ç°å¢ãåããªãæå 端㮠Web ã¢ããª/API ã®ã»ãã¥ãªãã£ã½ãªã¥ã¼ã·ã§ã³
Fastly Next-Gen WAF
Fastly Next-Gen WAF ã¯ãããããå ´æã§ã¢ããªã±ã¼ã·ã§ã³ã APIããã¤ã¯ããµã¼ãã¹ãä¿è·ããæå 端ã®çµ±ååã»ãã¥ãªãã£ã½ãªã¥ã¼ã·ã§ã³ã§ãã
ããã¹ãã¼ãã§ç°¡åãªã»ãã¥ãªãã£ã½ãªã¥ã¼ã·ã§ã³
-
é«åº¦ãªè å¨ã«å¯¾ããä¿è·
OWASP Top 10 ã®ã¤ã³ã¸ã§ã¯ã·ã§ã³å Web æ»æã«å¯¾å¿ãã¦ããã ãã§ã¯ããã¾ããããªã¼ã«ã¤ã³ã¯ã³ã®ã½ãªã¥ã¼ã·ã§ã³ãéãã¦ãã¯ã¬ãã³ã·ã£ã«ã¹ã¿ããã£ã³ã°ã«ããã¢ã«ã¦ã³ãä¹ã£åã (ATO)ãæªæã®ããããããAPI ã®æªç¨ãªã©ãé«åº¦ãªè å¨ããã®ä¿è·ãå®ç¾ã§ãã¾ãã
-
è¿ éãªå¯¾å¿ãå¯è½ã«ããåªããå¯è¦æ§
ã¬ãã¼ãã¨ã¢ã©ã¼ãã®ãã£ã¼ãããã¯ã«ã¼ãã«ãããã¢ããªã±ã¼ã·ã§ã³ã¨ API ã®ãããããªã³ãå ¨ä½ã«ããã£ã¦ã¬ã¤ã¤ã¼7ã®å¯è¦æ§ãå®ç¾ã§ãã¾ããDevOps ããã³ã»ãã¥ãªãã£é¢é£ã®ãã¼ã«ãã§ã¼ã³ã¨ã®çµ±åã«ããããã¼ã¿ã®å ±æãç¸é¢é¢ä¿ãä¿é²ãããèªååããã»ã¹ãã·ã³ãã«ã«ãªããããã»ãã¥ãªãã£ãªã¹ã¯ã軽æ¸ãã¤ã¤ CI/CD ãå éã§ãã¾ãã
-
ããããå ´æãä¿è·
Fastly ã¯ãå¸å ´ã§æãæè»ã«å±éã§ãã WAF ãæä¾ãã¦ãã¾ããå¯è¦æ§ããã³å®ç¨çãªã¤ã³ãµã¤ãã¨ã¢ã©ã¼ããåãã¬ãã«ã§æä¾ããçµ±åã½ãªã¥ã¼ã·ã§ã³ã«ãããã客æ§ã®ã¢ããªã±ã¼ã·ã§ã³ã¨ API ãã©ãã«ãã£ã¦ãä¿è·ãããã¨ãã§ãã¾ãã
æ©è½
Fastly ãä»ç¤¾ã¨ä¸ç·ãç»ãã¦ããçç±
徿¥åã® WAF ã¯ãã¿ã¼ã³ãããã³ã°ææ³ã«ä¾åãã¦ããã®ã§ã管çãé£ãããæ£å½ãªãã©ãã£ãã¯ã®ãããã¯ã«ã¤ãªãã誤æ¤åºãé²ãã®ã«ç¶ç¶çãªãã¥ã¼ãã³ã°ãå¿ è¦ã«ãªãã¾ããFastly ã® Next-Gen WAF ã¯ããã¥ã¼ãã³ã°ä¸è¦ã§æªæã®ãããã©ãã£ãã¯ã广çã«æ¤åºããããã¯ãã¾ããããã«ããã客æ§ã® AppSec ãã¼ã ã¯ããã大ããªèª²é¡ã®åãçµã¿ã«èªåãã¡ã®æéãè²»ãããã®ã§ããæ¬ºçãªã©ã®é«åº¦ãªææ³ã使ç¨ãã¦ãã«ã¹ã¿ã éçºãªãã§æ»æè ã®æ»æã黿¢ãããã¨ãã§ãã¾ãã
-
ã³ã³ããã¹ãã®æ¤åº
Fastly ã® Next-Gen WAF 㯠SmartParse ãæ¡ç¨ãã¦ãã¾ããããã¯é«ç²¾åº¦ãèªã Fastly ã®æ¤åºã¡ã½ããã§ãããåãªã¯ã¨ã¹ãã®ã³ã³ããã¹ãããå®éã«ãªã¯ã¨ã¹ããå®è¡ãããå ´åã®çµæãè©ä¾¡ãããã¨ã§ããªã¯ã¨ã¹ãã«æªè³ªã¾ãã¯ç°å¸¸ãªãã¤ãã¼ãããããã©ããã夿ãã¾ããSmartParse ã¯ãã¥ã¼ãã³ã°ãã»ã¼ä¸è¦ã§ãè å¨ã®æ¤åºãå³åº§ã«è¡ããã¨ãã§ãã¾ãã
-
å å¶çãªã»ãã¥ãªãã£
NLX ã¯ãã客æ§ã®æ°ä¸ã«åã¶åæ£ãããã½ããã¦ã§ã¢ã¨ã¼ã¸ã§ã³ãããåéãããå¿ååããç¢ºèªæ¸ã¿ã®æªæã®ããã¢ã¯ãã£ããã£ã«åºã¥ããä¿¡é ¼æ§ã®é«ã IP ã¬ãã¥ãã¼ã·ã§ã³ã«é¢ãããã£ã¼ãã§ãã顧客ãããã¯ã¼ã¯å ¨ä½ã®æ»æãã¿ã¼ã³ãç¬èªã«èªèããWeb ã¢ããªã API ã«é¢ããã¢ã©ã¼ããæä¾ããäºåã«è å¨ããä¿è·ãã¾ãã
-
æè»ãªãããã¤
ãããã¤ã«ããã¦æå¤§éã®æè»æ§ãæä¾ãã Fastly ã®ãã¤ããªãã SaaS å WAF ã¯ãã¨ã¼ã¸ã§ã³ã/ã¢ã¸ã¥ã¼ã«ã½ããã¦ã§ã¢ã®ãã¢ãéãã¦ãã¾ãã¯ã½ããã¦ã§ã¢ã®ã¤ã³ã¹ãã¼ã«ãä¸è¦ãªã¯ã©ã¦ããã¼ã¹ã®ãªãã·ã§ã³ãã¨ãã¸çµç±ã§ç´ æ©ãã¤ã³ã¹ãã¼ã«ãããã¨ãå¯è½ã§ããA10 Networks ã¨ã®ãã¼ããã¼ã·ããã«ãããThunder ADC çµç±ã§ Next-Gen WAF ããããã¤ãã髿§è½ãã¼ãã¦ã§ã¢ã¨ä»®æ³ãã©ãããã©ã¼ã ãæ´»ç¨ããå¹ççãªä¿è·ãå®ç¾ã§ãã¾ãã
æå 端㮠WAAP ã½ãªã¥ã¼ã·ã§ã³
-
OWASP Top 10 対ç
徿¥åã® OWASP Top 10 ã®æ»æã«å ããææ°ã®é«åº¦ãª Web æ»æãããä¿è·ãã¾ãã
-
API ã®ä¿è·
ã¨ã³ããã¤ã³ãã«ãã£ã¦éä¿¡ãããäºæããªãå¤ããã©ã¡ã¼ã¿ã¼ãã¢ãã¿ãªã³ã°ãã䏿£ãªãªã¯ã¨ã¹ãããããã¯ã㦠API ã®æªç¨ã黿¢ãã¾ããFastly 㯠SOAPãRESTãgRPCãWebSocketãGraphQL API ã®æ»æãæ¤åºããããã¯ã§ãã¾ããGraphQL Inspection ã«é¢ãã詳細ãã確èªãã ããã
-
ããã対ç
åçãã¦ã¼ã¶ã¼ã¨ã¯ã¹ããªã¨ã³ã¹ã«æªå½±é¿ãåã¼ãåã«ãæªè³ªãªããããç¹å®ã対å¦ãããã¨ã§æªè³ªãªãããã«ããWebãµã¤ãã API ã¸ã®æ»æãé²ãã¾ãã
-
ã¢ã«ã¦ã³ãä¹ã£åã対ç
Web ãªã¯ã¨ã¹ããæ¤æ»ããæªæã®ããç°å¸¸ãªã¢ã¯ãã£ããã£ãæ¤åºãã¦ã¢ã«ã¦ã³ãä¹ã£åã (ATO) æ»æããããã¯ãã¾ãã
-
DDoS
ã¢ããªã®éè² è·ããã¢ããªãæªç¨ãããµã¼ãã¹ãã¦ã³ãç®çã¨ãããèªååãããæªè³ªãªãã©ãã£ãã¯ã黿¢ãã¾ããéè¦ãªã¢ããªã±ã¼ã·ã§ã³æ©è½ã«å¯¾ãããã©ãã£ãã¯ãè¨å®ããããããå¤ã«éããã¨ãèªåçã«ä¸æ£ãªãã©ãã£ãã¯ããããã¯ãã¾ãã
-
ã¬ã¼ãå¶é
Fastly ã®é«åº¦ãªã¬ã¼ãå¶éæ©è½ã«ãããæªæã®ããç°å¸¸ãã¤å¤§éã® Web ãªã¯ã¨ã¹ãããããã¯ããã¢ããªã±ã¼ã·ã§ã³ã¨ API ã¨ã³ããã¤ã³ãã¸ã®æ£å½ãªãã©ãã£ãã¯ã許å¯ããªãããWeb ãµã¼ãã¼ã¨ API ã®ä½¿ç¨çãæ¸ããã¾ãã
-
éè¦ãªäºå®
90%
ãã«ãããã¯ã¢ã¼ãã使ç¨ãã¦ããã客æ§
-
éè¦ãªäºå®
9ä¸ä»¥ä¸
ã¢ããªã®ãããã¤ãä¿è·
-
éè¦ãªäºå®
100+
ãµãã¼ããã¦ããã¯ã©ã¦ããã¤ãã£ã/ãã¼ã¿ã»ã³ã¿ã¼ãã©ãããã©ã¼ã
é«ãè©ä¾¡ãåãã¦ãããªã¼ãã¼ãã¡
ç§ãã¡ã® WAF ããæ¬¡ä¸ä»£ãã§ããçç±
伿¥ãå¤ãã»ãã¥ãªãã£ãã¼ã«ãæ¨ã¦ãWeb ãµã¤ããã¢ããªãAPI ã®ä¿è·ã« Fastly Next-Gen WAF ãæ´»ç¨ãã¦ããçç±ãã覧ãã ããã
SmartParse
ä¿¡é ¼æ§ãé«ãæ£ç¢ºãªæææ±ºå®ã®éµã¯ãå½ç¤¾ã®ç¹è¨±å徿¸ã¿ã¢ã¼ããã¯ãã£ã¨ç¬èªã®æ¤åºæè¡ã§ãã SmartParse ã«ããã¾ããSmartParse ãç¬æã«å¤æãä¸ããæªæã®ãããã¤ãã¼ããç°å¸¸ãªãã¤ãã¼ããåå¨ãããã©ããã夿ããæ¹æ³ãã覧ãã ããã
Network Learning Exchange
Next-Gen WAF ã«çµã¿è¾¼ã¾ãã¦ãã Fastly ã® Network Learning Exchange (NLX) ãæä¾ããéåçãªè å¨ãã£ã¼ãã¯ããã¹ã¦ã®ã客æ§ã®ãããã¯ã¼ã¯ãéãã¦æ½å¨çãªè å¨ããã IP ã¢ãã¬ã¹ãç¹å®ãããã®æ å ±ãå ±æãã¾ãããã®ããã«å ±æãããè å¨ãã¼ã¿ã¯ãããã¯ã¼ã¯å¹æãçã¿åºãã¾ããã¤ã¾ãããã¹ã¦ã®ã客æ§ããåéãããè å¨ã«é¢ããéåçãªã¤ã³ããªã¸ã§ã³ã¹ããåçµç¹ã®ã»ãã¥ãªãã£å¼·åã«ã¤ãªããã®ã§ãã

