ§ãšè²¬ä»»ã«é¢ããæ³åŸ (HIPAA) ã§ã¯ãä¿è·ãããå»çæ å ± (PHI) ã®æå·åã矩åä»ããããŠããŸãã
ããŒã¿ ãã©ã€ãã·ãŒãšãµã€ããŒã»ãã¥ãªãã£ã®éèŠæ§ã®é«ãŸããèæ ®ãããšãSSL/TLS ã¯äžçäžã®äŒæ¥ãçµç¹ã«ãšã£ãŠäžå¯æ¬ ãªãã®ãšãªã£ãŠããŸããæè¿ã®ããŒã¿ã«ãããšãã€ã³ã¿ãŒãããäžã®ãã¹ãŠã® Web ãµã€ãã®åæ°ä»¥äžã SSL èšŒææžã«ãã£ãŠä¿è·ãããŠããŸãããã®å°å ¥çã®å¢å ã¯ãã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ç°å¢ã«ããã SSL/TLS ã®éèŠæ§ã«å¯Ÿããæèã®é«ãŸããåæ ããŠããŸãã
çµè«ãšããŠãã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã«ããã SSL/TLS ã®åœ¹å²ã¯ãæå·åãšãµãŒããŒèªèšŒã® 2 ã€ã®æ©èœãäžå¿ã«å±éãããŸãããã®ãã¯ãããžãŒã®é©åãªå°å ¥ãšç®¡çã¯ãå»çããéèãªã©ãããŸããŸãªåéã®äŒæ¥ãçµç¹ã«ãšã£ãŠäžå¯æ¬ ã§ãã AppMasterã®no-codeãã©ãããã©ãŒã ã§ SSL/TLS å®è£ ãçµã¿èŸŒãã ããã¯ãšã³ããWebãããã³ã¢ãã€ã« ã¢ããªã±ãŒã·ã§ã³ãçæã§ããããã«ããããšã§ãé¡§å®¢ã¯æ¥çåºæã®ã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã®èŠä»¶ãæºãããå®å šã§å ç¢ãã€ã¹ã±ãŒã©ãã«ãªã¢ããªã±ãŒã·ã§ã³ã®æ©æµãåããããšãã§ããŸãã