ããŒã«ããŒã¹ã®ã¢ã¯ã»ã¹å¶åŸ¡ (RBAC) ã¯ãææ°ã®ãœãããŠã§ã¢ ã·ã¹ãã ã«ããããŠãŒã¶ãŒèªèšŒãšèªå¯ã®éèŠãªåŽé¢ã§ããããªãœãŒã¹ãžã®ã¢ã¯ã»ã¹èš±å¯ãšã¢ã¯ã»ã¹ããã现ããäžå çã«å¶åŸ¡ã§ããŸãã RBAC ã¯ãå®çŸ©ããã圹å²ãšè²¬ä»»ã«åºã¥ããŠãŠãŒã¶ãŒæš©éã管çããã³å®çŸ©ããããã®çµç¹çãã€ç³»çµ±çãªæ¹æ³ãæäŸããããšã«ãããã¢ããªã±ãŒã·ã§ã³ã®ã»ãã¥ãªãã£ã匷åããããã®éèŠãªã³ã³ããŒãã³ããšããŠæ©èœããŸãã
RBAC ã¢ãããŒãã®å€§ããªå©ç¹ã® 1 ã€ã¯ãã¢ã¯ã»ã¹æš©éãåã ã®ãŠãŒã¶ãŒããåãé¢ãã管çãªãŒããŒããããåæžããã»ãã¥ãªãã£ãåäžãããããšã§ããæš©éããŠãŒã¶ãŒã«çŽæ¥å²ãåœãŠãã®ã§ã¯ãªããæš©éãããŒã«ã«é¢é£ä»ããŠããŠãŒã¶ãŒããããã®ããŒã«ã«å²ãåœãŠãŸãã RBAC ã®éèŠãªåŽé¢ã¯ãã¿ã¹ã¯ã广çã«å®è¡ããããã«å¿ èŠãªæå°éã®æš©éã»ããããŠãŒã¶ãŒã«ä»äžããå¿ èŠããããšããæå°ç¹æš©ã®ååã«æºæ ããŠããããšã§ãã
NIST (åœç«æšæºæè¡ç ç©¶æ) ã宿œãã調æ»ã«ãããšãçŸåšãçµç¹ã® 80% è¿ããäœããã®åœ¢åŒã® RBAC ãå©çšããŠã¢ã¯ã»ã¹å¶åŸ¡ã管çããŠããããœãããŠã§ã¢éçºã«ããããã®ã¢ãããŒãã®éèŠæ§ãšåºç¯ãªæ¡çšãå®èšŒãããŠããŸãã RBAC ã¢ãã«ã¯ã圹å²ç®¡çãã¢ã¯ã»ã¹å¶åŸ¡ã«ãŒã«ãã³ã³ããã¹ãããŒã¹ã®å²ãåœãŠãšãã 3 ã€ã®äž»èŠãªã³ã³ããŒãã³ãã«åå²ã§ããŸãã
ããŒã«ç®¡çã«ã¯ã ããŒã«ã®äœæã倿Žãåé€ãããã³ãããã®ããŒã«ãžã®ãŠãŒã¶ãŒãšæš©éã®å²ãåœãŠãå«ãŸããŸããéåžžãããŒã«ã¯çµç¹å ã®ãŠãŒã¶ãŒã®è·å責任ãšéçšæ©èœã«åºã¥ããŠå®çŸ©ãããã¢ã¯ã»ã¹æš©ã管çããããã®æç¢ºãã€æ§é åãããæ¹æ³ãæäŸããŸãã圹å²ã®äŸã«ã¯ã管çè ããããŒãžã£ãŒãåŸæ¥å¡ã顧客ãªã©ããããŸãã
ã¢ã¯ã»ã¹å¶åŸ¡ã«ãŒã«ã䜿çšãããšã ã·ã¹ãã 管çè ã¯ãç¹å®ã®ãªãœãŒã¹ã«é¢ããŠåœ¹å²ãå®è¡ã§ãã蚱容ã¢ã¯ã·ã§ã³ãå®çŸ©ã§ããŸããããšãã°ããããŒãžã£ãŒã¯é¡§å®¢ããŒã¿ãžã®èªã¿åãããã³æžã蟌ã¿ã¢ã¯ã»ã¹æš©ãæã£ãŠããŸãããåŸæ¥å¡ã¯èªã¿åãã¢ã¯ã»ã¹æš©ããæã£ãŠããªãå¯èœæ§ããããŸããã¢ã¯ã»ã¹å¶åŸ¡ã«ãŒã«ã¯ãéç (äŸ: ç¹å®ã®ããŒã¿ãŸãã¯æ©èœãžã®ã¢ã¯ã»ã¹ãæç€ºçã«èš±å¯) ãŸãã¯åç (äŸ: æéãå ŽæããŸãã¯ãªãœãŒã¹å±æ§ãªã©ã®ã³ã³ããã¹ãèŠå ã«åºã¥ããŠã¢ã¯ã»ã¹ãèš±å¯) ã«ããããšãã§ããŸãã
ã³ã³ããã¹ãããŒã¹ã®å²ãåœãŠã«ãããçµç¹éå±€å ã®ãŠãŒã¶ãŒã®äœçœ®ãã¢ã¯ã»ã¹ãããããŒã¿ã®æ©å¯æ§ãªã©ã®ã³ã³ããã¹ãæ å ±ã«åºã¥ããŠã¢ã¯ã»ã¹å¶åŸ¡ã«ãŒã«ãé©çšã§ããŸããããšãã°ããŠãŒã¶ãŒãäŒæ¥ã®å éšãããã¯ãŒã¯ã«æ¥ç¶ããŠããå Žåã«ã®ã¿ãç¹å®ã®ãªãœãŒã¹ã«ã¢ã¯ã»ã¹ããèš±å¯ããŠãŒã¶ãŒã«äžããããšãã§ããŸãã
AppMasterno-codeãã©ãããã©ãŒã ã®ã³ã³ããã¹ãã§ã¯ãRBAC ã®å®è£ ã¯ç°¡åã§ãéçºè ã¯ããŒã«ãã¢ã¯ã»ã¹å¶åŸ¡ã«ãŒã«ãã³ã³ããã¹ãããŒã¹ã®å²ãåœãŠãèŠèŠçãã€å¹æçã«äœæããã³ç®¡çã§ããŸãããã®ãã©ãããã©ãŒã ã¯ãRBAC ãã¢ããªã±ãŒã·ã§ã³éçºããã»ã¹ã«ã·ãŒã ã¬ã¹ã«çµ±åããçµç¹ãã»ãã¥ãªã㣠ããªã·ãŒãé©çšããWebãã¢ãã€ã«ãããã³ããã¯ãšã³ã ã¢ããªã±ãŒã·ã§ã³ãžã®ã¢ã¯ã»ã¹ãäžè²«ããŠå¶åŸ¡ã§ããããã«ããŸãã
AppMasterã®ããžã¥ã¢ã«ãªããžãã¹ ããã»ã¹ (BP) ãã¶ã€ããŒã«ããããŠãŒã¶ãŒ ããŒã«ã®äœæãšç®¡çãç°¡åã«ãªããéçºè ãããŒã«ãå®çŸ©ããç¹å®ã®ã¢ã¯ã»ã¹èš±å¯ãã¢ã¯ã·ã§ã³ã«é¢é£ä»ããããšãã§ããŸããããã«ã AppMasterã§çæãããã¢ããªã±ãŒã·ã§ã³ã¯ãèªèšŒãšèªå¯ã«é¢ããæ¥çã®ãã¹ã ãã©ã¯ãã£ã¹ã«æºæ ããŠãããå®å šãªããŒã¯ã³ã®ç®¡çãšéä¿¡ã®ããã« OAuth 2.0 ã JSON Web Tokens (JWT) ãªã©ã®åºãåãå ¥ããããŠããæšæºã«äŸåããŠããŸãã
AppMasterno-codeãã©ãããã©ãŒã ã¯ãããŒã«ããŒã¹ã®ã¢ã¯ã»ã¹å¶åŸ¡æ©èœãæäŸããããšã§ãçµç¹ãå ç¢ãã€å®å šãªã¢ããªã±ãŒã·ã§ã³ãéçºããã³å±éã§ããããã«ããŸãããã®ã¢ãããŒãã«ãããã¢ããªã±ãŒã·ã§ã³ç®¡çè ã¯ãŠãŒã¶ãŒã®ã¢ã¯ã»ã¹æš©ã广çã«ç®¡çããæ©å¯ããŒã¿ãžã®äžæ£ã¢ã¯ã»ã¹ã鲿¢ããäŒæ¥ããã³æ¥çã®èŠå¶ã確å®ã«éµå®ã§ããããã«ãªããŸãã
çµè«ãšããŠãããŒã«ããŒã¹ã®ã¢ã¯ã»ã¹å¶åŸ¡ã¯ãææ°ã®ã¢ããªã±ãŒã·ã§ã³éçºã«ããããŠãŒã¶ãŒèªèšŒãšèªå¯ã®éèŠãªã³ã³ããŒãã³ãã§ãã RBAC ã¢ãã«ãæ¡çšããããšã§ãçµç¹ã¯ã¢ã¯ã»ã¹æš©ãå¹ççã«ç®¡çããã»ãã¥ãªãã£ãåäžããã管çããã»ã¹ãåçåã§ããŸãã AppMasterã®no-codeãã©ãããã©ãŒã ã¯ãRBAC ã®å®è£ ãšç®¡çã«å¿ èŠãªããŒã«ãéçºè ã«æäŸããããããèŠæš¡ã®äŒæ¥åãã«å®å šã§ã¹ã±ãŒã©ãã«ã§ã³ã¹ãå¹çã®é«ããœãããŠã§ã¢ ãœãªã¥ãŒã·ã§ã³ã®äœæãå¯èœã«ããŸãã