äžé©åãªã·ãŒã¯ã¬ãã管çïŒSMPsïŒã¯ãã©ã®äŒæ¥ã«ãšã£ãŠãé倧ãªãªã¹ã¯ã䌎ããŸããç¹ã«é¡§å®¢ããŒã¿ã®ä¿ç®¡ãšä¿è·ãæ ãäŒæ¥ã§ã¯ããã®ãªã¹ã¯ã¯ããæ·±å»ã§ããããã¯äžè¬çãªåé¡ã§ãããå€ãã®äŒæ¥ã®ãªã¹ã¯ç»é²ç°¿ã®äžå¿ã«äœçœ®ããŠããŸããã·ãŒã¯ã¬ããã®æŒæŽ©ã¯æ©å¯æ§ã®åªå€±ãåŒãèµ·ãããå Žåã«ãã£ãŠã¯ããŒã¿æŒæŽ©ã«ã€ãªãããŸãããã®ãããªã€ã³ã·ãã³ãã¯ãäŒæ¥ã«å€§ããªè²¡åçæå€±ãããããã顧客ããã®ä¿¡é Œã倱ãåå ãšãªãåŸãŸãã
å€ãã®äŒæ¥ã«ãããŠãäžé©åãªã·ãŒã¯ã¬ãã管çã¯ãå°éç¥èã®äžè¶³ãããã®åé¡ã解決ããããã®ããŒã«ãæŠç¥ã«å¯Ÿããèªèäžè¶³ããçããŠããããšããããŸããé©åãªã·ãŒã¯ã¬ãã管çã宿œããããšã§ããªã¹ã¯ã®è»œæžãå¯èœãšãªããçµç¹ã®ã·ãŒã¯ã¬ããç®¡çæŠç¥ã«å¯Ÿããä¿¡é ŒãåäžããŸãããã®èšäºã§ã¯ãã·ãŒã¯ã¬ãã管çã®ãã¹ããã©ã¯ãã£ã¹ãGitLabãããããµããŒãããæ¹æ³ããããŠDevSecOpsãã©ãããã©ãŒã ã®ãã€ãã£ãã·ãŒã¯ã¬ããç®¡çæ©èœãæ¹åããããã®æŠç¥ã«ã€ããŠèª¬æããŸãã
æå·æŠç¥ã®çå®
ã©ã®äŒæ¥ã«ããããããããŒãæšæºåãããæ¹æ³ã§äœæ¥ãããã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ããã³ãã®ã³ã³ããŒãã³ããäŒæ¥ã®æå·èŠä»¶ã«åŸã£ãŠéçºãããããšãä¿èšŒããããã®åºç€ãšããŠãæå·æŠç¥ãäžå¯æ¬ ã§ãã
äŒæ¥ãåŠçããããŒã¿ããªã¹ã¯èš±å®¹åºŠãè åšã®ç¶æ³ãçè§£ããããšãã广çãªæå·æŠç¥ã®çå®ã«ã€ãªãããŸãã
ã·ãŒã¯ã¬ããçæ
ã¢ã¯ã»ã¹ããŒã¯ã³ãSSHããŒãªã©ã®ã·ãŒã¯ã¬ããã¯ãããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ïŒHSMïŒãªã©ã®æå·ããã€ã¹ã§çæããããšãæšå¥šãããŸããããã«ããã匷åãªæå·ã·ãŒã¯ã¬ãããçæããæ¹ãããäŸµå ¥ã«èæ§ã®ããæ¹æ³ã§å®å šã«ä¿åã§ããŸãã
ç©çããã€ã¹ã«äŸåããããšã¯ã³ã¹ããããããäŒæ¥ã«ãšã£ãŠéçšäžã®å¶çŽãšãªãå ŽåããããŸãããäž»èŠãªã¯ã©ãŠããµãŒãã¹ãããã€ããŒã¯ã¯ã©ãŠãHSMãµãŒãã¹ãæäŸããŠããŸããããšãã°ãAWS CloudHSMãGCP Cloud HSMãªã©ããããŸãã
ã·ãŒã¯ã¬ããä¿å
ã·ãŒã¯ã¬ããã®ä¿åã¯çæãšåæ§ã«éèŠã§ãã çæãããã·ãŒã¯ã¬ããã¯ãå®å šã«é·æéä¿åã§ããå¿ èŠãªãšãã«å®å šã«åãåºããŠäœ¿çšã§ããæ¹æ³ã§ä¿åããå¿ èŠããããŸãã
HashiCorpãªã©ã®ã»ãã¥ãªãã£äŒæ¥ãäž»èŠãªã¯ã©ãŠããµãŒãã¹ãããã€ããŒã¯ãã·ãŒã¯ã¬ãããå®å šã«ä¿åããåãåºãããã®ã¯ã©ãŠãããŒã¹ã®ãµãŒãã¹ãæäŸããŠããŸãããããã®ãµãŒãã¹ã掻çšããã°ãã·ãŒã¯ã¬ãããããŒãã³ãŒãããæéãçããããã»ã¹ãã³ãŒãå ã§ã·ãŒã¯ã¬ãããç°¡åã«æŽ»çšã§ããŸãã
GitLabã«ããã·ãŒã¯ã¬ããã®ä¿åãµããŒã
GitLabã¯ã以äžã®ã·ãŒã¯ã¬ãã管çãããã€ããŒããã€ãã£ããµããŒãããŠããŸãã
- Vault by HashiCorp
- Google Cloud Secret Manager
- Azure Key Vault
GitLabãã·ãŒã¯ã¬ãã管çãããã€ããŒã«æ¥ç¶ããããã«èšå®ãããšãCIãžã§ããå¿ èŠãªãšãã«ã®ã¿ã·ãŒã¯ã¬ããããªã¯ãšã¹ãã§ããŸããã·ãŒã¯ã¬ãããå¿ èŠãªãå Žåããããã¯ã·ãŒã¯ã¬ãã管çãµãŒãã¹å ã§å®å šã«ä¿åããããªã¹ã¯ãå€§å¹ ã«æžå°ããŸããäžèšã®ã·ãŒã¯ã¬ãã管çãããã€ããŒã«å ããGitLabã¯OIDCèªèšŒãéããŠãAWS Secret Managerãªã©ä»ã®ãããã€ããŒãžã®èªèšŒããµããŒãããŸããããã«ãããCI/CD倿°ãšããŠã·ãŒã¯ã¬ãããä¿åããŠãã¹ã¯ããæ¹æ³ãšæ¯ã¹ãã·ãŒã¯ã¬ããä¿åãã¯ããã«å®å šã«ãªããŸãã
ã·ãŒã¯ã¬ããã®äœ¿çš
ã·ãŒã¯ã¬ããã¯ã1ã€ã®ç®çã®ã¿ã«äœ¿çšããããšãæšå¥šãããŸãã ãªãã¢ããªã±ãŒã·ã§ã³ããµãŒãã¹ã§ã·ãŒã¯ã¬ãããåå©çšãããšãé²åºãªã¹ã¯ãé«ãŸãã䟵害æã®åœ±é¿ã倧ãããªããŸãã
ã·ãŒã¯ã¬ãããžã®ã¢ã¯ã»ã¹ã¯æå°ç¹æš©ã®ååãèæ ®ããŠå¶åŸ¡ããæ¥åãéçšã«å¿ èŠãªå人ããµãŒãã¹ã®ã¿ã«ã¢ã¯ã»ã¹ãèš±å¯ããããšã§ãé²åºãæªæã®ããã¢ã¯ãã£ããã£ã®ãªã¹ã¯ãæå°éã«æããŸãã
GitLabã«ããã·ãŒã¯ã¬ãã䜿çšã®ãµããŒã
GitLabã¯ã管çè ã«åŒ·åãªããŒã«ããŒã¹ã®ã¢ã¯ã»ã¹å¶åŸ¡ã¢ãã«ãæäŸããã«ã¹ã¿ã ããŒã«ãäœæããæ©èœãæäŸããŠããŸããããã«ããã管çè ã¯ã¢ã¯ã»ã¹æš©ã®ãããã¡ã€ã«ãçµç¹ã®æšæºããªã¹ã¯èš±å®¹åºŠã«åãããŠèª¿æŽã§ããŸãã
GitLabã§ã¯ãæå³ããã«ã³ããããããã·ãŒã¯ã¬ããã èªèšŒæ å ±ã確èªããããã«ãã·ãŒã¯ã¬ããæ€åºãå®è¡ããããšãã§ããŸããGitLab Ultimateã®ãŠãŒã¶ãŒã¯ãæµåºããèªèšŒæ å ±ã®åœ±é¿ã軜æžããããã«ãã·ãŒã¯ã¬ããã®åãæ¶ããªã©ã®æµåºããã·ãŒã¯ã¬ãããžã®èªåå¿çã匷å¶ããããšãã§ããŸãã
å¯ç£æ»æ§
ã·ãŒã¯ã¬ããã®ã¢ã¯ã»ã¹ãšäœ¿çšã¯ç£æ»å¯èœãã€è¿œè·¡å¯èœã§ããã¹ãã§ããçæ³çã«ã¯ãå人ããã¬ãŒã³ããã¹ãã§ã·ãŒã¯ã¬ããã衚瀺ã§ããããšã¯ãªãã¯ãã§ãããäŒæ¥ã®éçšç¶æ³ã¯å¿ ãããçæ³çã§ã¯ãããŸããã
ç£æ»å¯èœã§è¿œè·¡å¯èœãªã·ãŒã¯ã¬ãã管çã«ãããã»ãã¥ãªãã£ããŒã ã¯ç°åžžãŸãã¯æªæã®ããè¡åãç£èŠããèªåãŸãã¯æåã§è¿ éã«å¯Ÿå¿ã§ããŸãã
GitLabã«ããå¯ç£æ»æ§ã®ãµããŒã
GitLabã®ç£æ»ã€ãã³ãã¯ãGitLabå ã§äœæãããããŒã¯ã³ãããŒã«é¢é£ããã¢ã¯ãã£ããã£ã詳现ã«èšé²ããŸãã以äžã¯ãã®äžéšã§ãã
- ããŒãœãã«ã¢ã¯ã»ã¹ããŒã¯ã³ã€ãã³ã
- ãããã€ããŒã¯ã³ã€ãã³ã
- ã¯ã©ã¹ã¿ãŒãšãŒãžã§ã³ãããŒã¯ã³ã€ãã³ã
ãããã®ã¢ã¯ãã£ããã£ã¯ããŒã¿ããŒã¹ã«ä¿åãããŸããGitLab UltimateãŠãŒã¶ãŒã¯ç£æ»ã€ãã³ãã¹ããªãŒãã³ã°ãéããŠã¢ã¯ã»ã¹å¯èœã§ãã
è¿æ¥å ¬éïŒGitLabã·ãŒã¯ã¬ãããããŒãžã£ãŒ
GitLabã¯ã2024幎åŸåã«ãã€ãã£ããªã·ãŒã¯ã¬ããç®¡çæ©èœããªãªãŒã¹äºå®ã§ããGitLabã·ãŒã¯ã¬ãããããŒãžã£ãŒã¯ãè€æ°ã®ããã³ãããµããŒãããã¯ã©ãŠãããŒã¹ã®ãœãªã¥ãŒã·ã§ã³ã§ãGitLab.comããã³Self-Managedã®ã客æ§ã¯Cloud ConnectorãµãŒãã¹ãéããŠå©çšã§ããããã«ãªããŸãããã®æ°ãããµãŒãã¹ã¯ãçŸåšã®CI/CD倿°ã€ã³ã¿ãŒãã§ãŒã¹ãšäžè²«æ§ã®ãã䜿ããããã€ã³ã¿ãŒãã§ãŒã¹ãæäŸãããµãŒãããŒãã£è£œåãããåŠç¿ã³ã¹ããæå°éã«æããå°å ¥ã容æã«ããŸããGitLabã·ãŒã¯ã¬ãããããŒãžã£ãŒã¯ãCIãã€ãã©ã€ã³å ã§ã®æ©å¯æ å ±ã®ã»ãã¥ãªãã£ãšä¿è·ã確ä¿ããŸãã
GitLabã·ãŒã¯ã¬ãããããŒãžã£ãŒã«ã€ããŠã®è©³çްãã質åã¯ãMVC epicã«ã³ã¡ã³ãããå¯ããã ããã
次ã®ã¹ããã
ããžã¿ã«æä»£ã®ã¢ããªã±ãŒã·ã§ã³ã»ã»ãã¥ãªãã£
äžçåå°ã®DevSecOpsã®å°éå®¶5,000åã察象ã«è¡ã£ã調æ»çµæãèªã¿ãçµç¹ãã¢ã¿ãã¯ãµãŒãã§ã¹ïŒæ»æå¯Ÿè±¡é åïŒã®å¢å ã«ã©ã®ããã«åãçµãã§ãããããŸãã»ãã¥ãªãã£ãšAIã«å¯Ÿããå§¿å¢ãã©ã®ããã«å€åããŠããããã芧ãã ããã
ãããã質å
äž»èŠãªãã€ã³ã
- ã·ãŒã¯ã¬ãã管çã®äžåãããŒã¿æŒæŽ©ã®åå ã«ãGitLabã®ãã€ãã£ãã€ã³ãã°ã¬ãŒã·ã§ã³ãã»ãã¥ãªãã£ã匷åããŸãã
- ç£æ»ãšåž°å±ãå¯èœãªã·ãŒã¯ã¬ãã管çã«ãããã»ãã¥ãªãã£ããŒã ã¯ç°åžžãæªæã®ããã¢ã¯ãã£ããã£ãå³åº§ã«çºèŠã察å¿ã§ããŸãã
- GitLabã¯åŒ·åãªã¢ã¯ã»ã¹å¶åŸ¡ãšæ€åºããŒã«ã«ãããã·ãŒã¯ã¬ããã®ä¿åãšå©çšã培åºãµããŒãããŸãã

