<?xml version="1.0" encoding="EUC-JP"?>
<rss version="2.0">
   <channel>
      <title>³ô¼°²ñ¼Ò¥»¥·¥ª¥¹</title>
      <link>http://www.secioss.co.jp/</link>
      <description></description>
      <language>ja</language>
      <copyright>Copyright 2012</copyright>
      <lastBuildDate>Wed, 18 Apr 2012 11:23:45 +0900</lastBuildDate>
      <generator>http://www.sixapart.com/movabletype/</generator>
      <docs>http://blogs.law.harvard.edu/tech/rss</docs> 

            <item>
         <title>¡ÖGoogle Apps¥Ç¥Ð¥¤¥¹Ç§¾Ú¥Ñ¥Ã¥±¡¼¥¸¡×¤òiDATEN ¡ÊðêÂÌÅ·¡Ë SaaSplats¤ÇÈÎÇä³«»Ï</title>
         <description><![CDATA[<p>
³ô¼°²ñ¼Ò¥»¥·¥ª¥¹¡ÊËÜ¼Ò¡§ÅìµþÅÔÊ¸µþ¶è¡¢ÂåÉ½¼èÄùÌò¡§´Ø¸ý·°¡Ë¤Ï¡¢¡ÖGoogle Apps¥Ç¥Ð¥¤¥¹Ç§¾Ú¥Ñ¥Ã¥±¡¼¥¸¡×¤ò³ô¼°²ñ¼Ò<span>JCCH</span>¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¡Ê°Ê²¼JS3¡Ë¤È¶¦Æ±¤Ç¡¢¥À¥¤¥ï¥Ü¥¦¾ðÊó¥·¥¹¥Æ¥à³ô¼°²ñ¼Ò¡Ê°Ê²¼DIS¡Ë¤¬¥Ó¡¼¥×¥é¥Ã¥Ä³ô¼°²ñ¼Ò¡Ê°Ê²¼¥Ó¡¼¥×¥é¥Ã¥Ä¡Ë¤È¶¦Æ±¤Ç±¿±Ä¤¹¤ëiDATEN¡ÊðêÂÌÅ·¡ËSaaSplats¡Ê°Ê²¼iDATEN SaaSplats¡Ë¡¡¤ÇËÜÆü¤«¤éÈÎÇä³«»Ï¤¹¤ë¤³¤È¤òÈ¯É½¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¡ÖGoogle Apps¥Ç¥Ð¥¤¥¹Ç§¾Ú¥Ñ¥Ã¥±¡¼¥¸¡×¤Ï¡¢³ô¼°²ñ¼Ò¥»¥·¥ª¥¹¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥µ¡¼¥Ó¥¹¡ÖSeciossLink¡×¤È³ô¼°²ñ¼ÒJCCH¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¤¬GMO¥°¥í¡¼¥Ð¥ë¥µ¥¤¥ó³ô¼°²ñ¼Ò¤È¶¦Æ±³«È¯¤·¤¿iPhone¡¦iPadÃ¼ËöÇ§¾Ú¥µ¡¼¥Ó¥¹¡Ö¥Þ¥Í¡¼¥¸¥ÉPKI Lite for Mobile powered
by Gl&eacute;as¡×¤ò¥Ñ¥Ã¥±¡¼¥¸¤¹¤ë¤³¤È¤Ç¡¢iPhone¡¦iPad¤Ê¤É¤«¤éGoogle Apps¤Ë¥¢¥¯¥»¥¹¤Ç¤­¤ë¥Ç¥Ð¥¤¥¹¤ò¥¯¥é¥¤¥¢¥ó¥È¾ÚÌÀ½ñ¤ÇÆÃÄê¤¹¤ë¥µ¡¼¥Ó¥¹¤È¤Ê¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<img src="http://www.secioss.co.jp/images/gleas-slink.png" alt="" title="Gleas-SeciossLink" width="550" height="350" />
<p>
¡ÖSeciossLink¡×¤Ï¡¢¥»¥·¥ª¥¹³ô¼°²ñ¼Ò¤ÎSaaS·¿¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥µ¡¼¥Ó¥¹¤Ç¤¹¡£Google Apps¤äSalesforce¤Ø¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈID´ÉÍý¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£JS3¤Ï¡ÖGoogle Apps¥Ç¥Ð¥¤¥¹Ç§¾Ú¥Ñ¥Ã¥±¡¼¥¸¡×¤ÎÈÎÇä³«»Ï¤Ë¹ç¤ï¤»¡¢iDATEN
SaaSplats¤Ë¤ª¤¤¤Æ¡ÖSeciossLink¡×¤âÆ±»þ¤ËÈÎÇä³«»Ï¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¡Ö¥Þ¥Í¡¼¥¸¥ÉPKI Lite for Mobile powered by Gl&eacute;as¡×¤Ï¡¢GMO¥°¥í¡¼¥Ð¥ë¥µ¥¤¥ó³ô¼°²ñ¼Ò¤ÎASP·¿¥Ñ¥Ö¥ê¥Ã¥¯Ç§¾Ú¶É±¿±Ä¥µ¡¼¥Ó¥¹¤Ç¤¹¡£ËÜ¥µ¡¼¥Ó¥¹¤ËºÎÍÑ¤µ¤ì¤Æ¤¤¤ëGl&eacute;as¤Ï¡¢¥×¥é¥¤¥Ù¡¼¥ÈÇ§¾Ú¶ÉÀ½ÉÊ¤È¤·¤Æ¡¢¹â¤¤½ÀÆðÀ­¡¢ÁàºîÀ­¤ª¤è¤Ó¿®ÍêÀ­¤ò¼Â¸½¤¹¤ë¤¿¤á¤Ë¡¢JS3¤¬¼«¼Ò³«È¯¤·¤¿¥¢¥×¥é¥¤¥¢¥ó¥¹À½ÉÊ¤Ç¤¹¡£ºÇ¾¯<span>10</span>¥é¥¤¥»¥ó¥¹¤«¤é¤ÎÍøÍÑ¤ÈiPhone¹½À®¥×¥í¥Õ¥¡¥¤¥ë¤òÅÅ»Ò¾ÚÌÀ½ñ¤ÈÆ±»þ¤ËÇÛÉÛ¤Ç¤­¤ë¤³¤È¤¬¼ç¤ÊÆÃÄ§¤È¤Ê¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
iDATEN SaaSplats¤Ï¡¢¥Ó¡¼¥×¥é¥Ã¥Ä¤¬±¿±Ä¤¹¤ëSaaS¡¦PaaSÎ®ÄÌ¥µ¡¼¥Ó¥¹¤Ç¤¢¤ëSaaSplats¡Ê¥µ¡¼¥¹¥×¥é¥Ã¥Ä¡Ë¤ò³èÍÑ¤·¡¢DIS¤ÎÈÎÇäÅ¹¤¬SaaS¡¦PaaS¤Î¼è¤ê¼¡¤®¤ò¹Ô¤¦¤³¤È¤¬¤Ç¤­¤ë¥µ¡¼¥Ó¥¹¤Ç¤¹¡£¼ç¤ÊÆÃÄ§¤È¤·¤Æ¤Ï¡¢°Ê²¼¤Î<span>3</span>ÅÀ¤¬µó¤²¤é¤ì¤Þ¤¹¡£
</p>
<p>
£±¡Ë¡ØSaaS¡¦PaaS¤Ê¤É¤Î·î³Û¥µ¡¼¥Ó¥¹¡Ù¤òÂ¿³¬ÁØ¤ÇÈÎÇä´ÉÍý¤¹¤ë¥×¥é¥Ã¥È¥Õ¥©¡¼¥à
</p>
<p>
£²¡Ë¡Ø´ûÂ¸¤ÎÎ®ÄÌÌÖ¡Ù¡Ø´ûÂ¸¤ÎÈÎÇäÅ¹¡Ù¤Î¥Ó¥¸¥Í¥¹¤ËÅ¬±þ¤Ç¤­¤ë¥µ¡¼¥Ó¥¹¥â¥Ç¥ë
</p>
<p>
£³¡Ë¡Ø·î³Û¡¦½¾ÎÌ²Ý¶â¡Ù¤Î·èºÑÂå¹Ô¥µ¡¼¥Ó¥¹
</p>
<p>
&nbsp;
</p>
<p>
iDATEN SaaSplats¤Ë¤è¤ê¡¢¤ªµÒ¤µ¤Þ¤ÏÊ£¿ô¤ÎSaaS¡¦¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤Î¤´·ÀÌó¤äÀÁµá¡¦·ÀÌó´ÉÍý¤Ê¤É¤ò¥ï¥ó¥¹¥È¥Ã¥×¤Ç¤ª¼êÂ³¤­¡¢Áë¸ý¤Î°ìËÜ²½µÚ¤ÓÊ£¿ô¥µ¡¼¥Ó¥¹¤Î·ÀÌó¤ò°ì¸µ´ÉÍý¤Ê¤É¤Î¥á¥ê¥Ã¥È¤òµý¼õ¤¤¤¿¤À¤±¤Þ¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2012/04/google_appsidaten_saasplats_1.html</link>
         <guid>http://www.secioss.co.jp/2012/04/google_appsidaten_saasplats_1.html</guid>
        
        
         <pubDate>Wed, 18 Apr 2012 11:23:45 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Identity Suite Cloud Edition SP WindowsÈÇ</title>
         <description><![CDATA[<p>
Secioss Identity Suite Cloud Edition¤Ï¡¢¥¯¥é¥¦¥É¥³¥ó¥Ô¥å¡¼¥Æ¥£¥ó¥°´Ä¶­¤Ë¤ª¤¤¤ÆSAML 2.0¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤äSOAPÄÌ¿®¤Ë¤è¤ë¥¢¥«¥¦¥ó¥ÈÆ±´ü¤ò¥µ¥¤¥È´Ö¤Ç¼Â¸½¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
Secioss Identity Suite Cloud Edition¡Ê°Ê¹ßIdentity Suite Cloud¤È¤·¤Þ¤¹¡Ë¤ò¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÆ³Æþ¤¹¤ë¤³¤È¤Ç¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤·¤Æ°Ê²¼¤Îµ¡Ç½¤ò´ÊÃ±¤ËÄÉ²Ã¤¹¤ë¤³¤È¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</strong><br />
SAML¤ÎService Provider¤È¤·¤ÆÆ°ºî¤·¡¢SAML¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¤¤Þ¤¹¡£¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÏIdentity Suite Cloud¤ÎÂåÍýÇ§¾Úµ¡Ç½¤Ë¤è¤ê´ÊÃ±¤ËSAMLÇ§¾Úµ¡Ç½¤òÁÈ¤ß¹þ¤à¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>IDÆ±´ü</strong><br />
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎID´ÉÍýÍÑSOAP API¤òÄó¶¡¤·¡¢SOAP·ÐÍ³¤Ç¤ÎID´ÉÍý¤ä¥µ¥¤¥È´Ö¤Ç¤ÎIDÆ±´ü¤ò¼Â¸½¤·¤Þ¤¹¡£Identity Suite Cloud¤Ï¡¢Äê´üÅª¤ËSOAP API¤Ç¹¹¿·¥Ç¡¼¥¿¤ò¼èÆÀ¤·¡¢LISM¤Ë¤è¤ê¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤ØÈ¿±Ç¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h5>¥ª¡¼¥×¥ó¥½¡¼¥¹¥×¥í¥¸¥§¥¯¥È</h5>
<p>
Identity Suite Cloud¤Ë¤Ä¤¤¤Æ¤Ï¡¢¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤È¤·¤ÆGPL¥é¥¤¥»¥ó¥¹¤Ë¤è¤ê¸ø³«¤·¤Æ¤¤¤Þ¤¹¡£<br />
¡¦¥×¥í¥¸¥§¥¯¥È¥µ¥¤¥È¡§<a href="http://sourceforge.jp/projects/secioss-auth/devel/">http://sourceforge.jp/projects/secioss-auth/</a><br />
¡¦¥á¡¼¥ê¥ó¥°¥ê¥¹¥È¡§<a href="http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users">http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users</a>
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>1. ¥¤¥ó¥¹¥È¡¼¥ë</h3>
<p>
Identity Suite Cloud SP¤òWindows´Ä¶­¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ëÊýË¡¤Ë¤Ä¤¤¤Æ¡¢²òÀâ¤·¤Þ¤¹¡£<br />
Identity Suite Cloud SP¤Î¿ä¾©´Ä¶­¤Ï°Ê²¼¤Ë¤Ê¤ê¤Þ¤¹¡£<br />
¡¦OS¡§ Windows Server 2003°Ê¹ß<br />
¡¦Web¥µ¡¼¥Ð¡§&nbsp; IIS 6°Ê¹ß
</p>
<p>
&nbsp;
</p>
<p>
º£²ó¤Î¥¤¥ó¥¹¥È¡¼¥ë´Ä¶­¤È¤·¤Æ¤Ï¡¢Windows Server 2008¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£<br />
¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÎÇ§¾Ú¥µ¡¼¥Ð¡¢Åý¹çID´ÉÍý¥µ¡¼¥Ð¤Ï¡¢ÊÀ¼ÒSaaS¥µ¡¼¥Ó¥¹<a href="http://www.secioss.co.jp/2011/05/saas_secioss_federation.html">SeciossLink</a>¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£&nbsp;&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>1.1 ActivePerl¤Î¥¤¥ó¥¹¥È¡¼¥ë</h5>
<p>
ActivePerl¤ò<a href="http://www.activestate.com/activeperl/downloads/">http://www.activestate.com/activeperl/downloads/</a>¤«¤é¥À¥¦¥ó¥í¡¼¥É¤·¤Æ¡¢¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£ ¤Þ¤¿¡¢¹ç¤ï¤»¤ÆIIS¤ÇPerl¤ÎCGI¤¬»ÈÍÑ¤Ç¤­¤ë¤è¤¦¤ËÀßÄê¤·¤Æ¤ª¤¤¤Æ²¼¤µ¤¤¡£
</p>
<p>
¼¡¤Ë¡¢°Ê²¼¤ÎPerl¥â¥¸¥å¡¼¥ë¤ò¥³¥Þ¥ó¥É¥×¥í¥ó¥×¥È¤«¤é¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
Config-General¡¢Config-IniFiles¡¢Log-Dispatch¡¢Log-Dispatch-FileRotate¡¢Class-Inspector¡¢DBD-mysql<br />
¡¡ppm install &lt;¥Ñ¥Ã¥±¡¼¥¸Ì¾
</p>
<p>
&nbsp;
</p>
<h5>1.2 PHP¤Î¥¤¥ó¥¹¥È¡¼¥ë</h5>
<p>
http://www.php.net/downloads.php¤«¤éPHP¤ÎWindows binary zip¥Õ¥¡¥¤¥ë¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ¡¢¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
PHP¤ÎExtension¤È¤·¤Æ¡¢°Ê²¼¤Î¥â¥¸¥å¡¼¥ë¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦ php_openssl.dll
</p>
<p>
&nbsp;
</p>
<h5>1.3 Secioss Identity Suite Cloud Edition SP</h5>
<p>
secioss-idsuite-cloud-sp-win-3.x.x.zip¤òÅ¸³«¤·¤Æ¡¢opt¥Õ¥©¥ë¥À¤òC:\opt¤È¤·¤ÆÇÛÃÖ¤·¤Þ¤¹¡£
</p>
<p>
¼¡¤ËC:\opt¤Î[¥×¥í¥Ñ¥Æ¥£]-&gt;[¥»¥­¥å¥ê¥Æ¥£]¤«¤é¡¢IUSR¡ÊWindows 2003 Server¤Ç¤ÏIUSR_&lt;¥Þ¥·¥óÌ¾&gt;¡Ë¡¢Users¤ËÂÐ¤·¤Æ¥¢¥¯¥»¥¹µö²Ä¤òÍ¿¤¨¤Þ¤¹¡£
</p>
<p>
¤µ¤é¤Ë¡¢°Ê²¼¤Î¥Õ¥©¥ë¥À¤Ë¤ÏIUSR¡¢Users¤ËÂÐ¤·¤Æ¥Õ¥ë¥³¥ó¥È¥í¡¼¥ë¤Î¥¢¥¯¥»¥¹µö²Ä¤òÍ¿¤¨¤Þ¤¹¡£<br />
¡¦ C:\opt\secioss\share\simplesamlphp\log<br />
¡¦ C:\opt\secioss\var\log&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>1.4 IIS¥Þ¥Í¡¼¥¸¥ã¤ÎÀßÄê</h5>
<p>
»ÈÍÑ¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ë¤Ä¤¤¤Æ°Ê²¼¤Î¤è¤¦¤Ë²¾ÁÛ¥Ç¥£¥ì¥¯¥È¥ê¤òÀßÄê¤·¤Þ¤¹¡£<br />
¡¡SAML&nbsp;¥¨¥¤¥ê¥¢¥¹¡§&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥óURL¤Î¥Ñ¥¹&gt;/saml¡¡¥Ñ¥¹¡§C:\opt\secioss\share\simplesamlphp\www<br />
¡¡ÂåÍýÇ§¾Ú ¥¨¥¤¥ê¥¢¥¹¡§ &lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥óURL¤Î¥Ñ¥¹&gt;/sso¡¡¥Ñ¥¹¡§ C:\opt\secioss\var\www\sso<br />
¢¨ ¥¢¥×¥ê¥±¡¼¥·¥ç¥óURL¤Î¥Ñ¥¹¤Ï¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÂÐ¾Ý¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¤Î¤¦¤Á¤Î¥Ñ¥¹ÉôÊ¬¤Ç¤¹¡£<br />
¡¡ Îã¡§ URL: https://sp.example.com/SugarCE/index.php ¥Ñ¥¹: /SugarCE
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>2. ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h3>
<h5>2.1 SAMLÇ§¾Ú¤ÎÀßÄê&nbsp;</h5>
<p>
&quot;C:\opt\secioss\share\simplesamlphp\config\config.php&quot;¤Î&#39;baseurlpath&#39;¤òIIS¤ÇÀßÄê¤·¤¿SAML¤Î¥¨¥¤¥ê¥¢¥¹¤Ë¡¢&nbsp;&#39;default-saml20-idp&#39;¤ò&quot;&lt;Ç§¾Ú¥µ¡¼¥Ð¤ÎURL&gt;/&lt;¥Æ¥Ê¥ó¥ÈID&gt;&quot;¡ÊÎã¡§ https://slink.secioss.com/secioss.co.jp¡Ë¤Ë¡¢SESSIONNAME¤ò¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥»¥Ã¥·¥ç¥ó¥¯¥Ã¥­¡¼Ì¾¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
&quot;C:\opt\secioss\share\simplesamlphp\metadata\saml20-idp-remote.php&quot;¤Î&#39;SingleSignOnService&#39;¡¢&#39;SingleLogoutService&#39;¤Î¥Û¥¹¥ÈÌ¾¤òÇ§¾Ú¥µ¡¼¥Ð¤Î¥Û¥¹¥ÈÌ¾¤Ë¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
¤Þ¤¿¡¢°Ê²¼¤ÎÃÍ¤ò&quot;&lt;Ç§¾Ú¥µ¡¼¥Ð¤ÎURL&gt;/&lt;¥Æ¥Ê¥ó¥ÈID&gt;&quot;¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£
</p>
<hr />
<p>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &#39;<strong>https://slink.secioss.com</strong>&#39; =&gt;&nbsp; array(
</p>
<hr />
<p>
&nbsp;
</p>
<p>
¼¡¤Ë¡¢&quot;C:\opt\secioss\share\simplesamlphp\metadata\saml20-sp-hosted.php&quot;¤Î&quot;https://sp.example.com/path&quot;¤ò¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¦¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¡ÊURL¤Ï¥Ñ¥¹¤Þ¤Ç¤È¤·¤Æ¡¢¥Õ¥¡¥¤¥ëÌ¾¤ÎÉôÊ¬¤Ï´Þ¤á¤Ê¤¤¤Ç²¼¤µ¤¤¡Ë¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
¼¡¤Ë¡¢Ç§¾Ú¥µ¡¼¥Ð¤Î¸ø³«¸°&quot;&lt;Ç§¾Ú¥µ¡¼¥Ð¤Î¥Û¥¹¥ÈÌ¾&gt;/public/PublicKey-idp.pem&quot;¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ¡¢°Ê²¼¤Î¾ì½ê¤Ë&quot;C:\opt\secioss\share\simplesamlphp\cert&quot;¤ËÃÖ¤¤¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤ËSAMLÇ§¾ÚÍÑ¤ÎÈëÌ©¸°¤È¸ø³«¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
°Ê²¼¤ÏLinux¾å¤ÇOpenSSL¤Ë¤è¤ëÈëÌ©¸°¤È¸ø³«¸°¤ÎºîÀ®¼ê½ç¤Ç¤¹¡£<br />
­¡&nbsp;ÈëÌ©¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
# cd /etc/pki/tls/certs<br />
# make test.key<br />
ÈëÌ©¸°¤«¤é¥Ñ¥¹¥ï¡¼¥É¤òºï½ü¤·¤Þ¤¹¡£<br />
# openssl rsa -in test.key -out test.key
</p>
<p>
­¢&nbsp;¸ø³«¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
# make test.crt<br />
Country Name (2 letter code) [GB]:JP<span style="color: #00ff00">¡¡&larr;¡¡¹ñÌ¾</span><br />
State or Province Name (full name) [Berkshire]:Tokyo<span style="color: #00ff00">¡¡&larr;¡¡ÅÔÆ»ÉÜ¸©Ì¾</span><br />
Locality Name (eg, city) [Newbury]:Bunkyo<span style="color: #00ff00">¡¡&larr;¡¡»Ô¶èÄ®Â¼Ì¾</span><br />
Organization Name (eg, company) [My Company Ltd]:TEST, Inc<span style="color: #00ff00">¡¡&larr;¡¡²ñ¼ÒÌ¾</span><br />
Organizational Unit Name (eg, section) []:<span style="color: #00ff00">¡¡&larr;¡¡¶õENTER</span><br />
Common Name (eg, your name or your server&#39;s hostname) []:sp.test.co.jp<span style="color: #00ff00">¡¡&larr;¡¡¥Û¥¹¥ÈÌ¾</span><br />
Email Address []:admin@test.co.jp<span style="color: #00ff00">¡¡&larr;¡¡´ÉÍý¼Ô¥á¡¼¥ë¥¢¥É¥ì¥¹</span>
</p>
<p>
&nbsp;
</p>
<p>
ÈëÌ©¸°¤Ï¡¢&quot;C:\opt\secioss\share\simplesamlphp\cert\PrivateKey.pem&quot;¤Ë¥³¥Ô¡¼¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>2.2 ÂåÍýÇ§¾Ú¤ÎÀßÄê</strong>
</p>
<p>
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¼«Æ°¤Ç¥í¥°¥¤¥ó¤¹¤ë¤¿¤á¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£
</p>
<p>
ÀßÄê¥Õ¥¡¥¤¥ë¤Ï¡¢&quot;C:\opt\secioss\var\www\conf\&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾¡ÊÁ´¤Æ¾®Ê¸»ú¡Ë&gt;.ini&quot;¤È¤·¤ÆºîÀ®¤·¤Æ²¼¤µ¤¤¡£<br />
°Ê²¼¤ÏSugarCRMÍÑ¤ÎÀßÄêÎã¤Ç¤¹¡£
</p>
<hr />
<p>
[url]<br />
login = &quot;https://sp.example.com/SugarCE/index.php?action=Login&amp;module=Users&quot;<br />
back = &quot;/SugarCE/&quot;
</p>
<p>
&nbsp;
</p>
<p>
[postName]<br />
username = user_name<br />
password = user_password
</p>
<p>
&nbsp;
</p>
<p>
[postData]<br />
module = Users<br />
action = Authenticate<br />
return_module = Users<br />
return_action = Login<br />
cant_login = &quot;&quot;<br />
login_module = &quot;&quot;<br />
login_action = &quot;&quot;<br />
login_record = &quot;&quot;<br />
login_theme = Sugar<br />
login_language = ja<br />
login_button = &quot;&nbsp; ¥í¥°¥¤¥ó&nbsp; &quot;
</p>
<hr />
<p>
&nbsp;
</p>
<table border="1">
	<tbody>
		<tr>
			<td rowspan="2">
			<p>
			url
			</p>
			</td>
			<td>
			<p>
			login
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó¤¹¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL
			</p>
			</td>
		</tr>
		<tr>
			<td>
			<p>
			back
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó¸å¤ËÉ½¼¨¤¹¤ë²èÌÌ¤ÎURL
			</p>
			</td>
		</tr>
		<tr>
			<td rowspan="2">
			<p>
			postName
			</p>
			</td>
			<td>
			<p>
			username
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó»þ¤ËPOST¤¹¤ë¥æ¡¼¥¶Ì¾¤ÎÊÑ¿ôÌ¾
			</p>
			</td>
		</tr>
		<tr>
			<td>
			<p>
			password
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó»þ¤ËPOST¤¹¤ë¥Ñ¥¹¥ï¡¼¥É¤ÎÊÑ¿ôÌ¾
			</p>
			</td>
		</tr>
	</tbody>
</table>
<p>
&nbsp;
</p>
<p>
[postData]¤Ë¤Ï¡¢POST¤¹¤ë¥Ç¡¼¥¿¤ÎÊÑ¿ôÌ¾¤ÈÃÍ¤ÎÁÈ¤ß¹ç¤ï¤»¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£&nbsp;&nbsp;&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>2.3&nbsp;Ç§¾Ú¥µ¡¼¥Ð¤ÎÀßÄê</strong>
</p>
<p>
<a href="https://slink.secioss.com/tenantadmin/">https://&lt;Ç§¾Ú¥µ¡¼¥Ð¤Î¥Û¥¹¥ÈÌ¾&gt;/tenantadmin/</a>¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢´ÉÍý¼Ô¥¢¥«¥¦¥ó¥È¤Ç¥í¥°¥¤¥ó¤·¤Þ¤¹¡£<br />
²èÌÌ¾åÉô¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¥¯¥ê¥Ã¥¯¤·¤«¤é¡¢º¸Â¦¥á¥Ë¥å¡¼¤Î&rdquo;SAML ¥µ¡¼¥Ó¥¹¥×¥í¥Ð¥¤¥À&rdquo;¤ò¥¯¥ê¥Ã¥¯¤·¤Æ²¼¤µ¤¤¡£<br />
&rdquo;¿·µ¬ÅÐÏ¿&rdquo;¤ò¥¯¥ê¥Ã¥¯¤·¤Æ¡¢SP¤ÎÀßÄê¤òÅÐÏ¿¤·¤Þ¤¹¡£<br />
¡¦¥µ¡¼¥Ó¥¹¡§¡¡¥µ¡¼¥Ó¥¹ID¤òÁªÂò¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥µ¡¼¥Ó¥¹Ì¾¡§¡¡SP¤Î¥µ¡¼¥Ó¥¹Ì¾¡ÊÇ¤°Õ¤ÎÃÍ¡Ë¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦URL¡§¡¡2.1¹à¤ÇÀßÄê¤·¤¿¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥æ¡¼¥¶ID¤ÎÂ°À­¡§¡¡SP¤ËÅÏ¤¹¥æ¡¼¥¶ID¤ÎÂ°À­¤òÁªÂò¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦°Å¹æ²½ÍÑ¸ø³«¸°¡§¡¡2.1¹à¤ÇºîÀ®¤·¤¿¸ø³«¸°¤òÅÐÏ¿¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/sp-config.jpg" alt="SPÅÐÏ¿" width="512" height="371" />
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>3. IDÆ±´ü</h3>
<h5>3.1&nbsp; IDÆ±´ü¤ÎÀßÄê</h5>
<p>
Identity Suite Cloud¤Ï¡¢LISM¤Ë¤è¤Ã¤ÆÄê´üÅª¤ËÅý¹çID´ÉÍý¥µ¡¼¥Ð¤«¤é¹¹¿·¥Ç¡¼¥¿¤ò¼èÆÀ¤·¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤äLDAP¤Î¥¢¥«¥¦¥ó¥È¤ò¹¹¿·¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
ºÇ½é¤Ë¡¢&quot;C:\opt\secioss\etc\lism-sp.conf¤Î°Ê²¼¤ÎÃÍ¤ò´Ä¶­¤Ë¹ç¤ï¤»¤ÆÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦slink.secioss.com¡§ Åý¹çID´ÉÍý¥µ¡¼¥Ð¤Î¥Û¥¹¥ÈÌ¾<br />
¡¦TENANTID¡§¡¡¥Æ¥Ê¥ó¥ÈID<br />
¡¦SERVICEID¡§¡¡2.3¹à¤Î¥µ¡¼¥Ó¥¹ID¡Ê¥Æ¥Ê¥ó¥ÈID¤Ï½ü¤¯¡Ë<br />
¡¦ADMINID¡§¡¡Åý¹çID´ÉÍý¥µ¡¼¥Ð¤ËÀÜÂ³¤¹¤ë´ÉÍý¼Ô¥¢¥«¥¦¥ó¥ÈÌ¾<br />
¡¦ADMINPW¡§¡¡´ÉÍý¼Ô¥¢¥«¥¦¥ó¥È¤Î¥Ñ¥¹¥ï¡¼¥É<br />
¤Þ¤¿¡¢IDÆ±´üÂÐ¾Ý¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥æ¡¼¥¶ID¤Ë»ÈÍÑ¤¹¤ëÂ°À­¤Ë¹ç¤ï¤»¤Æ¡¢°Ê²¼¤ÎÊÑ¹¹¤ò¹Ô¤Ã¤Æ²¼¤µ¤¤¡£<br />
¡¦¥æ¡¼¥¶ID¡§ &quot;&lt;!-- id ... --&gt;&quot;¤Î¥³¥á¥ó¥È¥¢¥¦¥È¤ò³°¤·¤Æ¤¯¤À¤µ¤¤¡£<br />
¡¦¥æ¡¼¥¶ID@¥Æ¥Ê¥ó¥ÈID¡§ ÊÑ¹¹¤¹¤ëÉ¬Í×¤Ï¤¢¤ê¤Þ¤»¤ó¡£<br />
¡¦¥á¡¼¥ë¥¢¥É¥ì¥¹¡§ &quot;&lt;!-- attribute ... --&gt;&quot;¤Î¥³¥á¥ó¥È¥¢¥¦¥È¤ò³°¤·¤Æ¡¢ATTRIBUTE¤òmail¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¼Ò°÷ÈÖ¹æ¡§ &quot;&lt;!-- attribute ... --&gt;&quot;¤Î¥³¥á¥ó¥È¥¢¥¦¥È¤ò³°¤·¤Æ¡¢ATTRIBUTE¤òemployeeNumber¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥µ¡¼¥Ó¥¹¸ÄÊÌ¤Î¥í¥°¥¤¥óID¡§ &quot;&lt;!-- attribute ... --&gt;&quot;¤Î¥³¥á¥ó¥È¥¢¥¦¥È¤ò³°¤·¤Æ¡¢ATTRIBUTE¤òseciossLoginId;x-sys-&lt;¥µ¡¼¥Ó¥¹ID&gt;@&lt;¥Æ¥Ê¥ó¥ÈID&gt;
</p>
<p>
&nbsp;
</p>
<p>
LISM¤ÎÀßÄê¥Õ¥¡¥¤¥ë/opt/secioss/etc/lism.conf¤Ë¡¢¹¹¿·ÂÐ¾Ý¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£<br />
LISM¤ÎÀßÄêÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï¡¢LISM¤Î<a href="http://lism.sourceforge.jp/index.php?%A5%B9%A5%C8%A5%EC%A1%BC%A5%B8%A4%CE%C0%DF%C4%EA%B9%E0%CC%DC">¥µ¥¤¥È</a>¤ò¤´Í÷²¼¤µ¤¤¡£&nbsp;&nbsp;
</p>
<p>
SugarCRM¤òÎã¤È¤·¤ÆLISM¤ÎÀßÄê¤òÎã¼¨¤·¤Þ¤¹¡£&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>lism.conf</strong>
</p>
<hr />
<p>
&lt;config&gt;<br />
&nbsp; &lt;sync&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;data name=&quot;SP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncdn&gt;ou=People&lt;/syncdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncfilter&gt;(&amp;amp;(!(seciossAccountStatus=deleted))(&amp;amp;(objectClass=inetOrgPerson)(|(seciossAllowedService=sugarcrm-secioss.co.jp)(seciossAllowedService;x-perm-group=sugarcrm-secioss.co.jp))))&lt;/syncfilter&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;sn&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;givenName&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;sn;lang-ja;phonetic&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;givenName;lang-ja;phonetic&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/data&gt;<br />
&nbsp; &lt;/sync&gt;<br />
&nbsp; &lt;data name=&quot;SP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;o=SP&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;handler name=&quot;Rewrite&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;request&quot; match=&quot;createtimestamp: *([0-9]{4})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})Z&quot; substitution=&quot;createtimestamp: %1-%2-%3 %4:%5:%6&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;searchResult&quot; match=&quot;createtimestamp: *([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})&quot; substitution=&quot;createtimestamp: %1%2%3%4%5%6Z&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;request&quot; match=&quot;modifytimestamp: *([0-9]{4})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})Z&quot; substitution=&quot;modifytimestamp: %1-%2-%3 %4:%5:%6&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;searchResult&quot; match=&quot;modifytimestamp: *([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})&quot; substitution=&quot;modifytimestamp: %1%2%3%4%5%6Z&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/handler&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;storage name=&quot;SQL&quot; hash=&quot;MD5:hex&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_util.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_sugarcrm.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;dsn&gt;DBI:mysql:sugarcrm:localhost&lt;/dsn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;admin&gt;admin&lt;/admin&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;passwd&gt;secret&lt;/passwd&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;initquery&gt;set names utf8&lt;/initquery&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;delete&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=People&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;table&gt;users&lt;/table&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;Person&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;inetOrgPerson&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;seciossIamAccount&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;uid&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;uid&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;cn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;ifnull(concat(last_name, &#39; &#39;, first_name), last_name)&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;sn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;last_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;givenname&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;first_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;title&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;title&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;department&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;department&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;userpassword&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_hash&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;homephone&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_home&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;telephonenumber&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_work&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;mobile&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_mobile&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;facsimiletelephonenumber&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_fax&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;ipphone&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_other&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;street&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_street&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;l&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_city&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;st&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_state&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;c&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_country&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;postalcode&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_postalcode&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;createtimestamp&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;date_entered&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;modifytimestamp&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;date_modified&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;description&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;description&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;value type=&quot;function&quot;&gt;createGuid()&lt;/value&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;status&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;value type=&quot;constant&quot;&gt;Active&lt;/value&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;update users set status = &#39;Inactive&#39; where id = &#39;%o&#39;&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/storage&gt;<br />
&nbsp; &lt;/data&gt;<br />
&lt;/config&gt;
</p>
<hr />
<p>
&nbsp;
</p>
<p>
¼¡¤Ë¡¢&quot;C:\opt\secioss\var\www\cgi-bin\lismapi.conf&quot;¤ÎADMINID¡¢ADMINPW¤ò¤½¤ì¤¾¤ì´ÉÍý¼Ô¤Î¥¢¥«¥¦¥ó¥ÈÌ¾¡¢¥Ñ¥¹¥ï¡¼¥É¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>4. Æ°ºî³ÎÇ§</h3>
<p>
<strong>4.1 IDÆ±´ü¤Î³ÎÇ§</strong>
</p>
<p>
SeciossLink¤«¤éID¤Î¹¹¿·¥Ç¡¼¥¿¤ò¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÆ±´ü¤·¤Þ¤¹¡£<br />
¡¡# perl C:\opt\secioss\sbin\idsync sp
</p>
<p>
&nbsp;
</p>
<p>
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤¹¤ë¥Ç¡¼¥¿¤Î¹¹¿·¤Ï¹Ô¤ï¤º¤Ë¡¢¹¹¿·¥Ç¡¼¥¿¤Î³ÎÇ§¤Î¤ß¤·¤¿¤¤¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ¡¢&quot;C:\opt\secioss\var\lib\csv\user.csv&quot;¤ÎÆâÍÆ¤ò³ÎÇ§¤·¤Æ²¼¤µ¤¤¡£<br />
¡¡# perl C:\opt\secioss\sbin\idsync -n sp
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢º¹Ê¬¥Ç¡¼¥¿¤Î¥Á¥§¥Ã¥¯¤Î¤ß¹Ô¤¦¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
¡¡# perl C:\opt\secioss\sbin\idsync -r sp
</p>
<p>
&nbsp;
</p>
<p>
Àµ¾ï¤Ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤·¤ÆID¤ÎÆ±´ü¤¬¹Ô¤¨¤ë¤³¤È¤ò³ÎÇ§¤Ç¤­¤¿¤é¡¢¥¿¥¹¥¯¤Ë1»þ´Ö¤Ë1²ó &quot;perl C:\opt\secioss\sbin\idsync sp&quot;¤ò¼Â¹Ô¤¹¤ë¤è¤¦¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>4.2 ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Î³ÎÇ§</strong>
</p>
<p>
&quot;&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL&gt;/sso/autologin.php?sso_app=&lt;2.2¹à¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾&gt;&quot;¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¹¤ë¤³¤È¤ò³ÎÇ§¤·¤Æ²¼¤µ¤¤¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2011/09/secioss_identity_suite_cloud_e_4.html</link>
         <guid>http://www.secioss.co.jp/2011/09/secioss_identity_suite_cloud_e_4.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00500¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢</category>
        
        
         <pubDate>Fri, 09 Sep 2011 18:24:23 +0900</pubDate>
      </item>
            <item>
         <title><![CDATA[SaaS ·¿¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡Ö SeciossLink ¡×¡¢¡Ö¥×¥é¥¤¥Ù¡¼¥ÈCA Gl&eacute;as¡×¤ËÂÐ±þ]]></title>
         <description><![CDATA[<p>
<span style="font-size: 100%"><span style="color: #111111"><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'">³ô¼°²ñ¼Ò¥»¥·¥ª¥¹¡Ê</span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'">ËÜ¼Ò¡§ÅìµþÅÔÊ¸µþ¶è¡¢ÂåÉ½¼èÄùÌò¡§´Ø¸ý¡¡·°¡¢°Ê²¼¥»¥·¥ª¥¹¡Ë¤Ï<span>SaaS ·¿¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡Ö SeciossLink ¡×¡Ê°Ê²¼ SeciossLink ¡Ë¤¬¡¢³ô¼°²ñ¼ÒJCCH ¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¡ÊËÜ¼Ò¡§ÅìµþÅÔ¹ÓÀî¶è¡¢ÂåÉ½¼èÄùÌò¡§»³ÅÄ¸ø²ð¡¢°Ê²¼ JS3 ¡Ë¤Î</span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'">¥×¥é¥¤¥Ù¡¼¥ÈÇ§¾Ú¶ÉÀ½ÉÊ¤Ç¤¢¤ë¡Ö¥×¥é¥¤¥Ù¡¼¥È<span>CA Gl&eacute;as ¡Ê°Ê²¼¡¢Gl&eacute;as )¡×</span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'">¤ËÂÐ±þ¤·¤¿¤³¤È¤òÈ¯É½¤¤¤¿¤·¤Þ¤¹¡£</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">&nbsp;</span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"></span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">SeciossLink ¤Ï¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈÅý¹çID´ÉÍý¤ò¥»¥Ã¥È¤Ë¤·¤¿ SaaS ·¿¥µ¡¼¥Ó¥¹¤Ç¤¹¡£ Google Apps ¤ä Salsforce ¤Ê¤É¤Î¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤«¤é¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥É¡¢¼ÒÆâ¤Î¥ª¥ó¥×¥ì¥ß¥¹¥·¥¹¥Æ¥à¤Þ¤Ç¡¢Åý¹çÅª¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤È ID ´ÉÍý¤ò¹Ô¤¦¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£¤Þ¤¿¡¢Amazon Web Sservice ¤ä Nifty Cloud Service<span>&nbsp;</span>¤Ê¤É¤Î¥¯¥é¥¦¥É´Ä¶­¤Ë¤ª¤¤¤Æ¡¢¥¤¥ó¥¹¥¿¥ó¥¹¤Î Linux ¥¢¥«¥¦¥ó¥È¤òÅý¹ç´ÉÍý¤¹¤ë¤³¤È¤â¤Ç¤­¤Þ¤¹¡£</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">SeciossLink ¤Ï¡¢1 ¥æ¡¼¥¶¤¢¤¿¤ê´ðËÜÎÁ¶â ·î³Û 150 ±ß¤È¥·¥¹¥Æ¥àÏ¢·È¥ª¥×¥·¥ç¥óÎÁ¶â·î³Û 15 ±ß¡Ê1¥·¥¹¥Æ¥à¡Ë¤È¼ê·Ú¤ÊÎÁ¶âÀßÄê¤Ë²Ã¤¨¡¢Google Apps¡¦Salesforce ¤Ê¤É¤Î¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤òÈÎÇä¤¹¤ë»ö¶È¼Ô¤¬¥»¥Ã¥ÈÈÎÇä¤¹¤ë¤³¤È¤â²ÄÇ½¤Ç¤¹¡£</span></span></span>
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/pr_gleas_slink.jpg" alt="" title="¥·¥¹¥Æ¥à¥¤¥á¡¼¥¸" width="534" height="293" />
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">Gl&eacute;as ¤¬¡¢SeciossLink ¤ËÂÐ±þ¤·¤¿¤³¤È¤Ë¤è¤ê¡¢PC ¤ª¤è¤Ó iPhone / iPad ¤«¤é¡¢Google Apps ¡¦ Salesforce¤Ê¤É¤Î¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤Ë²Ã¤¨¡¢¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥É¡¢¼ÒÆâ¤Î¥ª¥ó¥×¥ì¥ß¥¹¥·¥¹¥Æ¥à¤Ê¤É¤Î½ÅÍ×¤Ê¼ÒÆâ¾ðÊó»ñ»º¤Ø¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÎºÝ¤Ë¡¢ÅÅ»Ò¾ÚÌÀ½ñ¤Ë¤è¤ë¸·³Ê¤ÊÇ§¾Ú¶¯²½¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤·¤¿¡£ÅÅ»Ò¾ÚÌÀ½ñ¤òÃ¼Ëö¤Ë¥¤¥ó¥Ý¡¼¥È¤¹¤ë¤³¤È¤ÇÃ¼Ëö¤ÎÇ§¾Ú¤ò¡¢ÅÅ»Ò¾ÚÌÀ½ñ¤ò USB ¥È¡¼¥¯¥ó¤ä IC ¥«¡¼¥É¤Ê¤É¤Î¥»¥­¥å¥ê¥Æ¥£¥Ç¥Ð¥¤¥¹¤Ë¥¤¥ó¥Ý¡¼¥È¤¹¤ë¤³¤È¤Ç¿Í¤ÎÇ§¾Ú¤ò¼Â¸½¤Ç¤­¤Þ¤¹¤Î¤Ç¡¢´ë¶È¤Î¥»¥­¥å¥ê¥Æ¥£¥Ý¥ê¥·¡¼¤Ë¹ç¤ï¤»¤Æ½ÀÆð¤ÊÇ§¾Ú¥Ý¥ê¥·¡¼¤òÀß·×¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£ Gl&eacute;as ¤Ï¡¢¥×¥é¥¤¥Ù¡¼¥ÈÇ§¾Ú¶É¤Î´ðËÜµ¡Ç½¤Ë²Ã¤¨¡¢¥»¥­¥å¥ê¥Æ¥£¥Ç¥Ð¥¤¥¹¤Î´ÉÍýµ¡Ç½¤ä¥¨¥ó¥É¥æ¡¼¥¶¤¬ÅÅ»Ò¾ÚÌÀ½ñ¤ò¥¤¥ó¥Ý¡¼¥È¤¹¤ë¤³¤È¤¬¤Ç¤­¤ë Web µ¡Ç½¤òÉ¸½à¤ÇÅëºÜ¤·¤Æ¤¤¤Þ¤¹¤Î¤Ç¡¢SeciossLink ¤È¥»¥Ã¥È¤ÇÍøÍÑ¤¤¤¿¤À¤¯¤³¤È¤Ç¥»¥­¥å¥¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó´Ä¶­¤ò¼ê·Ú¤Ë¹½ÃÛ¡¦±¿ÍÑ¤¤¤¿¤À¤±¤Þ¤¹¡£¤Þ¤¿¡¢Gl&eacute;as ¤È SeciossLink¤Ï¡¢º£²ó¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ç¤ÎÏ¢·È¤Ë²Ã¤¨¡¢¾­ÍèÅª¤Ë¤ÏÅý¹çID´ÉÍý¤ÎÏ¢·È¤Ë¤Ä¤¤¤Æ¤â¼Â¸½¤¹¤ë¤³¤È¤ò·×²è¤·¤Æ¤¤¤Þ¤¹¡£</span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">Gl&eacute;as¤Ï¡¢ºòÇ¯¤«¤é¹ñÆâ¥È¥Ã¥×¥·¥§¥¢¤Î¥¹¥Þ¡¼¥È¥Õ¥©¥ó¤Ç¤¢¤ë iPhone / iPad ¤Ø¤ÎÂÐ±þ¤ò³«»Ï¤¹¤ë¤È¤È¤â¤Ë¡¢ÈÎÇä¥Ñ¡¼¥È¥Ê¡¼¤È¤ÎÏ¢·È¥½¥ê¥å¡¼¥·¥ç¥ó¤Î³«È¯¤ËÀÑ¶ËÅª¤Ë¼è¤êÁÈ¤à¤³¤È¤Ç¡¢¥¹¥Þ¡¼¥È¥Õ¥©¥ó¤Ë´Ø¤¹¤ë´ë¶È¥Ë¡¼¥º¤ÎÇÄ°®¤ÈÂÐ±þ¤ËÅØ¤á¤Æ¤­¤Þ¤·¤¿¡£Ãæ¤Ç¤â¡¢´ë¶È¤Î´ÉÍý¼Ô¶ÈÌ³¤Î¸úÎ¨²½¤òÌÜÅª¤È¤·¤¿µ¡Ç½¤ª¤è¤Ó´ØÏ¢¥½¥ê¥å¡¼¥·¥ç¥ó¤Ï¡¢¤ªµÒÍÍ¤«¤é¤Î¥Ë¡¼¥º¤Ë´ð¤Å¤­³«È¯¡¦ÅëºÜ¤·¤¿¤³¤È¤Ç¹â¤¤É¾²Á¤ò¤¤¤¿¤À¤¤¤Æ¤¤¤Þ¤¹¡£</span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"></span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">¥»¥·¥ª¥¹ ¤Ï¡¢À½ÉÊ¡¦ÈÎÇä¥Ñ¡¼¥È¥Ê¡¼´ë¶È¤È¤ÎÏ¢·È¤Ë¤è¤ê¡¢<span>3 Ç¯´Ö¤ÇÌó 20 ¼Ò¤Ø¤Î Gl&eacute;as ¤È¤Î¥»¥Ã¥ÈÈÎÇä¤òÌÜ»Ø¤·¤Þ¤¹¡£</span></span></span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">¢¡³ô¼°²ñ¼Ò¥»¥·¥ª¥¹¤Ë¤Ä¤¤¤Æ</span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'; color: windowtext"><span style="font-size: 100%">³ô¼°²ñ¼Ò¥»¥·¥ª¥¹¤Ï¡¢¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤ò´ðÈ×¤È¤·¤¿¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡¦Åý¹ç<span>ID´ÉÍý¥½¥ê¥å¡¼¥·¥ç¥ó¤Î³«È¯¡¢ÈÎÇä¤ò¹Ô¤Ã¤Æ¤¤¤ë´ë¶È¤Ç¤¹¡£</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'; color: windowtext"><span style="font-size: 100%">SaaS·¿¥µ¡¼¥Ó¥¹¤Î¡ÖSeciossLink¡×°Ê³°¤Ë¤â¡¢¥ª¥ó¥×¥ì¥ß¥¹¥·¥¹¥Æ¥à¸þ¤±¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥ê¥å¡¼¥·¥ç¥ó¡ÖSecioss Access Manager¡×¡¢Åý¹çID´ÉÍý¥½¥ê¥å¡¼¥·¥ç¥ó¡ÖSecioss Identity Manager¡×¤ä³Ø½Ñ·Ï¤Ç¼ÂÀÓ¤ÎÂ¿¤¤¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥Õ¥È¥¦¥§¥¢Shibboleth¤ÎÆ³Æþ¥µ¡¼¥Ó¥¹¤òÄó¶¡¤·¤Æ¤¤¤Þ¤¹¡£</span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">¢¡³ô¼°²ñ¼Ò<span>JCCH ¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¤Ë¤Ä¤¤¤Æ</span></span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">³ô¼°²ñ¼Ò<span>JCCH ¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¤Ï¡¢ PKI ¡Ê¸ø³«¸°°Å¹æ´ðÈ×¡Ë¤òÍøÍÑ¤·¤¿À½ÉÊ³«È¯¡¦ÈÎÇä´ë¶È¤Ç¤¹¡£¼«¼Ò³«È¯¤Î¡Ö¥×¥é¥¤¥Ù¡¼¥È CA Gl&eacute;as ¡×¤òÃæ¿´¤Ë¡¢USB ¥È¡¼¥¯¥ó¤ä¥¹¥Þ¡¼¥È¥«¡¼¥É¤Ê¤É¤ÎÇ§¾Ú¥Ç¥Ð¥¤¥¹¤ÈÁÈ¤ß¹ç¤ï¤»¤¿¥Ó¥¸¥Í¥¹¤òÀÑ¶ËÅª¤ËÅ¸³«¤·¤Æ¤¤¤Þ¤¹¡£</span></span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">¥×¥é¥¤¥Ù¡¼¥È<span>CA Gl&eacute;as ¤Ç¤Ï¡¢¤ªµÒ¤µ¤Þ¼«¤é¤¬¾ÚÌÀ½ñ¤ÎÈ¯¹ÔÍ×µá¤ä¥À¥¦¥ó¥í¡¼¥É¤Ê¤É¤Î´ÉÍý¶ÈÌ³¤ò¼Â»Ü¤Ç¤­¤ë¥æ¡¼¥¶¿½¹þ²èÌÌ¤ò¿·¤¿¤ËÄÉ²Ã¤¹¤ë¤Ê¤É¡¢¥æ¡¼¥¶ÅÐÏ¿¶ÈÌ³¤ò´ÊÎ¬²½¤¹¤ë¤³¤È¤Ë¤è¤ê¡¢Ãæ¾®µ¬ÌÏ¤«¤é 10 Ëü¥æ¡¼¥¶¤òÄ¶¤¨¤ëÂçµ¬ÌÏ¤Ê¤ªµÒ¤µ¤Þ¤Î´Ä¶­¤Ë¤ª¤¤¤Æ¤â¡¢¤´ÍøÍÑ²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£</span></span></span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">¢¡ËÜ·ï¤Ë´Ø¤¹¤ëÌä¤¤¹ç¤»Àè</span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">³ô¼°²ñ¼Ò¥»¥·¥ª¥¹<br />
</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">E-Mail¡§<a href="mailto:sales@secioss.co.jp">sales@secioss.co.jp</a><br />
</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">TEL¡§03-6265-0448</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">FAX¡§03-6265-0448<br />
</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">URL¡§<a href="http://www.secioss.co.jp/">http://www.secioss.co.jp/</a></span></span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">³ô¼°²ñ¼Ò<span>JCCH ¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º<br />
</span></span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111; font-size: 100%">E-Mail¡§</span><a href="mailto:sales@jcch-sss.com"><span><span style="color: #004fb3; font-size: 100%">sales@jcch-sss.com</span></span></a><br />
</span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">TEL¡§03-5615-1020</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111"><span style="font-size: 100%">FAX¡§03-5604-1563<br />
</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="color: #111111; font-size: 100%">URL¡§</span><a href="http://www.jcch-sss.com/"><span><span style="color: #004fb3; font-size: 100%">http://www.jcch-sss.com/</span></span></a></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">&nbsp;</span></span></span>
</p>
<p>
&nbsp;
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">¢¡À½ÉÊ¤Î¾ÜºÙ</span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">¡¦</span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111"><span>SeciossLink<br />
</span></span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111"><a href="http://www.secioss.co.jp/2011/05/saas_secioss_federation.html">http://www.secioss.co.jp/2011/05/saas_secioss_federation.html</a></span></span></span>
</p>
<p>
<span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111">¡¦<span>Gl&eacute;as<br />
</span></span></span></span><span style="font-family: '£Í£Ó £Ð¥´¥·¥Ã¥¯'"><span style="font-size: 100%"><span style="color: #111111"><a href="http://www.jcch-sss.com/service/gleas">http://www.jcch-sss.com/service/gleas</a></span></span></span>
</p>
]]></description>
         <link>http://www.secioss.co.jp/2011/06/saas_seciosslink_ca_glas.html</link>
         <guid>http://www.secioss.co.jp/2011/06/saas_seciosslink_ca_glas.html</guid>
        
        
         <pubDate>Sun, 26 Jun 2011 17:00:43 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Identity Suite Cloud Edition SaaSÆ³Æþ</title>
         <description><![CDATA[<p>
Secioss Identity Suite Cloud Edition¤Ï¡¢¥¯¥é¥¦¥É¥³¥ó¥Ô¥å¡¼¥Æ¥£¥ó¥°´Ä¶­¤Ë¤ª¤¤¤ÆSAML 2.0¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤äSOAPÄÌ¿®¤Ë¤è¤ë¥¢¥«¥¦¥ó¥ÈÆ±´ü¤ò¥µ¥¤¥È´Ö¤Ç¼Â¸½¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
Secioss Identity Suite Cloud Edition¡Ê°Ê¹ßIdentity Suite Cloud¤È¤·¤Þ¤¹¡Ë¤òSaaS·¿¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÆ³Æþ¤¹¤ë¤³¤È¤Ç¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤·¤Æ°Ê²¼¤Îµ¡Ç½¤ò´ÊÃ±¤ËÄÉ²Ã¤¹¤ë¤³¤È¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</strong><br />
SAML¤ÎService Provider¤È¤·¤ÆÆ°ºî¤·¡¢SAML¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¤¤Þ¤¹¡£SaaS¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÏIdentity Suite Cloud¤ÎÂåÍýÇ§¾Úµ¡Ç½¤Ë¤è¤ê´ÊÃ±¤ËSAMLÇ§¾Úµ¡Ç½¤òÁÈ¤ß¹þ¤à¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>¥¢¥«¥¦¥ó¥ÈÆ±´ü</strong><br />
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥¢¥«¥¦¥ó¥È´ÉÍýÍÑSOAP API¤òÄó¶¡¤·¡¢SOAP·ÐÍ³¤Ç¤Î¥¢¥«¥¦¥ó¥È´ÉÍý¤äSaaS´Ö¤Ç¤Î¥¢¥«¥¦¥ó¥ÈÆ±´ü¤ò¼Â¸½¤·¤Þ¤¹¡£Identity Suite Cloud¤Ï¡¢SOAP API¤Ç¼õ¤±ÉÕ¤±¤¿¹¹¿·Í×µá¤ò¡¢LISM¤Ë¤è¤êSaaS¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤ØÈ¿±Ç¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
º£²ó¤ÏSaaS¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËIdentity Suite Cloud¤òSaaS¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÆ³Æþ¤·¤Æ¡¢Æ°ºî¸¡¾Ú¤ò¹Ô¤¦¤¿¤á¤ÎÊýË¡¤Ë¤Ä¤¤¤Æ²òÀâ¤·¤Þ¤¹¡£&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>¥ª¡¼¥×¥ó¥½¡¼¥¹¥×¥í¥¸¥§¥¯¥È</h5>
<p>
Identity Suite Cloud¤Ë¤Ä¤¤¤Æ¤Ï¡¢¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤È¤·¤ÆGPL¥é¥¤¥»¥ó¥¹¤Ë¤è¤ê¸ø³«¤·¤Æ¤¤¤Þ¤¹¡£<br />
¡¦¥×¥í¥¸¥§¥¯¥È¥µ¥¤¥È¡§<a href="http://sourceforge.jp/projects/secioss-auth/devel/">http://sourceforge.jp/projects/secioss-auth/</a><br />
¡¦¥á¡¼¥ê¥ó¥°¥ê¥¹¥È¡§<a href="http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users">http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users</a>
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>1. ¥¤¥ó¥¹¥È¡¼¥ë</h3>
<p>
Identity Suite Cloud SP¤Î¿ä¾©´Ä¶­¤Ï°Ê²¼¤Ë¤Ê¤ê¤Þ¤¹¡£<br />
¡¦OS¡§ CentOS 5¡¢RedHat Enterprise Linux 5<br />
¡¦Web¥µ¡¼¥Ð¡§ Apache 2.2
</p>
<p>
º£²ó¤Î¥¤¥ó¥¹¥È¡¼¥ë´Ä¶­¤È¤·¤Æ¤Ï¡¢Linux¤ÎCentOS 5¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h5>1.1&nbsp; É¬Í×¤Ê¥½¥Õ¥È¥¦¥§¥¢¤Î¥¤¥ó¥¹¥È¡¼¥ë</h5>
<p>
# yum install libtool-ltdl<br />
# yum install perl-LDAP<br />
# yum install perl-DBI<br />
# yum install perl-DBD-Pg<br />
# yum install perl-XML-LibXML<br />
# yum install perl-XML-Simple<br />
# yum install perl-TimeDate<br />
# yum install php-pear<br />
# yum install php-xml<br />
# yum install php-soap&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>1.2 Identity Suite Cloud SP</h5>
<p>
<a href="http://sourceforge.jp/projects/secioss-auth/releases/">http://sourceforge.jp/projects/secioss-auth/releases/</a>¤«¤ésecioss-idsuite-cloud-sp-2.0.x.tgz¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
secioss-idsuite-cloud-sp¥Ñ¥Ã¥±¡¼¥¸¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Þ¤¹¡£<br />
# tar zxvf secioss-idsuite-cloud-sp-2.0.x.tgz<br />
# cd secioss-idsuite-cloud-sp-2.0.x<br />
# ./install.sh install
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢¥Ñ¥Ã¥±¡¼¥¸¤ò¥¢¥Ã¥×¥Ç¡¼¥È¤¹¤ë¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# ./install.sh update
</p>
<p>
&nbsp;
</p>
<h5>1.3 ¥í¥°¤ÎÀßÄê</h5>
<p>
¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈIDÆ±´ü¤Î¥í¥°¤Ï¡¢¤½¤ì¤¾¤ìsyslog¤Îlocal5¡¢local4¤Ë½ÐÎÏ¤·¤Þ¤¹¡£<br />
/etc/syslog.conf¤Ë°Ê²¼¤ÎÀßÄê¤òÄÉµ­¤·¤Æ¡¢syslog¥Ç¡¼¥â¥ó¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£
</p>
<hr />
<p>
local5.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; -/var/log/auth.log<br />
local4.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; -/var/log/lism.log
</p>
<hr />
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>2. ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h3>
<h5>2.1 SAMLÇ§¾Ú¤ÎÀßÄê</h5>
<p>
SAMLÇ§¾Ú¡ÊSP¡Ë¤ÎÀßÄê¤ò¹Ô¤¦¤Ë¤Ï¡¢°Ê²¼¤Î¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# ./config.sh sso<br />
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¡§&nbsp;¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÂÐ¾Ý¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL<br />
¥»¥Ã¥·¥ç¥ó¤Î¥¯¥Ã¥­¡¼Ì¾¡§¡¡¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥»¥Ã¥·¥ç¥ó¤òÊÝ»ý¤¹¤ë¥¯¥Ã¥­¡¼Ì¾
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤ËSAMLÇ§¾ÚÍÑ¤ÎÈëÌ©¸°¤È¸ø³«¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
°Ê²¼¤ÏOpenSSL¤Ë¤è¤ëÈëÌ©¸°¤È¸ø³«¸°¤ÎºîÀ®¼ê½ç¤Ç¤¹¡£<br />
­¡&nbsp;ÈëÌ©¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
# cd /etc/pki/tls/certs<br />
# make test.key<br />
ÈëÌ©¸°¤«¤é¥Ñ¥¹¥ï¡¼¥É¤òºï½ü¤·¤Þ¤¹¡£<br />
# openssl rsa -in test.key -out test.key
</p>
<p>
­¢&nbsp;¸ø³«¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
# make test.crt<br />
Country Name (2 letter code) [GB]:JP<span style="color: #00ff00">¡¡&larr;¡¡¹ñÌ¾</span><br />
State or Province Name (full name) [Berkshire]:Tokyo<span style="color: #00ff00">¡¡&larr;¡¡ÅÔÆ»ÉÜ¸©Ì¾</span><br />
Locality Name (eg, city) [Newbury]:Bunkyo<span style="color: #00ff00">¡¡&larr;¡¡»Ô¶èÄ®Â¼Ì¾</span><br />
Organization Name (eg, company) [My Company Ltd]:TEST, Inc<span style="color: #00ff00">¡¡&larr;¡¡²ñ¼ÒÌ¾</span><br />
Organizational Unit Name (eg, section) []:<span style="color: #00ff00">¡¡&larr;¡¡¶õENTER</span><br />
Common Name (eg, your name or your server&#39;s hostname) []:sp.test.co.jp<span style="color: #00ff00">¡¡&larr;¡¡¥Û¥¹¥ÈÌ¾</span><br />
Email Address []:admin@test.co.jp<span style="color: #00ff00">¡¡&larr;¡¡´ÉÍý¼Ô¥á¡¼¥ë¥¢¥É¥ì¥¹</span>
</p>
<p>
&nbsp;
</p>
<p>
ÈëÌ©¸°¤Ï¡¢&quot;/usr/share/simplesamlphp/cert/PrivateKey.pem&quot;¤Ë¥³¥Ô¡¼¤·¤Æ¡¢½êÍ­¼Ô¤òapache¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
# chown apache /usr/share/simplesamlphp/cert/PrivateKey.pem
</p>
<p>
&nbsp;
</p>
<p>
¸ø³«¸°¤Ï¡¢<a href="mailto:idsuite@secioss.co.jp">idsuite@secioss.co.jp</a>°¸¤Ë°Ê²¼¤ÎÆâÍÆ¤È¤È¤â¤Ë¥á¡¼¥ë¤ÇÁ÷¿®¤·¤Æ¡¢Ç§¾Ú¥µ¡¼¥Ð¤ËÂÐ¤¹¤ëÀÜÂ³³ÎÇ§¤Î¿½ÀÁ¤ò¹Ô¤¤¤Þ¤¹¡£<br />
¡¦»áÌ¾<br />
¡¦²ñ¼ÒÌ¾<br />
¡¦¥É¥á¥¤¥óÌ¾¡Ê¥Æ¥Ê¥ó¥ÈID¤Ë¤Ê¤ê¤Þ¤¹¡Ë<br />
¡¦¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¡ÊÎã¡§ https://sp.example.com/app/¡Ë<br />
¡¦¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾¡Ê±Ñ¿ô»ú¤Î¤ß¡¡Îã¡§ SugarCRM¡Ë<br />
¡¦¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¥í¥°¥¤¥ó¤¹¤ëID¤Î·Á¼°¡Ê¥æ¡¼¥¶ID¡¢¤Þ¤¿¤Ï¥á¡¼¥ë¥¢¥É¥ì¥¹¡Ë<br />
¡¦´ÉÍý¼Ô¥¢¥«¥¦¥ó¥ÈÌ¾¡Ê±Ñ¿ô»ú¤Î¤ß¡Ë<br />
¡¦¥Ñ¥¹¥ï¡¼¥É¡ÊÇ¤°Õ¡Ë<br />
¡¦»ÈÍÑÌÜÅª
</p>
<p>
&nbsp;
</p>
<p>
ºÇ¸å¤ËApache¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£<br />
# /etc/init.d/httpd restart
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>2.2 ÂåÍýÇ§¾Ú¤ÎÀßÄê</strong>
</p>
<p>
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¼«Æ°¤Ç¥í¥°¥¤¥ó¤¹¤ë¤¿¤á¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£
</p>
<p>
ÀßÄê¥Õ¥¡¥¤¥ë¤Ï¡¢&quot;/var/www/conf/&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾¡ÊÁ´¤Æ¾®Ê¸»ú¡Ë&gt;.ini&quot;¤È¤·¤ÆºîÀ®¤·¤Æ²¼¤µ¤¤¡£<br />
°Ê²¼¤ÏSugarCRMÍÑ¤ÎÀßÄêÎã¤Ç¤¹¡£
</p>
<hr />
<p>
[url]<br />
login = &quot;https://sp.example.com/SugarCE/index.php?action=Login&amp;module=Users&quot;<br />
back = &quot;/SugarCE/&quot;
</p>
<p>
&nbsp;
</p>
<p>
[postName]<br />
username = user_name<br />
password = user_password
</p>
<p>
&nbsp;
</p>
<p>
[postData]<br />
module = Users<br />
action = Authenticate<br />
return_module = Users<br />
return_action = Login<br />
cant_login = &quot;&quot;<br />
login_module = &quot;&quot;<br />
login_action = &quot;&quot;<br />
login_record = &quot;&quot;<br />
login_theme = Sugar<br />
login_language = ja<br />
login_button = &quot;&nbsp; ¥í¥°¥¤¥ó&nbsp; &quot;
</p>
<hr />
<p>
&nbsp;
</p>
<table border="1">
	<tbody>
		<tr>
			<td rowspan="2">
			<p>
			url
			</p>
			</td>
			<td>
			<p>
			login
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó¤¹¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL
			</p>
			</td>
		</tr>
		<tr>
			<td>
			<p>
			back
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó¸å¤ËÉ½¼¨¤¹¤ë²èÌÌ¤ÎURL
			</p>
			</td>
		</tr>
		<tr>
			<td rowspan="2">
			<p>
			postName
			</p>
			</td>
			<td>
			<p>
			username
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó»þ¤ËPOST¤¹¤ë¥æ¡¼¥¶Ì¾¤ÎÊÑ¿ôÌ¾
			</p>
			</td>
		</tr>
		<tr>
			<td>
			<p>
			password
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó»þ¤ËPOST¤¹¤ë¥Ñ¥¹¥ï¡¼¥É¤ÎÊÑ¿ôÌ¾
			</p>
			</td>
		</tr>
	</tbody>
</table>
<p>
&nbsp;
</p>
<p>
[postData]¤Ë¤Ï¡¢POST¤¹¤ë¥Ç¡¼¥¿¤ÎÊÑ¿ôÌ¾¤ÈÃÍ¤ÎÁÈ¤ß¹ç¤ï¤»¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£&nbsp;&nbsp;&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>2.3 ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Î³ÎÇ§</strong>
<p>
&quot;&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL&gt;/sso/autologin.php?sso_app=&lt;2.2¹à¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾&gt;&quot;¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¹¤ë¤³¤È¤ò³ÎÇ§¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>3. IDÆ±´ü</h3>
<h5>3.1&nbsp; IDÆ±´ü¤ÎÀßÄê</h5>
<p>
Identity Suite Cloud¤Ï¡¢LISM¤Ë¤è¤Ã¤ÆÄê´üÅª¤ËSeciosLink¤«¤é¹¹¿·¥Ç¡¼¥¿¤ò¼èÆÀ¤·¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤äLDAP¤Î¥¢¥«¥¦¥ó¥È¤ò¹¹¿·¤·¤Þ¤¹¡£
</p>
<p>
ºÇ½é¤Ë¡¢°Ê²¼¤Î¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# ./config.sh idm<br />
¥Æ¥Ê¥ó¥ÈID¡§¡¡SeciossLink¤Î¥Æ¥Ê¥ó¥ÈID<br />
¥µ¡¼¥Ó¥¹ID¡§¡¡2.3¹à¤Î¥µ¡¼¥Ó¥¹ID¡Ê¥Æ¥Ê¥ó¥ÈID¤Ï½ü¤¯¡Ë<br />
´ÉÍý¼Ô¥¢¥«¥¦¥ó¥ÈÌ¾¡§¡¡SeciossLink¤Î´ÉÍý¼Ô¥¢¥«¥¦¥ó¥ÈÌ¾<br />
´ÉÍý¼Ô¥Ñ¥¹¥ï¡¼¥É¡§¡¡´ÉÍý¼Ô¥¢¥«¥¦¥ó¥È¤Î¥Ñ¥¹¥ï¡¼¥É<br />
¥æ¡¼¥¶ID¤ÎÂ°À­ [1.¥æ¡¼¥¶ID|2.¥æ¡¼¥¶ID@¥Æ¥Ê¥ó¥ÈID|3.¥á¡¼¥ë¥¢¥É¥ì¥¹|4.¼Ò°÷ÈÖ¹æ|5.¥µ¡¼¥Ó¥¹¸ÄÊÌ¤Î¥í¥°¥¤¥óID]¡§¡¡ IDÆ±´üÂÐ¾Ý¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥æ¡¼¥¶ID¤Ë»ÈÍÑ¤¹¤ëÂ°À­¤òÈÖ¹æ¤Ç»ØÄê
</p>
<p>
&nbsp;
</p>
<p>
LISM¤ÎÀßÄê¥Õ¥¡¥¤¥ëlism.conf¤Ë¤Ï¡¢¹¹¿·ÂÐ¾Ý¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¡¢¤Þ¤¿¤ÏLDAP¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£<br />
LISM¤ÎÀßÄêÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï¡¢LISM¤Î<a href="http://lism.sourceforge.jp/index.php?%A5%B9%A5%C8%A5%EC%A1%BC%A5%B8%A4%CE%C0%DF%C4%EA%B9%E0%CC%DC">¥µ¥¤¥È</a>¤ò¤´Í÷²¼¤µ¤¤¡£&nbsp;&nbsp;
</p>
<p>
SugarCRM¤òÎã¤È¤·¤ÆLISM¤ÎÀßÄê¤òÎã¼¨¤·¤Þ¤¹¡£&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>lism.conf</strong>
</p>
<hr />
<p>
&lt;config&gt;<br />
&nbsp; &lt;sync&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;data name=&quot;SP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncdn&gt;ou=People&lt;/syncdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncfilter&gt;(&amp;amp;(!(seciossAccountStatus=deleted))(&amp;amp;(seciossAllowedService=sp01)(objectClass=inetOrgPerson)))&lt;/syncfilter&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;sn&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;givenName&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;sn;lang-ja;phonetic&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;givenName;lang-ja;phonetic&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;mail&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/data&gt;<br />
&nbsp; &lt;/sync&gt;<br />
&nbsp; &lt;data name=&quot;SP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;o=SP&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;handler name=&quot;Rewrite&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;request&quot; match=&quot;createtimestamp: *([0-9]{4})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})Z&quot; substitution=&quot;createtimestamp: %1-%2-%3 %4:%5:%6&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;searchResult&quot; match=&quot;createtimestamp: *([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})&quot; substitution=&quot;createtimestamp: %1%2%3%4%5%6Z&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;request&quot; match=&quot;modifytimestamp: *([0-9]{4})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})Z&quot; substitution=&quot;modifytimestamp: %1-%2-%3 %4:%5:%6&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;searchResult&quot; match=&quot;modifytimestamp: *([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})&quot; substitution=&quot;modifytimestamp: %1%2%3%4%5%6Z&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/handler&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;storage name=&quot;SQL&quot; hash=&quot;MD5:hex&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_util.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_sugarcrm.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;dsn&gt;DBI:mysql:sugarcrm:localhost&lt;/dsn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;admin&gt;admin&lt;/admin&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;passwd&gt;secret&lt;/passwd&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;initquery&gt;set names utf8&lt;/initquery&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;delete&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=People&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;table&gt;users&lt;/table&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;Person&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;inetOrgPerson&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;seciossIamAccount&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;uid&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;uid&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;cn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;ifnull(concat(last_name, &#39; &#39;, first_name), last_name)&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;sn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;last_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;givenname&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;first_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;title&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;title&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;department&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;department&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;userpassword&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_hash&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;homephone&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_home&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;telephonenumber&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_work&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;mobile&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_mobile&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;facsimiletelephonenumber&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_fax&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;ipphone&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_other&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;street&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_street&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;l&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_city&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;st&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_state&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;c&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_country&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;postalcode&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_postalcode&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;createtimestamp&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;date_entered&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;modifytimestamp&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;date_modified&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;description&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;description&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;mail&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;email_address&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;fromtbls&gt;email_addresses,email_addr_bean_rel&lt;/fromtbls&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;joinwhere&gt;email_addr_bean_rel.bean_id = users.id and email_addr_bean_rel.email_address_id = email_addresses.id&lt;/joinwhere&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;insert into email_addresses values(&#39;%{createGuid()}&#39;, &#39;%a&#39;, upper(&#39;%a&#39;), 0, 0, now(), now(), 0)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;set @paddr=if((select count(*) from email_addr_bean_rel where bean_id = &#39;%o&#39;), 0, 1)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;insert into email_addr_bean_rel values(&#39;%{createGuid()}&#39;, (select id from email_addresses where email_addr<br />
ess = &#39;%a&#39;), &#39;%o&#39;, &#39;Users&#39;, @paddr, if(@paddr, 0, 1), now(), now(), 0)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;set @mailid=(select id from email_addresses where email_address = &#39;%a&#39; and id in (select email_address_id from email_addr_bean_rel where bean_id = &#39;%o&#39;))&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;delete from email_addresses where id = @mailid&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;delete from email_addr_bean_rel where bean_id = &#39;%o&#39; and email_address_id = @mailid&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;manager&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oname&gt;User&lt;/oname&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;where&gt;id = (select reports_to_id from users where id = &#39;%o&#39;)&lt;/where&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;update users set reports_to_id = &#39;%a&#39; where id = &#39;%o&#39;&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;update users set reports_to_id = null where id = &#39;%o&#39;&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;value type=&quot;function&quot;&gt;createGuid()&lt;/value&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;status&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;value type=&quot;constant&quot;&gt;Active&lt;/value&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;update users set status = &#39;Inactive&#39; where id = &#39;%o&#39;&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;insert into user_preferences values(&#39;%{createGuid()}&#39;, &#39;global&#39;, 0, now(), now(), &#39;%o&#39;, &#39;%{encode_base64(getFileContents(&quot;/opt/secioss/etc/sugarcrm-userpref.txt&quot;), &quot;&quot;)}&#39;)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/storage&gt;<br />
&nbsp; &lt;/data&gt;<br />
&lt;/config&gt;
</p>
<hr />
<p>
ÀßÄê¤Î³ÎÇ§¤Ï¡¢LISM¥µ¡¼¥Ð¤Î¥Ç¡¼¥â¥ó¤òµ¯Æ°¤·¤Æ¡¢¥Ç¡¼¥¿¤Î¸¡º÷¤ä¹¹¿·¤òLISM¤ËÂÐ¤·¤Æ¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
¥Ç¡¼¥â¥ó¤òµ¯Æ°¤¹¤ë¾ì¹ç¤Ï¡¢°ì»þÅª¤Ë&quot;&lt;oc&gt;seciossIamAccount&lt;/oc&gt;&quot;¤Î¹Ô¤ò¥³¥á¥ó¥È¥¢¥¦¥È¤·¤Æ²¼¤µ¤¤¡£<br />
# cp /opt/secioss/etc/openldap/slapd.conf.lism /opt/secioss/etc/openldap/slapd.conf<br />
# /opt/secioss/sbin/slapd -h ldap://:3890 -u ldap -d256<br />
# ldapseach -H ldap://:3890 -b &#39;dc=lism,dc=com&#39;&nbsp; # ¸¡º÷¤Î¾ì¹ç
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>3.2 IDÆ±´ü¤Î³ÎÇ§</strong>
</p>
<p>
<a href="https://slink.secioss.com/tenantadmin/">https://slink.secioss.com/tenantadmin/</a>¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢´ÉÍý¼Ô¥¢¥«¥¦¥ó¥È¤Ç¥í¥°¥¤¥ó¤·¤Þ¤¹¡£<br />
º¸Â¦¥á¥Ë¥å¡¼¤Î¥ê¥ó¥¯¤«¤éID´ÉÍý¤Ë¥¢¥¯¥»¥¹¤·¤Æ²¼¤µ¤¤¡£<br />
¥æ¡¼¥¶¤Î&rdquo;¿·µ¬ÅÐÏ¿&rdquo;¤ò¥¯¥ê¥Ã¥¯¤·¤Æ¡¢¿·µ¬ÅÐÏ¿²èÌÌ¤«¤é¡¢µö²Ä¤¹¤ë¥µ¡¼¥Ó¥¹¤Ë¼«¿È¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤òÁªÂò¤·¤Æ¡¢ÅÐÏ¿¤ò¹Ô¤¤¤Þ¤¹¡£<br />
¿·µ¬ÅÐÏ¿¤ÎÀµ¾ï½ªÎ»¸å¡¢¥æ¡¼¥¶¤Î¸¡º÷¥á¥Ë¥å¡¼¤Î&rdquo;¥·¥¹¥Æ¥à&rdquo;¤«¤é¼«¿È¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤òÁªÂò¤·¤Æ¡¢¸¡º÷¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£ÅÐÏ¿¤·¤¿¥æ¡¼¥¶¤¬¸¡º÷·ë²Ì¤ËÉ½¼¨¤µ¤ì¤ì¤Ð¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ØÀµ¾ï¤Ë¥æ¡¼¥¶¤¬Æ±´ü¤µ¤ì¤Æ¤¤¤Þ¤¹¡£
</p>
<p>
Àµ¾ï¤ËÆ±´ü¤µ¤ì¤Æ¤¤¤Ê¤¤¾ì¹ç¤Ï¡¢¾åÉô¤Î¥á¥Ë¥å¡¼¤Î¥í¥°¤ò¥¯¥ê¥Ã¥¯¤·¤Æ¡¢ID´ÉÍý¤Î¥í¥°¤ò¸¡º÷¤·¤Æ¥¨¥é¡¼¥á¥Ã¥»¡¼¥¸¤ò³ÎÇ§¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/idm-portal.jpg" alt="ID´ÉÍý" width="512" height="371" />
</p>]]></description>
         <link>http://www.secioss.co.jp/2011/05/secioss_identity_suite_cloud_e_3.html</link>
         <guid>http://www.secioss.co.jp/2011/05/secioss_identity_suite_cloud_e_3.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00201¥½¥ê¥å¡¼¥·¥ç¥ó</category>
        
        
         <pubDate>Sun, 08 May 2011 23:55:27 +0900</pubDate>
      </item>
            <item>
         <title>SaaS·¿¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó/Åý¹çID´ÉÍý SeciossLink</title>
         <description><![CDATA[<p>
SeciossLink¤Ï¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈÅý¹çID´ÉÍý¤ò¥»¥Ã¥È¤Ë¤·¤¿SaaS·¿¥µ¡¼¥Ó¥¹¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
Google Apps¤äSalsforceÅù¡¢Â¾¤ÎSaaS¥µ¡¼¥Ó¥¹¤«¤é¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥É¤ä¼ÒÆâ¤Î¥ª¥ó¥×¥ì¥ß¥¹¤Î¥·¥¹¥Æ¥à¤Þ¤Ç¡¢Åý¹çÅª¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈID´ÉÍý¤ò¹Ô¤¦¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£<br />
¤µ¤é¤Ë¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥óÏ¢·ÈÍÑ¤Î¥½¥Õ¥È¥¦¥§¥¢¡ÖSecioss Identity Suite Cloud Edition SP¡×¤òÆ³Æþ¤¤¤¿¤À¤¯¤³¤È¤Ç¡¢Google Gadget¤È¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥É¤ä¥ª¥ó¥×¥ì¥ß¥¹¤Î¥·¥¹¥Æ¥à¤È¤Î´Ö¤Ç¥Ç¡¼¥¿¤ÎÏ¢·È¤¬²ÄÇ½¤È¤Ê¤ê¡¢Google Apps¤Î¥Ý¡¼¥¿¥ë¤«¤éGadget¤Ë¤è¤ê¡¢³Æ¥·¥¹¥Æ¥à¤Î¥Ç¡¼¥¿¤ò»²¾È¡¢¹¹¿·¤¹¤ë¤³¤È¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢AWS¡ÊAmazon Web Services¡Ë¤äNifty CloudÅù¤Î¥¯¥é¥¦¥É´Ä¶­¤Ç¡¢Â¿¿ô¤Î¥¤¥ó¥¹¥¿¥ó¥¹¤ò´ÉÍý¤¹¤ëºÝ¤ÎLinux¥¢¥«¥¦¥ó¥È¤È¥í¥°¥¤¥óÍÑ¤Î¸ø³«¸°¤ò°ì¸µ´ÉÍý¤¹¤ë¤³¤È¤â²ÄÇ½¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¥µ¡¼¥Ó¥¹¤Ï¡¢£±¥æ¡¼¥¶¤«¤éÍøÍÑ²ÄÇ½¤Ç¡¢£±¥æ¡¼¥¶¤Î´ðËÜÎÁ¶â·î³Û150±ß¤«¤é¤ÈÄã¥³¥¹¥È¤Ç¤Î¤´ÍøÍÑ¤¬²ÄÇ½¤Ç¤¹¡£¥³¥¹¥ÈÅª¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤äÅý¹çID´ÉÍý¤ÎÆ³Æþ¤¬Æñ¤·¤«¤Ã¤¿Ãæ¾®´ë¶ÈÍÍ¤Ë¤â¡¢¤´ÍøÍÑ¤·¤ä¤¹¤¤²Á³Ê¤È¤Ê¤Ã¤Æ¤ª¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
SeciossLink¤Ï¡¢AWS¾å¤Ç±¿ÍÑ¤·¤Æ¤ª¤ê¡¢¾®µ¬ÌÏ¤«¤éÂçµ¬ÌÏ¤Ê¤ªµÒÍÍ¤Þ¤Ç½ÀÆð¤ËÂÐ±þ²ÄÇ½¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>µ¡Ç½</h3>
<h4>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h4>
<ul>
	<li>
	<p>
	¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó<br />
	SAML¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤Ç¤¹¡£SAML¤ËÌ¤ÂÐ±þ¤Î¥·¥¹¥Æ¥à¤Ë¤Ä¤¤¤Æ¤Ï¡¢Secioss Identity Suite&nbsp;Cloud Edition SP¤ò³Æ¥·¥¹¥Æ¥à¤ËÆ³Æþ¤¤¤¿¤À¤¯¤³¤È¤Ç¡¢¥·¥¹¥Æ¥àÂ¦¤Î¥«¥¹¥¿¥Þ¥¤¥º¤ò¹Ô¤¦¤³¤È¤Ê¤¯¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	ÂåÍýÇ§¾Ú<br />
	ÂåÍýÇ§¾Ú¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤Ç¤¹¡£SAMLÌ¤ÂÐ±þ¤ÎSaaS¡¢ASPÅù¡¢Secioss Identity Suite&nbsp;Cloud Edition¤òÆ³Æþ¤¹¤ë¤³¤È¤¬º¤Æñ¤Ê¥·¥¹¥Æ¥à¤Ë¤Ä¤¤¤Æ¤â¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥¹¥Þ¡¼¥È¥Õ¥©¥ó¡¢PC¡¢·ÈÂÓÅÅÏÃ¤ÎÃ¼ËöÇ§¾Ú<br />
	¥¹¥Þ¡¼¥È¥Õ¥©¥ó¡ÊAndroid¡¢iPhone¡Ë¡¢·ÈÂÓÅÅÏÃ¡¢PC¤Ë´Ø¤·¤Æµö²Ä¤µ¤ì¤¿¥æ¡¼¥¶¤ÎÃ¼Ëö¤Î¤ß¥í¥°¥¤¥ó¤òµö²Ä¤·¤Þ¤¹¡£Ç§¾Ú¥ë¡¼¥ëµ¡Ç½¤ÈÁÈ¤ß¹ç¤ï¤»¤ë¤³¤È¤Ç¡¢¥µ¡¼¥Ó¥¹¤òÍøÍÑ¤Ç¤­¤ë¥¹¥Þ¡¼¥È¥Õ¥©¥ó¤ÎÀ©¸Â¤ä¡¢¼Ò³°¤«¤é¥Î¡¼¥ÈPC¤Ê¤É¤Ç¥µ¡¼¥Ó¥¹¤òÍøÍÑ¤¹¤ëºÝ¤ÎPC¤ÎÀ©¸Â¤ò¹Ô¤¦¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Ç§¾Ú¥ë¡¼¥ë<br />
	Ç§¾Ú¤Ë¤Ï¡¢ID/¥Ñ¥¹¥ï¡¼¥ÉÇ§¾Ú¤ÎÂ¾¤Ë¼ÒÆâ¤ÎActive Directory¤Ë¤è¤ëÇ§¾Ú¤òÁªÂò¤¹¤ë¤³¤È²ÄÇ½¤Ç¤¹¡£Active DirectoryÇ§¾Ú¤ò¹Ô¤¦¾ì¹ç¡¢¼ÒÆâ¤Ë¥ª¡¼¥×¥ó¥½¡¼¥¹¤ÎSecioss Identity Suite Cloud Edition&nbsp; IdP¤òÆ³Æþ¤¤¤¿¤À¤­¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥Ñ¥¹¥ï¡¼¥É¥Ý¥ê¥·¡¼<br />
	¥Ñ¥¹¥ï¡¼¥É¥Ý¥ê¥·¡¼¤ÎÀßÄê¤¬²ÄÇ½¤Ç¤¹¡£¥Ñ¥¹¥ï¡¼¥É¤ÎÊ¸»úÎó¤äÍúÎò¿ô¡¢Í­¸ú´ü´Ö¡¢¤½¤·¤ÆÇ§¾Ú¼ºÇÔ»þ¤Î¥¢¥«¥¦¥ó¥È¥í¥Ã¥¯¤òÀßÄê¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£&nbsp;
	</p>
	</li>
	<li>
	<p>
	¥¢¥¯¥»¥¹À©¸æ<br />
	¥æ¡¼¥¶¡¢¥°¥ë¡¼¥×¡¢Ç§¾ÚÊý¼°¡¢¥¯¥é¥¤¥¢¥ó¥È¤ÎIP¥¢¥É¥ì¥¹¡¢»þ´ÖÂÓ¤Ë¤è¤ë¥¢¥¯¥»¥¹À©¸æ¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥í¥°¥¤¥óÍúÎò<br />
	¥æ¡¼¥¶¤Î¥í¥°¥¤¥ó¡¢¥í¥°¥¢¥¦¥È¡¢Google Apps¤äSalesforce¤Ø¤Î¥í¥°¥¤¥ó¤Ë´Ø¤¹¤ë¥í¥°¤òWeb¤«¤é¸¡º÷¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h4>Åý¹çID´ÉÍý</h4>
<ul>
	<li>
	<p>
	IDÆ±´ü<br />
	Google Apps¤äSalesforceÅù¤ÎSaaS¥µ¡¼¥Ó¥¹¤ä¥ª¥ó¥×¥ì¥ß¥¹¤Î¥·¥¹¥Æ¥à¤ÈID¤ÎÆ±´ü¤ò¹Ô¤¦¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£¥æ¡¼¥¶Ã±°Ì¤ÇID¤ÎÆ±´üÂÐ¾Ý¤È¤¹¤ë¥·¥¹¥Æ¥à¤ò»ØÄê¤¹¤ë¤³¤È¤â¤Ç¤­¤Þ¤¹¡£<br />
	¥ª¥ó¥×¥ì¥ß¥¹¤Î¥·¥¹¥Æ¥à¤Ë¤Ä¤¤¤Æ¤Ï¡¢³Æ¥·¥¹¥Æ¥à¤ËSecioss Identity Suite Cloud Edition SP¤òÆ³Æþ¤¤¤¿¤À¤­¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Active DirectoryÏ¢·È<br />
	¼ÒÆâ¤ÎActive Directory¤«¤éID¤òÆ±´ü¤¹¤ë¤³¤È¤â²ÄÇ½¤Ç¤¹¡£<br />
	¤½¤Î¾ì¹ç¡¢¼ÒÆâ¤ËSecioss Identity Suite Cloud Edition IdP¤òÆ³Æþ¤¤¤¿¤À¤­¤Þ¤¹¡£&nbsp;&nbsp;
	</p>
	</li>
	<li>
	<p>
	LDAPÏ¢·È¡Ê¸ø³«¸°´ÉÍý¡Ë<br />
	AWS¡¢Nifty CloudÅù¤Î¥¯¥é¥¦¥É´Ä¶­¤ÎLinux¥¢¥«¥¦¥ó¥È¤Èssh¥í¥°¥¤¥óÍÑ¤Î¸ø³«¸°¤òLDAP¤Ë¤è¤ê°ì¸µ´ÉÍý¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥æ¡¼¥¶¥»¥ë¥Õ¥µ¡¼¥Ó¥¹<br />
	¥æ¡¼¥¶¥»¥ë¥Õ¥µ¡¼¥Ó¥¹¤È¤·¤Æ¡¢¥æ¡¼¥¶¤Ë¤è¤ë¥Ñ¥¹¥ï¡¼¥ÉÊÑ¹¹¡¢ssh¥í¥°¥¤¥óÍÑ¸ø³«¸°¤ÎÅÐÏ¿¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¹¹¿·ÍúÎò<br />
	SeciossLink¤Î¥æ¡¼¥¶¡¢¥°¥ë¡¼¥×¤À¤±¤Ç¤Ê¤¯¡¢Google Apps¤äSalesforceÅù¤Î³Æ¥µ¡¼¥Ó¥¹¤Î¥æ¡¼¥¶¡¢¥°¥ë¡¼¥×¤ËÂÐ¤¹¤ë¹¹¿·¤Î¥í¥°¤òWeb¤«¤é¸¡º÷¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h4>¥¢¥×¥ê¥±¡¼¥·¥ç¥óÏ¢·È</h4>
<ul>
	<li>
	<p>
	Google GadgetÏ¢·È<br />
	Secioss Identity Suite&nbsp;Cloud Edition SP¤ò³Æ¥·¥¹¥Æ¥à¤ËÆ³Æþ¤¤¤¿¤À¤¯¤³¤È¤Ç¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥óÂ¦¤Î¥«¥¹¥¿¥Þ¥¤¥º¤ò¹Ô¤¦¤³¤È¤Ê¤¯¡¢2-legged OAuth¤Ë¤è¤ê¡¢Google Gadget¤È¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎÏ¢·È¤¬²ÄÇ½¤È¤Ê¤ê¡¢Google Apps¤Î¥Ý¡¼¥¿¥ë²èÌÌ¤«¤é¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¤ò»²¾È¡¢¹¹¿·¤¹¤ë¤³¤È¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h3>¥·¥¹¥Æ¥à¹½À®</h3>
<p>
<img src="http://www.secioss.co.jp/images/saas01.jpg" alt="" />
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>¥µ¡¼¥Ó¥¹²Á³Ê</h3>
<p>
¡¦¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡¦Åý¹çID´ÉÍý ´ðËÜÎÁ¶â¡§¡¡150±ß¡Ê£±¥æ¡¼¥¶·î³Û¡Ë
</p>
<p>
¡¦¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡¦IDÏ¢·È 1¥·¥¹¥Æ¥à¡§ 15±ß¡Ê£±¥æ¡¼¥¶·î³Û¡Ë<br />
¡¡¢¨ ÂåÍýÇ§¾Ú¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ë¤Ä¤¤¤Æ¤Ï¡¢´ðËÜÎÁ¶â¤Î¤ß¤ÇÊÌÅÓ¥·¥¹¥Æ¥àÃ±°Ì¤ÎÈñÍÑ¤ÏÉ¬Í×¤´¤¶¤¤¤Þ¤»¤ó¡£&nbsp;&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
¢¨ °Ê²¼¤Îµ¡Ç½¤Ï¡¢´ðËÜÎÁ¶â¤Ë´Þ¤Þ¤ì¤Þ¤¹¡£<br />
¡¡ ¡¦Google Apps¤È¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡¦IDÏ¢·È<br />
¡¡ ¡¦Active DirectoryÇ§¾ÚÍÑ¤ÎActive Directory¤È¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡¦IDÏ¢·È
</p>
<p>
¢¨ Ã¼ËöÇ§¾Ú¤Ï¡¢¥ª¥×¥·¥ç¥óµ¡Ç½¤È¤Ê¤ê¤Þ¤¹¡£²Á³Ê¤Ë¤Ä¤¤¤Æ¤Ï¡¢<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤«¤é¤ªÌä¹ç¤»²¼¤µ¤¤¡£
</p>
<p>
¢¨ Secioss Identity Suite Cloud Edition¤ÎÆ³Æþ¥µ¡¼¥Ó¥¹¤Ë¤Ä¤¤¤Æ¤Ï¡¢ÊÌÅÓÈñÍÑ¤ò¤¬É¬Í×¤È¤Ê¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>ÂÐ±þ¥¢¥×¥ê¥±¡¼¥·¥ç¥ó</h3>
<h5>¥×¥é¥¤¥Ù¡¼¥È CA Gl&eacute;as¡ÊJCCH¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¡Ë</h5>
<p>
Gl&eacute;as ¤¬¡¢SeciossLink ¤ËÂÐ±þ¤·¤¿¤³¤È¤Ë¤è¤ê¡¢PC ¤ª¤è¤Ó iPhone / iPad ¤«¤é¡¢Google Apps ¡¦ Salesforce¤Ê¤É¤Î¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤Ë²Ã¤¨¡¢¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥É¡¢¼ÒÆâ¤Î¥ª¥ó¥×¥ì¥ß¥¹¥·¥¹¥Æ¥à¤Ê¤É¤Î½ÅÍ×¤Ê¼ÒÆâ¾ðÊó»ñ»º¤Ø¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÎºÝ¤Ë¡¢ÅÅ»Ò¾ÚÌÀ½ñ¤Ë¤è¤ë¸·³Ê¤ÊÇ§¾Ú¶¯²½¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤·¤¿¡£ÅÅ»Ò¾ÚÌÀ½ñ¤òÃ¼Ëö¤Ë¥¤¥ó¥Ý¡¼¥È¤¹¤ë¤³¤È¤ÇÃ¼Ëö¤ÎÇ§¾Ú¤ò¡¢ÅÅ»Ò¾ÚÌÀ½ñ¤ò USB ¥È¡¼¥¯¥ó¤ä IC ¥«¡¼¥É¤Ê¤É¤Î¥»¥­¥å¥ê¥Æ¥£¥Ç¥Ð¥¤¥¹¤Ë¥¤¥ó¥Ý¡¼¥È¤¹¤ë¤³¤È¤Ç¿Í¤ÎÇ§¾Ú¤ò¼Â¸½¤Ç¤­¤Þ¤¹¤Î¤Ç¡¢´ë¶È¤Î¥»¥­¥å¥ê¥Æ¥£¥Ý¥ê¥·¡¼¤Ë¹ç¤ï¤»¤Æ½ÀÆð¤ÊÇ§¾Ú¥Ý¥ê¥·¡¼¤òÀß·×¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£<br />
<a href="http://www.jcch-sss.com/service/gleas">¾ÜºÙ</a>
</p>
<p>
&nbsp;
</p>
<h3>¥Þ¥Ë¥å¥¢¥ë</h3>
<p>
SeciossLink¤Î»ÈÍÑÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï¡¢¥Þ¥Ë¥å¥¢¥ë¤ò¤´Í÷²¼¤µ¤¤¡£
</p>
<p>
¡¦<a href="http://support.secioss.co.jp/docs/SlinkManagementGuide.pdf" target="_blank">´ÉÍý¼Ô¥¬¥¤¥É</a>
</p>
<p>
¡¦<a href="http://support.secioss.co.jp/docs/SlinkUserGuide.pdf" target="_blank">¥æ¡¼¥¶¥¬¥¤¥É</a>
</p>
<p>
&nbsp;
</p>
<h3>Ìä¹ç¤»</h3>
<p>
ËÜ¥µ¡¼¥Ó¥¹¤Ë´Ø¤¹¤ë¤ªÌä¹ç¤»¤Ï<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤«¤é¤ª´ê¤¤¤·¤Þ¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2011/05/saas_secioss_federation.html</link>
         <guid>http://www.secioss.co.jp/2011/05/saas_secioss_federation.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00201¥½¥ê¥å¡¼¥·¥ç¥ó</category>
        
        
         <pubDate>Wed, 04 May 2011 21:12:03 +0900</pubDate>
      </item>
            <item>
         <title>ShibbolethÆ³Æþ¤Ë¤è¤ë¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó´Ä¶­¹½ÃÛ</title>
         <description><![CDATA[<p>
Âç³Ø¥³¥ó¥½¡¼¥·¥¢¥àÀÐÀîÍÍ¤Ï¡¢¥Ý¡¼¥¿¥ë¥·¥¹¥Æ¥à¤ò´ØÏ¢¶µ°éµ¡´Ø¸þ¤±¤ËÄó¶¡¤·¤Æ¤¤¤Þ¤¹¡£<br />
¤³¤Î¥Ý¡¼¥¿¥ë¥·¥¹¥Æ¥à¤Ç¤Ï¡¢SNS ¤ä³Ø½¬´ÉÍý¤Ê¤É¤Î¥µ¡¼¥Ó¥¹¤È¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¼Â¸½¤·¤Æ¤¤¤ë¤Î¤Ç¤¹¤¬¡¢ÍøÍÑ¤Î³ÈÂç¤ËÈ¼¤¤³Æ¶µ°éµ¡´Ø¤¬»ý¤Ä´ûÂ¸¤Î³ØÌ³¥·¥¹¥Æ¥àÅù¤È¤Î¡Öµ¡´Ø¤ÎÏÈ¤òÄ¶¤¨¤¿¥·¥¹¥Æ¥àÏ¢·È¡×¤¬É¬Í×¤Ë¤Ê¤ë¤È¹Í¤¨¤Æ¤¤¤Þ¤·¤¿¡£¤½¤³¤Ç¡¢²¤ÊÆ¤Ç¤â¼ÂÀÓ¤¬¤¢¤ê¡¢¹ñÆâ¤Ç¤âÇ§¾Ú´ðÈ×¤È¤·¤Æ»ÈÍÑ¤µ¤ì»Ï¤á¤¿Shibboleth ¤ÎÆ³Æþ¤òÅö¼Ò¤¬°ÍÍê¤µ¤ì¤Þ¤·¤¿¡£<br />
¡Ê¹ñÆâ¤Ç¤Ï¡¢¹ñÎ©¾ðÊó³Ø¸¦µæ½êÍÍ¤¬Ãæ¿´¤Ë³Ø½ÑÇ§¾Ú¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤¬±¿±Ä¤µ¤ì¤Æ¤¤¤Þ¤¹¡£¡Ë
</p>
<br />
<p>
<strong>¡ãÆ³Æþºî¶È¡ä</strong>
</p>
<p>
Åö¼Ò¤Ï¡¢SNS ¥µ¡¼¥Ó¥¹¤ä³Ø½¬´ÉÍý¥·¥¹¥Æ¥à¤Ê¤É¤ò´Þ¤á¤¿¥Ý¡¼¥¿¥ë¥·¥¹¥Æ¥àÁ´ÂÎ¤ËShibboleth ¤ÎÆ³Æþ¤ò¹Ô¤¤¤Þ¤·¤¿¡£Ç§¾Ú¥µ¡¼¥Ð¤Ë¤ª¤¤¤Æ¤â´ûÂ¸¥·¥¹¥Æ¥à¤«¤éShibboleth ¤Ë°Ü¹Ô¤·¤Æ¤¤¤Þ¤¹¡£<br />
¤Þ¤¿¡¢º£²óDS ¤âÆ³Æþ¤·¤Æ¤ª¤ê¡¢ÆÈ¼«¤Î¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤ò¹½ÃÛ¤·¤Æ¤¤¤Þ¤¹¡£
</p>
<br />
<p>
<strong>¡ãÆ³Æþ¥á¥ê¥Ã¥È¡ä</strong>
</p>
<p>
ÆÈ¼«¤Î¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤ò¹½ÃÛ¤¹¤ë»ö¤Ë¤è¤ê¡¢²ÃÌÁ¤·¤Æ¤¤¤ë¶µ°éµ¡´Ø¤Ï³ØÆâ¤ËShibboleth-IdP ¤ò¹½ÃÛ¤¹¤ë»ö¤Ë¤è¤Ã¤Æ¡¢¥Ý¡¼¥¿¥ë¥·¥¹¥Æ¥à¤È¤Î¥í¥°¥¤¥óÇ§¾ÚÏ¢·È¤¬¹Ô¤¨¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤·¤¿¡£
</p></br>
<div style="text-align: center">
<img style="width: 514px; height: 482px" src="http://www.secioss.co.jp/jirei_shibboleth_1.JPG" alt="jirei_shibboleth_1.JPG" width="868" height="778" />
</div>
]]></description>
         <link>http://www.secioss.co.jp/2011/04/shibboleth_1.html</link>
         <guid>http://www.secioss.co.jp/2011/04/shibboleth_1.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00401Æ³Æþ»öÎã</category>
        
        
         <pubDate>Mon, 18 Apr 2011 17:59:52 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Identity Suite Cloud Edition</title>
         <description><![CDATA[<p>
Secioss Identity Suite Cloud Edition¤Ï¡¢¥¯¥é¥¦¥É¥³¥ó¥Ô¥å¡¼¥Æ¥£¥ó¥°´Ä¶­¤Ë¤ª¤¤¤ÆSAML 2.0¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤äSOAPÄÌ¿®¤Ë¤è¤ë¥¢¥«¥¦¥ó¥ÈÆ±´ü¤ò¥µ¥¤¥È´Ö¤Ç¼Â¸½¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
Secioss Identity Suite Cloud Edition¡Ê°Ê¹ßIdentity Suite Cloud¤È¤·¤Þ¤¹¡Ë¤ò¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÆ³Æþ¤¹¤ë¤³¤È¤Ç¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤·¤Æ°Ê²¼¤Îµ¡Ç½¤ò´ÊÃ±¤ËÄÉ²Ã¤¹¤ë¤³¤È¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</strong><br />
SAML¤ÎService Provider¤È¤·¤ÆÆ°ºî¤·¡¢SAML¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¤¤Þ¤¹¡£¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÏIdentity Suite Cloud¤ÎÂåÍýÇ§¾Úµ¡Ç½¤Ë¤è¤ê´ÊÃ±¤ËSAMLÇ§¾Úµ¡Ç½¤òÁÈ¤ß¹þ¤à¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>IDÆ±´ü</strong><br />
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎID´ÉÍýÍÑSOAP API¤òÄó¶¡¤·¡¢SOAP·ÐÍ³¤Ç¤ÎID´ÉÍý¤ä¥µ¥¤¥È´Ö¤Ç¤ÎIDÆ±´ü¤ò¼Â¸½¤·¤Þ¤¹¡£Identity Suite Cloud¤Ï¡¢Äê´üÅª¤ËSOAP API¤Ç¹¹¿·¥Ç¡¼¥¿¤ò¼èÆÀ¤·¡¢LISM¤Ë¤è¤ê¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤ØÈ¿±Ç¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>Google Gadget¤Ë¤è¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥óÏ¢·È<br />
</strong>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈÏ¢·È¤·¤Æ¡¢2-legged OAuth¤Ë¤è¤êGoogle Gadget¤«¤é¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤¹¤ë¥¢¥¯¥»¥¹¤ÎÇ§²Ä¤ò¹Ô¤¤¤Þ¤¹¡£<br />
Google Gadget¤Ë¤è¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥óÏ¢·È¤Ï¡¢Identity Suite Cloud V3.1¤«¤é»ÈÍÑ²ÄÇ½¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>¥é¥¤¥»¥ó¥¹</h5>
<p>
Identity Suite Cloud¤Ï¡¢¥Ð¡¼¥¸¥ç¥ó3.0¤Þ¤Ç¤Î¥½¥Õ¥È¥¦¥§¥¢¤ò¥ª¡¼¥×¥ó¥½¡¼¥¹¤È¤·¤ÆGPL¥é¥¤¥»¥ó¥¹¤Ë¤è¤ê¸ø³«¤·¤Æ¤¤¤Þ¤¹¡£<br />
¡¦¥×¥í¥¸¥§¥¯¥È¥µ¥¤¥È¡§<a href="http://sourceforge.jp/projects/secioss-auth/devel/">http://sourceforge.jp/projects/secioss-auth/</a><br />
¡¦¥á¡¼¥ê¥ó¥°¥ê¥¹¥È¡§<a href="http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users">http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users</a>
</p>
<p>
Identity Suite Cloud¤Î¥Ð¡¼¥¸¥ç¥ó3.1°Ê¹ß¤Ë¤Ä¤¤¤Æ¤Ï¡¢<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤Ë¤ªÌä¹ç¤»²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<h5>¾¦ÍÑ¥µ¡¼¥Ó¥¹</h5>
<p>
Identity Suite&nbsp;Cloud¤Ë´Ø¤¹¤ë¥³¥ó¥µ¥ë¥Æ¥£¥ó¥°¡¢ÊÝ¼é¥µ¡¼¥Ó¥¹¤Ë¤Ä¤¤¤Æ¤Ï¡¢<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤Ø¤ªÌä¹ç¤»²¼¤µ¤¤¡£<br />
¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÎÇ§¾Ú¥µ¡¼¥Ð¡¢¥¢¥«¥¦¥ó¥ÈÆ±´ü¤ÎÅý¹çID´ÉÍý¥µ¡¼¥Ð¤¬<a href="http://www.secioss.co.jp/2011/05/saas_secioss_federation.html">SeciossLink</a>¡¢¤Þ¤¿¤ÏSecioss Access Manager Enterprise Edition¡¢Secioss Identity Manager¤Î¾ì¹ç¤Ï¡¢Ìµ½þ¤ÇÊÝ¼é¥µ¡¼¥Ó¥¹¤òÄó¶¡¤¤¤¿¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>1. ¥¤¥ó¥¹¥È¡¼¥ë</h3>
<p>
Identity Suite Cloud SP¤Î¿ä¾©´Ä¶­¤Ï°Ê²¼¤Ë¤Ê¤ê¤Þ¤¹¡£<br />
¡¦OS¡§ CentOS 5¡¢RedHat Enterprise Linux 5<br />
¡¦Web¥µ¡¼¥Ð¡§ Apache 2.2
</p>
<p>
º£²ó¤Î¥¤¥ó¥¹¥È¡¼¥ë´Ä¶­¤È¤·¤Æ¤Ï¡¢Linux¤ÎCentOS 5¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£<br />
¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÎÇ§¾Ú¥µ¡¼¥Ð¡¢Åý¹çID´ÉÍý¥µ¡¼¥Ð¤Ï¡¢ÊÀ¼ÒSaaS¥µ¡¼¥Ó¥¹<a href="http://www.secioss.co.jp/2011/05/saas_secioss_federation.html">SeciossLink</a>¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢º£²ó¤Ï¥ª¥ó¥×¥ì¥ß¥¹¤Î¥·¥¹¥Æ¥à¤Ø¤ÎÆ³Æþ¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£SaaS·¿¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ø¤ÎÆ³Æþ¤ò¸¡Æ¤¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ï¡¢<a href="http://www.secioss.co.jp/2011/05/secioss_identity_suite_cloud_e_3.html">¤³¤Á¤é</a>¤ò¤´Í÷²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<h5>1.1&nbsp; É¬Í×¤Ê¥½¥Õ¥È¥¦¥§¥¢¤Î¥¤¥ó¥¹¥È¡¼¥ë</h5>
<p>
# yum install libtool-ltdl<br />
# yum install perl-LDAP<br />
# yum install perl-DBI<br />
# yum install perl-DBD-Pg<br />
# yum install perl-XML-LibXML<br />
# yum install perl-XML-Simple<br />
# yum install perl-TimeDate<br />
# yum install php-pear<br />
# yum install php-xml<br />
# yum install php-soap&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>1.2 Identity Suite Cloud SP</h5>
<p>
<a href="http://sourceforge.jp/projects/secioss-auth/releases/">http://sourceforge.jp/projects/secioss-auth/releases/</a>¤«¤ésecioss-idsuite-cloud-sp-2.0.x.tgz¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
secioss-idsuite-cloud-sp¥Ñ¥Ã¥±¡¼¥¸¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Þ¤¹¡£<br />
# tar zxvf secioss-idsuite-cloud-sp-3.0.x.tgz<br />
# cd secioss-idsuite-cloud-sp-3.0.x<br />
# ./install.sh install
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢¥Ñ¥Ã¥±¡¼¥¸¤ò¥¢¥Ã¥×¥Ç¡¼¥È¤¹¤ë¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# ./install.sh update
</p>
<p>
&nbsp;
</p>
<h5>1.3 BasicÇ§¾Ú¤ÎÀßÄê</h5>
<p>
BasicÇ§¾Ú¤ÎID/¥Ñ¥¹¥ï¡¼¥É¤òÅÐÏ¿¤·¤Þ¤¹¡£<br />
# htpasswd -c /var/www/conf/.htpasswd &lt;ID&gt;
</p>
<p>
&nbsp;
</p>
<h5>1.4 ¥í¥°¤ÎÀßÄê</h5>
<p>
¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈIDÆ±´ü¤Î¥í¥°¤Ï¡¢¤½¤ì¤¾¤ìsyslog¤Îlocal5¡¢local4¤Ë½ÐÎÏ¤·¤Þ¤¹¡£<br />
/etc/syslog.conf¤Ë°Ê²¼¤ÎÀßÄê¤òÄÉµ­¤·¤Æ¡¢syslog¥Ç¡¼¥â¥ó¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£
</p>
<hr />
<p>
local5.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; -/var/log/auth.log<br />
local4.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; -/var/log/lism.log
</p>
<hr />
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>2. ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h3>
<h5>2.1 SAMLÇ§¾Ú¤ÎÀßÄê</h5>
<p>
SAMLÇ§¾Ú¡ÊSP¡Ë¤ÎÀßÄê¤ò¹Ô¤¦¤Ë¤Ï¡¢°Ê²¼¤Î¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# ./config.sh sso<br />
¡¦Ç§¾Ú¥µ¡¼¥Ó¥¹¤ÎURL¡§&nbsp;¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¦Ç§¾Ú¥µ¡¼¥Ó¥¹¤ÎURL<br />
&nbsp;&nbsp;¢¨https://slink.secioss.com¤Î¾ì¹ç¤ÏÆþÎÏÉÔÍ×¤Ç¤¹¡£<br />
¡¦¥Æ¥Ê¥ó¥ÈID¡§¡¡Ç§¾Ú¥µ¡¼¥Ó¥¹¤Î¥Æ¥Ê¥ó¥ÈID<br />
¡¦¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¡§&nbsp;¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÂÐ¾Ý¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL<br />
&nbsp;&nbsp;¢¨¥Ñ¥¹¤Ë¤Ä¤¤¤Æ¤Ï¡¢ºÇ¸å¤Ë&quot;/&quot;¤òÉÕ²Ã¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥»¥Ã¥·¥ç¥ó¤Î¥¯¥Ã¥­¡¼Ì¾¡§¡¡¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥»¥Ã¥·¥ç¥ó¤òÊÝ»ý¤¹¤ë¥¯¥Ã¥­¡¼Ì¾<br />
¡¦&nbsp;¥Ñ¥¹¥ï¡¼¥É¤ÎÆ±´ü[1.¤¹¤ë|2.¤·¤Ê¤¤]¡§¡¡¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ç¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¥í¥°¥¤¥ó¤·¤¿ºÝ¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤È¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ñ¥¹¥ï¡¼¥É¤òÆ±´ü¤¹¤ë¤«¤É¤¦¤«»ØÄê¤·¤Þ¤¹¡£<br />
¡¡¢¨¤³¤Îµ¡Ç½¤ò»ÈÍÑ¤¹¤ë¾ì¹ç¤Ï¡¢&rdquo;3. IDÆ±´ü&rdquo;¤ÎÀßÄê¤¬ºÑ¤ó¤Ç¤¤¤ëÉ¬Í×¤¬¤¢¤ê¤Þ¤¹¡£<br />
¡¦¥¢¥¯¥»¥¹À©¸Â[1.¤¹¤ë|2.¤·¤Ê¤¤]¡§¡¡¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ñ¥¹¥ï¡¼¥É¤ò¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤È°Û¤Ê¤ë¥Ñ¥¹¥ï¡¼¥É¤ËÊÑ¹¹¤¹¤ë¤³¤È¤Ç¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥í¥°¥¤¥ó²èÌÌ¤«¤é¤ÏÄ¾ÀÜ¥í¥°¥¤¥ó¤Ç¤­¤Ê¤¤¤è¤¦¤Ë¤·¤Þ¤¹¡£Ç§¾Ú¥µ¡¼¥Ó¥¹¤Ç¤³¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤·¤Æ¥¢¥¯¥»¥¹À©¸æ¤ò¹Ô¤¦¾ì¹ç¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤ËSAMLÇ§¾ÚÍÑ¤ÎÈëÌ©¸°¤È¸ø³«¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
°Ê²¼¤ÏOpenSSL¤Ë¤è¤ëÈëÌ©¸°¤È¸ø³«¸°¤ÎºîÀ®¼ê½ç¤Ç¤¹¡£<br />
­¡&nbsp;ÈëÌ©¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
# cd /etc/pki/tls/certs<br />
# make test.key<br />
ÈëÌ©¸°¤«¤é¥Ñ¥¹¥ï¡¼¥É¤òºï½ü¤·¤Þ¤¹¡£<br />
# openssl rsa -in test.key -out test.key
</p>
<p>
­¢&nbsp;¸ø³«¸°¤òºîÀ®¤·¤Þ¤¹¡£<br />
# make test.crt<br />
Country Name (2 letter code) [GB]:JP<span style="color: #00ff00">¡¡&larr;¡¡¹ñÌ¾</span><br />
State or Province Name (full name) [Berkshire]:Tokyo<span style="color: #00ff00">¡¡&larr;¡¡ÅÔÆ»ÉÜ¸©Ì¾</span><br />
Locality Name (eg, city) [Newbury]:Bunkyo<span style="color: #00ff00">¡¡&larr;¡¡»Ô¶èÄ®Â¼Ì¾</span><br />
Organization Name (eg, company) [My Company Ltd]:TEST, Inc<span style="color: #00ff00">¡¡&larr;¡¡²ñ¼ÒÌ¾</span><br />
Organizational Unit Name (eg, section) []:<span style="color: #00ff00">¡¡&larr;¡¡¶õENTER</span><br />
Common Name (eg, your name or your server&#39;s hostname) []:sp.test.co.jp<span style="color: #00ff00">¡¡&larr;¡¡¥Û¥¹¥ÈÌ¾</span><br />
Email Address []:admin@test.co.jp<span style="color: #00ff00">¡¡&larr;¡¡´ÉÍý¼Ô¥á¡¼¥ë¥¢¥É¥ì¥¹</span>
</p>
<p>
&nbsp;
</p>
<p>
ÈëÌ©¸°¤Ï¡¢&quot;/usr/share/simplesamlphp/cert/PrivateKey.pem&quot;¤Ë¥³¥Ô¡¼¤·¤Æ¡¢½êÍ­¼Ô¤òapache¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
# chown apache /usr/share/simplesamlphp/cert/PrivateKey.pem
</p>
<p>
&nbsp;
</p>
<p>
ºÇ¸å¤ËApache¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£<br />
# /etc/init.d/httpd restart
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>2.2 ÂåÍýÇ§¾Ú¤ÎÀßÄê</strong>
</p>
<p>
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¼«Æ°¤Ç¥í¥°¥¤¥ó¤¹¤ë¤¿¤á¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£
</p>
<p>
ÀßÄê¥Õ¥¡¥¤¥ë¤Ï¡¢&quot;/var/www/conf/&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾¡ÊÁ´¤Æ¾®Ê¸»ú¡Ë&gt;.ini&quot;¤È¤·¤ÆºîÀ®¤·¤Æ²¼¤µ¤¤¡£<br />
°Ê²¼¤ÏSugarCRMÍÑ¤ÎÀßÄêÎã¤Ç¤¹¡£
</p>
<hr />
<p>
[url]<br />
login = &quot;https://sp.example.com/SugarCE/index.php?action=Login&amp;module=Users&quot;<br />
back = &quot;/SugarCE/&quot;
</p>
<p>
&nbsp;
</p>
<p>
[postName]<br />
username = user_name<br />
password = user_password
</p>
<p>
&nbsp;
</p>
<p>
[postData]<br />
module = Users<br />
action = Authenticate<br />
return_module = Users<br />
return_action = Login<br />
cant_login = &quot;&quot;<br />
login_module = &quot;&quot;<br />
login_action = &quot;&quot;<br />
login_record = &quot;&quot;<br />
login_theme = Sugar<br />
login_language = ja<br />
login_button = &quot;&nbsp; ¥í¥°¥¤¥ó&nbsp; &quot;
</p>
<hr />
<p>
&nbsp;
</p>
<table border="1">
	<tbody>
		<tr>
			<td rowspan="2">
			<p>
			url
			</p>
			</td>
			<td>
			<p>
			login
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó¤¹¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL
			</p>
			</td>
		</tr>
		<tr>
			<td>
			<p>
			back
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó¸å¤ËÉ½¼¨¤¹¤ë²èÌÌ¤ÎURL
			</p>
			</td>
		</tr>
		<tr>
			<td rowspan="2">
			<p>
			postName
			</p>
			</td>
			<td>
			<p>
			username
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó»þ¤ËPOST¤¹¤ë¥æ¡¼¥¶Ì¾¤ÎÊÑ¿ôÌ¾
			</p>
			</td>
		</tr>
		<tr>
			<td>
			<p>
			password
			</p>
			</td>
			<td>
			<p>
			¥í¥°¥¤¥ó»þ¤ËPOST¤¹¤ë¥Ñ¥¹¥ï¡¼¥É¤ÎÊÑ¿ôÌ¾
			</p>
			</td>
		</tr>
	</tbody>
</table>
<p>
&nbsp;
</p>
<p>
[postData]¤Ë¤Ï¡¢POST¤¹¤ë¥Ç¡¼¥¿¤ÎÊÑ¿ôÌ¾¤ÈÃÍ¤ÎÁÈ¤ß¹ç¤ï¤»¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£&nbsp;&nbsp;&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>2.3&nbsp;Ç§¾Ú¥µ¡¼¥Ó¥¹¤ÎÀßÄê</strong>
</p>
<p>
&lt;Ç§¾Ú¥µ¡¼¥Ó¥¹¤ÎURL&gt;/tenantadmin/¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢´ÉÍý¼Ô¥¢¥«¥¦¥ó¥È¤Ç¥í¥°¥¤¥ó¤·¤Þ¤¹¡£<br />
²èÌÌ¾åÉô¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¥¯¥ê¥Ã¥¯¤·¤«¤é¡¢º¸Â¦¥á¥Ë¥å¡¼¤Î&rdquo;SAML ¥µ¡¼¥Ó¥¹¥×¥í¥Ð¥¤¥À&rdquo;¤ò¥¯¥ê¥Ã¥¯¤·¤Æ²¼¤µ¤¤¡£<br />
&rdquo;¿·µ¬ÅÐÏ¿&rdquo;¤ò¥¯¥ê¥Ã¥¯¤·¤Æ¡¢SP¤ÎÀßÄê¤òÅÐÏ¿¤·¤Þ¤¹¡£<br />
¡¦¥µ¡¼¥Ó¥¹¡§¡¡¥µ¡¼¥Ó¥¹ID¤òÁªÂò¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥µ¡¼¥Ó¥¹Ì¾¡§¡¡SP¤Î¥µ¡¼¥Ó¥¹Ì¾¡ÊÇ¤°Õ¤ÎÃÍ¡Ë¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦URL¡§¡¡2.1¹à¤ÇÀßÄê¤·¤¿¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥æ¡¼¥¶ID¤ÎÂ°À­¡§¡¡SP¤ËÅÏ¤¹¥æ¡¼¥¶ID¤ÎÂ°À­¤òÁªÂò¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦°Å¹æ²½ÍÑ¸ø³«¸°¡§¡¡2.1¹à¤ÇºîÀ®¤·¤¿¸ø³«¸°¤òÅÐÏ¿¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥µ¡¼¥Ó¥¹¥×¥í¥Ð¥¤¥À¤Î¥Ñ¥¹¥ï¡¼¥É¡§<br/>
¡¡- ¤Ê¤·¡§ ¥Ñ¥¹¥ï¡¼¥É¤òÁ÷¿®¤·¤Ê¤¤<br/>
¡¡- ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Î¥Ñ¥¹¥ï¡¼¥É¡§ ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Î¥Ñ¥¹¥ï¡¼¥É¤òÁ÷¿®<br/>
¡¡- ¥µ¡¼¥Ó¥¹¸ÄÊÌ¤Î¥Ñ¥¹¥ï¡¼¥É¡§ ¥µ¡¼¥Ó¥¹¸ÄÊÌ¤Î¥Ñ¥¹¥ï¡¼¥É¤òÁ÷¿®<br/>
¡¡- ¥é¥ó¥À¥à¥Ñ¥¹¥ï¡¼¥É¡§ ¥é¥ó¥À¥à¤Ê¥Ñ¥¹¥ï¡¼¥É¤òÁ÷¿®<br />
¡¡¢¨¥é¥ó¥À¥à¥Ñ¥¹¥ï¡¼¥É¤òÀßÄê¤·¤¿¾ì¹ç¡¢&rdquo;2.1 SAMLÇ§¾Ú&rdquo;¤ÎÀßÄê¤Ç&rdquo;¥¢¥¯¥»¥¹À©¸Â&rdquo;¤ò&rdquo;1.¤¹¤ë&rdquo;¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/sp-config.jpg" alt="SPÅÐÏ¿" width="512" height="273" />
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>3. IDÆ±´ü</h3>
<h5>3.1&nbsp; IDÆ±´ü¤ÎÀßÄê</h5>
<p>
Identity Suite Cloud¤Ï¡¢LISM¤Ë¤è¤Ã¤ÆÄê´üÅª¤ËSeciosLink¤«¤é¹¹¿·¥Ç¡¼¥¿¤ò¼èÆÀ¤·¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤äLDAP¤Î¥¢¥«¥¦¥ó¥È¤ò¹¹¿·¤·¤Þ¤¹¡£
</p>
<p>
ºÇ½é¤Ë¡¢°Ê²¼¤Î¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# ./config.sh idm<br />
¡¦Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤ÎURL¡§&nbsp;Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤ÎURL<br />
&nbsp;&nbsp;¢¨https://slink.secioss.com¤Î¾ì¹ç¤ÏÆþÎÏÉÔÍ×¤Ç¤¹¡£<br />
¡¦¥Æ¥Ê¥ó¥ÈID¡§¡¡Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤Î¥Æ¥Ê¥ó¥ÈID<br />
¡¦´ÉÍý¼Ô¥¢¥«¥¦¥ó¥ÈÌ¾¡§¡¡Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤ËÀÜÂ³¤¹¤ë´ÉÍý¼Ô¥¢¥«¥¦¥ó¥ÈÌ¾<br />
¡¦´ÉÍý¼Ô¥Ñ¥¹¥ï¡¼¥É¡§¡¡´ÉÍý¼Ô¥¢¥«¥¦¥ó¥È¤Î¥Ñ¥¹¥ï¡¼¥É<br />
¡¦Æ±´ü¤ÎÊý¸þ[1.Åý¹çID´ÉÍý -&gt; ¥µ¡¼¥Ó¥¹|2.¥µ¡¼¥Ó¥¹ -&gt; Åý¹çID´ÉÍý]<br />
¡¡¢¨2¤òÁªÂò¤·¤¿¾ì¹ç¡¢¥¢¥×¥ê¥±¡¼¥·¥ç¥óÂ¦¤ÎDB¤¬ID¤Î¸¶ËÜ¤È¤Ê¤ê¤Þ¤¹¡£<br />
°Ê²¼¤Ï¡¢Æ±´ü¤ÎÊý¸þ¤Ç1¤òÁªÂò¤·¤¿¾ì¹ç¤Î¤ß¡¢ÀßÄê¤·¤Þ¤¹¡£<br />
¡¦¥µ¡¼¥Ó¥¹ID¡§¡¡2.3¹à¤Î¥µ¡¼¥Ó¥¹ID¡Ê¥Æ¥Ê¥ó¥ÈID¤Ï½ü¤¯¡Ë<br />
¡¦¥æ¡¼¥¶ID¤ÎÂ°À­ [1.¥æ¡¼¥¶ID|2.¥æ¡¼¥¶ID@¥Æ¥Ê¥ó¥ÈID|3.¥á¡¼¥ë¥¢¥É¥ì¥¹|4.¼Ò°÷ÈÖ¹æ|5.¥µ¡¼¥Ó¥¹¸ÄÊÌ¤Î¥í¥°¥¤¥óID]¡§¡¡ IDÆ±´üÂÐ¾Ý¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥æ¡¼¥¶ID¤Ë»ÈÍÑ¤¹¤ëÂ°À­¤òÈÖ¹æ¤Ç»ØÄê
</p>
<p>
&nbsp;
</p>
<p>
LISM¤ÎÀßÄê¥Õ¥¡¥¤¥ë¡ÊÆ±´ü¤ÎÊý¸þ¤¬1¤Î¾ì¹ç/opt/secioss/etc/lism.conf¡¢2¤Î¾ì¹ç/opt/secioss/etc/lism-idp.conf¡Ë¤Ë¡¢¹¹¿·ÂÐ¾Ý¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£<br />
http://&lt;¥Û¥¹¥ÈÌ¾&gt;/lism/ ¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢¥Ç¡¼¥¿¥Ù¡¼¥¹¤ÎÀßÄê¤ÈLDAP¤ÎÂ°À­¤ÈDB¤Î¥Õ¥£¡¼¥ë¥É¤Î¥Þ¥Ã¥Ô¥ó¥°¤ò¹Ô¤¤¡¢Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤ÈÆ±´ü¤¹¤ëÂ°À­¤Ë¥Á¥§¥Ã¥¯¤ò¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
³ÆÂ°À­¤Î°ÕÌ£¤Ï°Ê²¼¤Ë¤Ê¤ê¤Þ¤¹¡£&nbsp;<br />
¡¦primary key¡§ DB¤Î¥×¥é¥¤¥Þ¥ê¥­¡¼<br />
¡¦uid¡§ ¥æ¡¼¥¶ID<br />
¡¦cn¡§ »áÌ¾<br />
¡¦sn¡§&nbsp;À«<br />
¡¦givenname¡§ Ì¾<br />
¡¦cn;lang-ja;phonetic¡§ »áÌ¾¡Ê¤«¤Ê¡Ë<br />
¡¦sn;lang-ja;phonetci¡§ À«¡Ê¤«¤Ê¡Ë<br />
¡¦givenname;lang-ja;phonetic¡§ Ì¾¡Ê¤«¤Ê¡Ë<br />
¡¦mail¡§ ¥á¡¼¥ë¥¢¥É¥ì¥¹<br />
¡¦userpassword¡§ ¥Ñ¥¹¥ï¡¼¥É<br />
¡¦createtimestamp¡§ ÅÐÏ¿Æü»þ<br />
¡¦modifytimestamp¡§ ¹¹¿·Æü»þ<br />
&quot;primary key&quot;¡¢&quot;uid&quot;¡¢&quot;sn&quot;¤Ë¤Ä¤¤¤Æ¤Ï¡¢É¬¤ºDB¤Î¥Õ¥£¡¼¥ë¥É¤È¤Î¥Þ¥Ã¥Ô¥ó¥°¤ò¹Ô¤Ã¤Æ²¼¤µ¤¤¡£<br />
&nbsp;¤µ¤é¤Ë¡¢&quot;sn&quot;¤Ë¤Ä¤¤¤Æ¤Ï¡¢É¬¤ºÆ±´ü¤Ë¥Á¥§¥Ã¥¯¤ò¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/lism-gui.jpg" alt="LISM GUI" title="LISM GUI" />
</p>
<p>
&nbsp;
</p>
<p>
lism.conf¡¢¤Þ¤¿¤Ïlism-idp.conf¤ÎÀßÄê¤Ç¡¢ÀßÄê²èÌÌ¤«¤éÀßÄê¤Ç¤­¤Ê¤¤¹àÌÜ¤¬¤¢¤ë¾ì¹ç¤Ï¡¢Ä¾ÀÜÀßÄê¥Õ¥¡¥¤¥ë¤ò½¤Àµ¤·¤Æ²¼¤µ¤¤¡£LISM¤ÎÀßÄêÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï¡¢LISM¤Î<a href="http://lism.sourceforge.jp/index.php?%A5%B9%A5%C8%A5%EC%A1%BC%A5%B8%A4%CE%C0%DF%C4%EA%B9%E0%CC%DC">¥µ¥¤¥È</a>¤ò¤´Í÷²¼¤µ¤¤¡£&nbsp;
</p>
<p>
SugarCRM¤òÎã¤È¤·¤ÆLISM¤ÎÀßÄê¤òÎã¼¨¤·¤Þ¤¹¡£&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>lism.conf</strong>
</p>
<hr />
<p>
&lt;config&gt;<br />
&nbsp; &lt;sync&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;data name=&quot;SP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncdn&gt;ou=People&lt;/syncdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncfilter&gt;(&amp;amp;(!(seciossAccountStatus=deleted))(&amp;amp;(objectClass=inetOrgPerson)(|(seciossAllowedService=sp01-secioss.co.jp)(seciossAllowedService;x-perm-group=sp01-secioss.co.jp))))&lt;/syncfilter&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;sn&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;givenName&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;sn;lang-ja;phonetic&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;givenName;lang-ja;phonetic&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;name&gt;mail&lt;/name&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/syncattr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/data&gt;<br />
&nbsp; &lt;/sync&gt;<br />
&nbsp; &lt;data name=&quot;SP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;o=SP&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;handler name=&quot;Rewrite&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;request&quot; match=&quot;createtimestamp: *([0-9]{4})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})Z&quot; substitution=&quot;createtimestamp: %1-%2-%3 %4:%5:%6&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;searchResult&quot; match=&quot;createtimestamp: *([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})&quot; substitution=&quot;createtimestamp: %1%2%3%4%5%6Z&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;request&quot; match=&quot;modifytimestamp: *([0-9]{4})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})([0-9]{2})Z&quot; substitution=&quot;modifytimestamp: %1-%2-%3 %4:%5:%6&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rewrite context=&quot;searchResult&quot; match=&quot;modifytimestamp: *([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})&quot; substitution=&quot;modifytimestamp: %1%2%3%4%5%6Z&quot;/&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/handler&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;storage name=&quot;SQL&quot; hash=&quot;MD5:hex&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_util.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_sugarcrm.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;dsn&gt;DBI:mysql:sugarcrm:localhost&lt;/dsn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;admin&gt;admin&lt;/admin&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;passwd&gt;secret&lt;/passwd&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;initquery&gt;set names utf8&lt;/initquery&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;delete&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=People&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;table&gt;users&lt;/table&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;Person&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;inetOrgPerson&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;seciossIamAccount&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;uid&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;uid&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;cn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;ifnull(concat(last_name, &#39; &#39;, first_name), last_name)&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;sn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;last_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;givenname&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;first_name&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;title&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;title&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;department&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;department&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;userpassword&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_hash&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;homephone&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_home&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;telephonenumber&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_work&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;mobile&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_mobile&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;facsimiletelephonenumber&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_fax&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;ipphone&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;phone_other&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;street&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_street&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;l&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_city&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;st&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_state&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;c&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_country&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;postalcode&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;address_postalcode&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;createtimestamp&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;date_entered&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;modifytimestamp&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;date_modified&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;description&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;description&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;mail&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;email_address&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;fromtbls&gt;email_addresses,email_addr_bean_rel&lt;/fromtbls&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;joinwhere&gt;email_addr_bean_rel.bean_id = users.id and email_addr_bean_rel.email_address_id = email_addresses.id&lt;/joinwhere&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;insert into email_addresses values(&#39;%{createGuid()}&#39;, &#39;%a&#39;, upper(&#39;%a&#39;), 0, 0, now(), now(), 0)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;set @paddr=if((select count(*) from email_addr_bean_rel where bean_id = &#39;%o&#39;), 0, 1)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;insert into email_addr_bean_rel values(&#39;%{createGuid()}&#39;, (select id from email_addresses where email_addr<br />
ess = &#39;%a&#39;), &#39;%o&#39;, &#39;Users&#39;, @paddr, if(@paddr, 0, 1), now(), now(), 0)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;set @mailid=(select id from email_addresses where email_address = &#39;%a&#39; and id in (select email_address_id from email_addr_bean_rel where bean_id = &#39;%o&#39;))&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;delete from email_addresses where id = @mailid&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;delete from email_addr_bean_rel where bean_id = &#39;%o&#39; and email_address_id = @mailid&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;manager&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oname&gt;User&lt;/oname&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;where&gt;id = (select reports_to_id from users where id = &#39;%o&#39;)&lt;/where&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;update users set reports_to_id = &#39;%a&#39; where id = &#39;%o&#39;&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;update users set reports_to_id = null where id = &#39;%o&#39;&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;value type=&quot;function&quot;&gt;createGuid()&lt;/value&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;status&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;value type=&quot;constant&quot;&gt;Active&lt;/value&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;delproc&gt;update users set status = &#39;Inactive&#39; where id = &#39;%o&#39;&lt;/delproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;addproc&gt;insert into user_preferences values(&#39;%{createGuid()}&#39;, &#39;global&#39;, 0, now(), now(), &#39;%o&#39;, &#39;%{encode_base64(getFileContents(&quot;/opt/secioss/etc/sugarcrm-userpref.txt&quot;), &quot;&quot;)}&#39;)&lt;/addproc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/strginfo&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/storage&gt;<br />
&nbsp; &lt;/data&gt;<br />
&lt;/config&gt;
</p>
<hr />
<p>
ÀßÄê¤Î³ÎÇ§¤Ï¡¢LISM¥µ¡¼¥Ð¤Î¥Ç¡¼¥â¥ó¤òµ¯Æ°¤·¤Æ¡¢¥Ç¡¼¥¿¤Î¸¡º÷¤ä¹¹¿·¤òLISM¤ËÂÐ¤·¤Æ¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
¥Ç¡¼¥â¥ó¤òµ¯Æ°¤¹¤ë¾ì¹ç¤Ï¡¢°ì»þÅª¤Ë&quot;&lt;oc&gt;seciossIamAccount&lt;/oc&gt;&quot;¤Î¹Ô¤ò¥³¥á¥ó¥È¥¢¥¦¥È¤·¤Æ²¼¤µ¤¤¡£<br />
# cp /opt/secioss/etc/openldap/slapd.conf.lism /opt/secioss/etc/openldap/slapd.conf<br />
# /opt/secioss/sbin/slapd -h ldap://:3890 -u ldap -d256<br />
# ldapseach -H ldap://:3890 -b &#39;dc=lism,dc=com&#39;&nbsp; # ¸¡º÷¤Î¾ì¹ç
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>4. Æ°ºî³ÎÇ§</h3>
<p>
<strong>4.1 IDÆ±´ü¤Î³ÎÇ§</strong>
</p>
<p>
<strong>4.1.1 Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹-&gt;¥¢¥×¥ê¥±¡¼¥·¥ç¥ó</strong>
</p>
<p>
&rdquo;3.1 IDÆ±´ü¤ÎÀßÄê&rdquo;¤ÎÆ±´ü¤ÎÊý¸þ¤Ç&rdquo;1.Åý¹çID´ÉÍý -&gt; ¥µ¡¼¥Ó¥¹&rdquo;¤òÁªÂò¤·¤¿¾ì¹ç¤Ë¡¢°Ê²¼¤Îºî¶È¤ò¹Ô¤Ã¤Æ²¼¤µ¤¤¡£<br />
Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤«¤éID¤Î¹¹¿·¥Ç¡¼¥¿¤ò¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÆ±´ü¤·¤Þ¤¹¡£<br />
¡¡# /opt/secioss/sbin/idsync sp
</p>
<p>
&nbsp;
</p>
<p>
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤¹¤ë¥Ç¡¼¥¿¤Î¹¹¿·¤Ï¹Ô¤ï¤º¤Ë¡¢¹¹¿·¥Ç¡¼¥¿¤Î³ÎÇ§¤Î¤ß¤·¤¿¤¤¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ¡¢&quot;/opt/secioss/var/lib/csv/user.csv&quot;¤ÎÆâÍÆ¤ò³ÎÇ§¤·¤Æ²¼¤µ¤¤¡£<br />
¡¡# /opt/secioss/sbin/idsync -n sp
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢º¹Ê¬¥Ç¡¼¥¿¤Î¥Á¥§¥Ã¥¯¤Î¤ß¹Ô¤¦¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
¡¡# perl C:\opt\secioss\sbin\idsync -r sp
</p>
<p>
&nbsp;
</p>
<p>
Àµ¾ï¤Ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËÂÐ¤·¤ÆID¤ÎÆ±´ü¤¬¹Ô¤¨¤ë¤³¤È¤ò³ÎÇ§¤Ç¤­¤¿¤é¡¢cron¤Ë1»þ´Ö¤Ë1²ó &quot;/opt/secioss/sbin/idsync sp&quot;¤ò¼Â¹Ô¤¹¤ë¤è¤¦¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>4.1.2 ¥¢¥×¥ê¥±¡¼¥·¥ç¥ó-&gt;Åý¹çID´ÉÍý¥µ¡¼¥Ó¥¹</strong>
</p>
<p>
&rdquo;3.1 IDÆ±´ü¤ÎÀßÄê&rdquo;¤ÎÆ±´ü¤ÎÊý¸þ¤Ç¡¢&rdquo;2.¥µ¡¼¥Ó¥¹ -&gt; Åý¹çID´ÉÍý&rdquo;¤òÀßÄê¤·¤¿¾ì¹ç¡¢°Ê²¼¤Îºî¶È¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤«¤éID¤Îº¹Ê¬¥Ç¡¼¥¿¤òÅý¹çID´ÉÍý¥µ¡¼¥Ó¥¹¤ËÆ±´ü¤·¤Þ¤¹¡£<br />
¡¡# /opt/secioss/sbin/idsync&nbsp;idp
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢º¹Ê¬¥Ç¡¼¥¿¤Î¥Á¥§¥Ã¥¯¤Î¤ß¹Ô¤¦¾ì¹ç¤Ï¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
¡¡# perl C:\opt\secioss\sbin\idsync -r&nbsp;idp&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
<strong>4.2 ¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Î³ÎÇ§</strong>&nbsp;&nbsp;
</p>
<p>
&quot;&lt;¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎURL&gt;/sso/autologin.php?sso_app=&lt;2.2¹à¤Î¥¢¥×¥ê¥±¡¼¥·¥ç¥óÌ¾&gt;&quot;¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¹¤ë¤³¤È¤ò³ÎÇ§¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>5. OAuth 2.0 + Restful API</h3>
<p>
OAuth 2.0 + Restful API¤òÀßÄê¤¹¤ëÁ°¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈIDÆ±´ü¤ÎÀßÄê¤¬´°Î»¤·¤Æ¤¤¤ë¤â¤Î¤È¤·¤Þ¤¹¡£
</p>
<h5>5.1&nbsp; OAuth¤ÎÀßÄê</h5>
<p>
ºÇ½é¤ËOAuthÍÑ¤Î¥Ç¡¼¥¿¥Ù¡¼¥¹¤òºîÀ®¤·¤Þ¤¹¡£<br />
¥Ç¡¼¥¿¥Ù¡¼¥¹¥µ¡¼¥Ð¤¬mysql¤Î¾ì¹ç¡¢°Ê²¼¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
# cd secioss-idsuite-cloud-sp-2.0.x<br />
# mysql --user=&lt;DB¥æ¡¼¥¶&gt; --password=&lt;DB¥Ñ¥¹¥ï¡¼¥É&gt;<br />
mysql&gt; create database oauth2;<br />
mysql&gt; use oauth2;<br />
mysql&gt; source ./src/oauth2/mysql_create_tables.sql
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤ËOAuth¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£<br />
# ./config.sh oauth<br />
¡¦¥Ç¡¼¥¿¥Ù¡¼¥¹¤Î¼ïÎà[1. mysql|2. PostgreSQL]¡§¡¡¥Ç¡¼¥¿¥Ù¡¼¥¹¥µ¡¼¥Ð¤Î¼ïÎà<br />
¡¦¥Ç¡¼¥¿¥Ù¡¼¥¹¤Î¥Û¥¹¥ÈÌ¾¡§¡¡¥Ç¡¼¥¿¥Ù¡¼¥¹¥µ¡¼¥Ð¤Î¥Û¥¹¥ÈÌ¾<br />
¡¦¥Ç¡¼¥¿¥Ù¡¼¥¹¤Î¥æ¡¼¥¶¡§¡¡¥Ç¡¼¥¿¥Ù¡¼¥¹¤ËÀÜÂ³¤¹¤ë¥æ¡¼¥¶<br />
¡¦¥Ç¡¼¥¿¥Ù¡¼¥¹¤Î¥Ñ¥¹¥ï¡¼¥É¡§¡¡¥Ç¡¼¥¿¥Ù¡¼¥¹¤ËÀÜÂ³¤¹¤ë¥Ñ¥¹¥ï¡¼¥É
</p>
<p>
&nbsp;
</p>
<h5>5.2&nbsp; Restful API¤ÎÀßÄê</h5>
<p>
Restful API¤«¤é¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¤ò»²¾È²ÄÇ½¤È¤¹¤ëÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£<br />
°Ê²¼¤ÏMosP¤Î¶ÐÂÕ¾ðÊó¤ò»²¾È²ÄÇ½¤È¤¹¤ëÀßÄê¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>/opt/secioss/etc/lism_rest.conf<br />
</strong>
</p>
<p>
<strong>
<hr />
</strong>
</p>
<p>
&lt;config&gt;<br />
&nbsp; &lt;data name=&quot;MosP&quot;&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organization&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=MosP&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;storage name=&quot;SQL&quot; hash=&quot;MD5:hex:2&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;libload&gt;LISM/Utils/lism_util.pl&lt;/libload&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;dsn&gt;DBI:Pg:dbname=mospv4;host=localhost&lt;/dsn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;admin&gt;usermosp&lt;/admin&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;passwd&gt;passmosp&lt;/passwd&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;add&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;modify&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;delete&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;table&gt;pfm_user&lt;/table&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;pfm_user_id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;user&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;uid&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;uid&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;user_id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;Attendance&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oname&gt;User&lt;/oname&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;joinwhere&gt;pfm_user.personal_id = tmd_attendance.personal_id&lt;/joinwhere&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;subcontainer&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=Attendances&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/subcontainer&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;add&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;modify&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;noop&gt;delete&lt;/noop&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;table&gt;tmd_attendance&lt;/table&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;tmd_attendance_id&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/id&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;sort&gt;work_date&lt;/sort&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;attendance&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;work_date&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;work_date&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;work_date&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;type&gt;date&lt;/type&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;start_time&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;start_time&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;end_time&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;column&gt;end_time&lt;/column&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;work_type&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;tmm_work_type.work_type_name&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;fromtbls&gt;tmm_work_type&lt;/fromtbls&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;joinwhere&gt;tmd_attendance.work_type_code = tmm_work_type.work_type_code&lt;/joinwhere&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;rest&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;selexpr&gt;rest_start || &#39; &#39; || rest_end&lt;/selexpr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;fromtbls&gt;tmd_rest&lt;/fromtbls&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;joinwhere&gt;tmd_attendance.personal_id = tmd_rest.personal_id and tmd_attendance.work_date = tmd_rest.work_date&lt;/joinwhere&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/storage&gt;<br />
&nbsp; &lt;/data&gt;<br />
&lt;/config&gt;
</p>
<hr />
<p>
&nbsp;
</p>
<p>
Restful API¤Î¥Ñ¥¹¤ò&quot;/cgi-bin/lism/attendance.cgi&quot;¤È¤¹¤ë¾ì¹ç¡¢°Ê²¼¤ÎÀßÄê¤ò¹Ô¤Ã¤Æ²¼¤µ¤¤¡£<br />
/etc/httpd.conf¤ÎÂÀ»ú¤Î²Õ½ê¤ò½¤Àµ¤·¤Æ²¼¤µ¤¤¡£
</p>
<hr />
<p>
&lt;Directory &quot;/var/www/cgi-bin&quot;&gt;<br />
&nbsp;&nbsp;&nbsp; AllowOverride None<br />
&nbsp;&nbsp;&nbsp; Options None<br />
&nbsp;&nbsp;&nbsp;&nbsp;<strong>Options FollowSymLinks<br />
</strong>&nbsp;&nbsp;&nbsp; Order allow,deny<br />
&nbsp;&nbsp;&nbsp; Allow from all<br />
&lt;/Directory&gt;
</p>
<hr />
<p>
&nbsp;
</p>
<p>
/var/www/cgi-bin/lism/lism_restapi.conf¤Ë°Ê²¼¤ÎÀßÄê¤òÄÉµ­¤·¤Æ²¼¤µ¤¤¡£<br />
attendancedn &quot;ou=Attendances,uid=%u,ou=MosP&quot;
</p>
<p>
&nbsp;
</p>
<p>
Restful APIÍÑ¤Î¥·¥ó¥Ü¥ê¥Ã¥¯¥ê¥ó¥¯¤òºîÀ®¸å¡¢httpd¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£<br />
# cd /var/www/cgi-bin/lism<br />
# ln -s lism_rest.cgi attendance.cgi<br />
# /etc/init.d/httpd restart
</p>
<p>
&nbsp;
</p>
<h5>5.3&nbsp; ÀÜÂ³³ÎÇ§</h5>
<p>
Restful APIÀÜÂ³³ÎÇ§ÍÑ¤Î¥¹¥¯¥ê¥×¥È¤òWeb¥µ¡¼¥Ð¤ËÇÛÃÖ¤·¤Æ²¼¤µ¤¤¡£<br />
URL¤Ï¡¢https://&lt;¥Û¥¹¥ÈÌ¾&gt;/oauth_client.php¤È¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>oauth_client.php<br />
</strong>
</p>
<hr />
<p>
&lt;?php<br />
&nbsp;&nbsp; $app_id = &quot;test&quot;;<br />
&nbsp;&nbsp; $app_secret = &quot;test&quot;;<br />
&nbsp;&nbsp; $my_url = &quot;https://&lt;¥Û¥¹¥ÈÌ¾&gt;/oauth_client.php&quot;;
</p>
<p>
&nbsp;&nbsp; session_start();<br />
&nbsp;&nbsp; $code = $_REQUEST[&quot;code&quot;];
</p>
<p>
&nbsp;&nbsp; if(empty($code)) {<br />
&nbsp;&nbsp;&nbsp;&nbsp; $_SESSION[&#39;state&#39;] = md5(uniqid(rand(), TRUE)); //CSRF protection<br />
&nbsp;&nbsp;&nbsp;&nbsp; $url = &quot;https://&lt;Restful API¤Î¥Û¥¹¥ÈÌ¾&gt;/path/oauth/authorize.php?client_id=&quot;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; . $app_id . &quot;&amp;redirect_uri=&quot; . urlencode($my_url) . &quot;&amp;state=&quot;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; . $_SESSION[&#39;state&#39;];
</p>
<p>
&nbsp;&nbsp;&nbsp;&nbsp; echo(&quot;&lt;script&gt; top.location.href=&#39;&quot; . $url . &quot;&#39;&lt;/script&gt;&quot;);<br />
&nbsp;&nbsp; }
</p>
<p>
&nbsp;&nbsp; if($_REQUEST[&#39;state&#39;] == $_SESSION[&#39;state&#39;]) {<br />
&nbsp;&nbsp;&nbsp;&nbsp; if (!isset($_SESSION[&#39;access_token&#39;])) {<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; $url = &quot;https://&lt;Resutful API¤Î¥Û¥¹¥ÈÌ¾&gt;/path/oauth/token.php?&quot;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; . &quot;client_id=&quot; . $app_id . &quot;&amp;redirect_uri=&quot; . urlencode($my_url)<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; . &quot;&amp;client_secret=&quot; . $app_secret . &quot;&amp;code=&quot; . $code;
</p>
<p>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; $response = file_get_contents($url);<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; $params = null;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; $params = json_decode($response);<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; $_SESSION[&#39;access_token&#39;] = $params-&gt;access_token;<br />
&nbsp;&nbsp;&nbsp;&nbsp; }
</p>
<p>
&nbsp;&nbsp;&nbsp;&nbsp; $url = &quot;https://&lt;Restful API¤Î¥Û¥¹¥ÈÌ¾&gt;/cgi-bin/lism/attendance.cgi?oauth_token=&quot;.$_SESSION[&#39;access_token&#39;].&quot;&amp;action=search&amp;filter=&quot;.urlencode(&quot;(work_date&gt;=20xx-yy-zz)&quot;);
</p>
<p>
&nbsp;&nbsp;&nbsp;&nbsp; $response = file_get_contents($url);<br />
&nbsp;&nbsp;&nbsp;&nbsp; $json_res = json_decode($response);<br />
&nbsp;&nbsp;&nbsp;&nbsp; for ($i = 0;&nbsp;$i &lt; count($json_res-&gt;entries); $i++) {<br />
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;&nbsp; print(&quot;ÆüÉÕ: &quot;.$json_res-&gt;entries[0]-&gt;work_date[$i].&quot;&lt;br&gt;&quot;);<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &nbsp;print(&quot;³«»Ï: &quot;.$json_res-&gt;entries[0]-&gt;start_time[$i].&quot;&lt;br&gt;&quot;);<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &nbsp;&nbsp; print(&quot;½ªÎ»: &quot;.$json_res-&gt;entries[0]-&gt;end_time[$i].&quot;&lt;br&gt;&quot;);<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &nbsp;&nbsp; print(&quot;&lt;br&gt;&quot;);<br />
&nbsp;&nbsp;&nbsp;&nbsp; }<br />
&nbsp;&nbsp; } else {<br />
&nbsp;&nbsp;&nbsp;&nbsp; echo(&quot;The state does not match. You may be a victim of CSRF.&quot;);<br />
&nbsp;&nbsp; }<br />
?&gt;
</p>
<hr />
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤Ëhttps://&lt;Restful&nbsp;API¤Î¥Û¥¹¥ÈÌ¾&gt;/path/oauth/addclient.php¤«¤é¡¢¥¯¥é¥¤¥¢¥ó¥È¤È¤·¤ÆÀÜÂ³³ÎÇ§ÍÑ¤Î¥¹¥¯¥ê¥×¥È¤òÅÐÏ¿¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦Client ID: ¥¹¥¯¥ê¥×¥È¤Î$app_id¤ÎÃÍ<br />
¡¦Client Secret: ¥¹¥¯¥ê¥×¥È¤Î$app_secret¤ÎÃÍ<br />
¡¦Redirect URL:&nbsp; ¥¹¥¯¥ê¥×¥È¤Î$my_url¤ÎÃÍ
</p>
<p>
&nbsp;
</p>
<p>
https://&lt;¥Û¥¹¥ÈÌ¾&gt;/oauth_client.php¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤È¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Î¥í¥°¥¤¥ó²èÌÌ¤¬É½¼¨¤µ¤ì¤Þ¤¹¤Î¤Ç¡¢¥í¥°¥¤¥ó¤·¤Æ²¼¤µ¤¤¡£<br />
¥í¥°¥¤¥ó¤·¤¿¥æ¡¼¥¶¤Î¶ÐÂÕ¾ðÊó¤¬É½¼¨¤µ¤ì¤ì¤ÐÀÜÂ³À®¸ù¤Ç¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2011/02/secioss_identity_suite_cloud_e_2.html</link>
         <guid>http://www.secioss.co.jp/2011/02/secioss_identity_suite_cloud_e_2.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00201¥½¥ê¥å¡¼¥·¥ç¥ó</category>
        
        
         <pubDate>Wed, 02 Feb 2011 14:14:04 +0900</pubDate>
      </item>
            <item>
         <title>¥ª¡¼¥×¥ó¥½¡¼¥¹¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡ÖSecioss Access Manager Community Edition¡×</title>
         <description><![CDATA[<p>
¶áÇ¯¡¢´ë¶È¤Ë¤ª¤±¤ëÆâÉôÅýÀ©¤Î½ÅÍ×À­¤¬Èó¾ï¤Ë¹â¤Þ¤Ã¤Æ¤ª¤ê¡¢¤½¤ì¤ËÈ¼¤¤¡¢´ë¶ÈÆâ¤Î¥·¥¹¥Æ¥à¤ä¥Ç¡¼¥¿¤ËÂÐ¤¹¤ë¥¢¥¯¥»¥¹¤òÀµ¤·¤¯´ÉÍý¤¹¤ë»ÅÁÈ¤ß¤¬É¬Í×¤È¤µ¤ì¤Æ¤¤¤Þ¤¹¡£¥¢¥¯¥»¥¹¤Î´ÉÍý¤Ë¤Ï¡¢¥¢¥¯¥»¥¹¤·¤Æ¤¤¤ëID¤¬ÍøÍÑ¼ÔËÜ¿Í¤Ç¤¢¤ë¤³¤È¤òÊÝ¾Ú¤¹¤ë¤È¤È¤â¤Ë¡¢¥·¥¹¥Æ¥à¤ä¥Ç¡¼¥¿¤ËÂÐ¤¹¤ë¥¢¥¯¥»¥¹¸¢¸Â¤ò¤­¤Á¤ó¤ÈÀßÄê¤¹¤ë¤³¤È¤¬É¬Í×¤È¤Ê¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¥»¥·¥ª¥¹¤Ç¤Ï¡¢OpenLDAP¡¢Shibboleth¡¢mod_auth_tktÅù¤Î¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤ò³èÍÑ¤·¤¿¥ª¡¼¥×¥ó¥½¡¼¥¹¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥ê¥å¡¼¥·¥ç¥ó¡ÖSecioss Access Manager Community Edition¡×¤ò¤´Äó¶¡¤¤¤¿¤·¤Þ¤¹¡£
</p>
<p>
Secioss Access Manager Community Edition¤Ï¡¢GPL¤È¾¦ÍÑ¥é¥¤¥»¥ó¥¹¤Î¥Ç¥å¥¢¥ë¥é¥¤¥»¥ó¥¹¡ÊShibbolethÅù¼ýÏ¿¤·¤Æ¤¤¤ë¥½¥Õ¥È¥¦¥§¥¢¤Î¥é¥¤¥»¥ó¥¹¤Ï¤½¤ì¤¾¤ì¤Î¤â¤Î¤Ë½àµò¤·¤Þ¤¹¡Ë¤Ç¡¢°Ê²¼¤«¤é¥À¥¦¥ó¥í¡¼¥É¤Ç¤­¤Þ¤¹¡£<br />
¡¦¥À¥¦¥ó¥í¡¼¥É¡§&nbsp;<a href="http://sourceforge.jp/projects/secioss-auth/releases/">http://sourceforge.jp/projects/secioss-auth/releases/</a>
</p>
<p>
&nbsp;
</p>
<p>
<a href="http://www.secioss.co.jp/2010/09/secioss_access_manager_communi.html" title="Quick Start Guide">¥¯¥¤¥Ã¥¯¥¹¥¿¡¼¥È¥¬¥¤¥É</a>¤ò¤´Í÷Äº¤¯¤È¡¢´ÊÃ±¤ËGoogle Apps¤ÈSalesforce¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò´Ä¶­¤ò¹½ÃÛ¤¤¤¿¤À¤±¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¥ª¡¼¥×¥ó¥½¡¼¥¹¤ò³èÍÑ¤¹¤ë¤³¤È¤Ç¡¢ ¥·¥ó¥×¥ë¤«¤Ä¥«¥¹¥¿¥Þ¥¤¥ºÀ­¤Î¹â¤¤¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥×¥é¥Ã¥È¥Õ¥©¡¼¥à¤ò¼Â¸½¤¤¤¿¤·¤Þ¤¹¡£ ¤ªµÒÍÍ¤ÎÍ×Ë¾¤Ë¹ç¤ï¤»¤Æ¡¢´ë¶È¥·¥¹¥Æ¥à¤Ø¤ÎÆ³Æþ¤ä¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ø¤ÎÁÈ¤ß¹þ¤ß¤Ë½ÀÆð¤ËÂÐ±þ¤·¡¢¥»¥­¥å¥ê¥Æ¥£¤Î¶¯²½¤ä¥æ¡¼¥¶¤ÎÍøÊØÀ­¸þ¾å¤Ë¹×¸¥¤¤¤¿¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¤µ¤é¤Ë¡¢ÊÀ¼Ò¤ÎÅý¹çID´ÉÍý¥½¥ê¥å¡¼¥·¥ç¥ó¡Ö<a href="http://www.secioss.co.jp/2007/12/secioss_identityaccess_manager.html" title="Identity Manager">Secioss Identity Manager</a>¡×¤ÈÁÈ¤ß¹ç¤ï¤»¤Æ¤¤¤¿¤À¤¯¤³¤È¤Ç¡¢ID¤ä¥¢¥¯¥»¥¹¸¢¸Â¤Î°ì¸µ´ÉÍý¤¬²ÄÇ½¤È¤Ê¤ê¡¢¤è¤ê¶¯¸Ç¤Ê¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó´Ä¶­¤ò¹½ÃÛ¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>¥·¥¹¥Æ¥à¹½À®</h3>
<p>
<img src="http://www.secioss.co.jp/images/system.JPG" alt="system.JPG" width="574" height="340" />
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>Secioss Access Manager Community Edition</h3>
<p>
¼ÒÆâ¤Î¥·¥¹¥Æ¥à¤ËÂÐ¤¹¤ëWeb¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤È¥°¥ë¡¼¥×¤Ë¤è¤ë¥¢¥¯¥»¥¹À©¸æ¤ò¹Ô¤¦¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£Web¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ç¤Ï¡¢¥·¥¹¥Æ¥à¤Ë¥í¥°¥¤¥ó½èÍý¤¬É¬Í×¤Ê¾ì¹ç¤Ç¤â¡¢ÂåÍýÇ§¾Úµ¡Ç½¤Ë¤è¤Ã¤ÆSecioss Access Manager Community Edition¤¬¼«Æ°Åª¤Ë¥í¥°¥¤¥ó¤ò¹Ô¤¤¤Þ¤¹¡£¤Þ¤¿¡¢Åý¹çWindowsÇ§¾Úµ¡Ç½¤ò»ÈÍÑ¤¹¤ë¤³¤È¤Ç¡¢Windows¤Î¥í¥°¥¤¥ó¤È¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤òÏ¢·È¤µ¤»¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<h4>ÆÃÄ§</h4>
<ul>
	<li>
	<p>
	Secioss Access Manager Community Edition¤Ø¥í¥°¥¤¥ó¤¹¤ë¤À¤±¤Ç¡¢³Æ¥·¥¹¥Æ¥à¤Ø¤Î¥¢¥¯¥»¥¹¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥ê¥Ð¡¼¥¹¥×¥í¥­¥·Êý¼°¡¢¥¨¡¼¥¸¥§¥ó¥ÈÊý¼°¤Ë²Ã¤¨¤Æ¡¢Shibboleth¡¢SAML¤äOpenID¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ËÂÐ±þ¤·¤Æ¤¤¤Þ¤¹¡£&nbsp;
	</p>
	</li>
	<li>
	<p>
	ID¡¦¥Ñ¥¹¥ï¡¼¥ÉÇ§¾Ú¤ÎÂ¾¤ËÅý¹çWindowsÇ§¾Ú¡¢¥¯¥é¥¤¥¢¥ó¥È¾ÚÌÀ½ñ¡¢¥ï¥ó¥¿¥¤¥à¥Ñ¥¹¥ï¡¼¥ÉÇ§¾Ú¡¢·ÈÂÓÅÅÏÃ¤Î¸ÄÂÎ¼±ÊÌÈÖ¹æÇ§¾Ú¤ËÂÐ±þ¤·¤Æ¤¤¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Åý¹çWindowsÇ§¾Ú¤Ë¤è¤êWindows¥Þ¥·¥ó¤Ë¥í¥°¥¤¥ó¤¹¤ë¤À¤±¤Ç¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	·ÈÂÓÅÅÏÃ¤«¤é¥·¥¹¥Æ¥à¤Ø¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ë¤âÂÐ±þ¤·¤Æ¤¤¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥·¥¹¥Æ¥à¤ËÂÐ¤¹¤ë¥¢¥¯¥»¥¹¤ò¡¢ÆÃÄê¤Î¥°¥ë¡¼¥×¤Ë½êÂ°¤¹¤ë¥æ¡¼¥¶¤ËÀ©¸Â¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h4>¸ú²Ì</h4>
<ul>
	<li>
	<p>
	¥·¥¹¥Æ¥à¤Ø¥í¥°¥¤¥ó¤¹¤ë¼ê´Ö¤ò¾Ê¤¯¤³¤È¤Ç¡¢¥æ¡¼¥¶¤ÎÀ¸»ºÀ­¤¬¸þ¾å¤·¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥æ¡¼¥¶¤Ï¥Ñ¥¹¥ï¡¼¥É¤ò£±¤Ä´ÉÍý¤¹¤ì¤Ð¤è¤¯¡¢¥Ñ¥¹¥ï¡¼¥ÉËº¤ì¤Ë¤è¤ë¥Ñ¥¹¥ï¡¼¥É¤ÎºÆÈ¯¹Ô¤òºï¸º¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Ç§¾Ú¤ä¥¢¥¯¥»¥¹À©¸æ¤ò°ì¸µÅª¤Ë´ÉÍý¤·¡¢¼ÒÆâ¥·¥¹¥Æ¥à¤ËÅý°ìÅª¤Ê¥»¥­¥å¥ê¥Æ¥£¥Ý¥ê¥·¡¼¤òÅ¬ÍÑ¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>ÂÐ±þOS</h3>
<ul>
	<li>
	<p>
	Red Hat Enterprise Linux 5
	</p>
	</li>
	<li>
	<p>
	CentOS 5
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>ÂÐ±þ¥¢¥×¥ê¥±¡¼¥·¥ç¥ó</h3>
<p>
¼¡¤ÎWeb¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤È¤ÎÏ¢·È¤¬²ÄÇ½¤Ç¤¹¡£<br />
¤½¤ÎÂ¾¤ÎWeb¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¤Ä¤¤¤Æ¤âÂÐ±þ²ÄÇ½¤Ç¤¹¤Î¤Ç¡¢¤´ÁêÃÌ²¼¤µ¤¤¡£
</p>
<ul>
	<li>
	<p>
	¥°¥ë¡¼¥×¥¦¥§¥¢<br />
	¡¡¡¦Aipo<br />
	¡¡¡¦¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó£²
	</p>
	</li>
	<li>
	<p>
	¶ÐÂÕ´ÉÍý<br />
	¡¡¡¦MosP
	</p>
	</li>
	<li>
	<p>
	SaaS¥µ¡¼¥Ó¥¹<br />
	¡¡¡¦Salesforce<br />
	¡¡¡¦Google Apps
	</p>
	</li>
	<li>
	<p>
	¥Ý¡¼¥¿¥ë<br />
	¡¡¡¦NetCommons<br />
	¡¡¡¦XOOPS Cube
	</p>
	</li>
	<li>
	<p>
	¥Ö¥í¥°<br />
	¡¡¡¦MovableType
	</p>
	</li>
	<li>
	<p>
	CRM<br />
	¡¡¡¦SugarCRM
	</p>
	</li>
	<li>
	<p>
	¥¢¥ó¥±¡¼¥È¥·¥¹¥Æ¥à<br />
	¡¡¡¦LimeSurvey
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>¥µ¥Ý¡¼¥È</h3>
<p>
¥µ¥Ý¡¼¥È¡¦¥µ¡¼¥Ó¥¹¤òÄó¶¡¤·¤Æ¤¤¤Þ¤¹¡£&nbsp;
</p>
<p>
¥µ¥Ý¡¼¥È¡¦¥µ¡¼¥Ó¥¹¤ÎÆâÍÆ¤Ï°Ê²¼¤Ë¤Ê¤ê¤Þ¤¹¡£
</p>
<ul>
	<li>
	<p>
	À½ÉÊ¤Î¥¤¥ó¥¹¥È¡¼¥ëÊýË¡¡¢ÀßÄêÊýË¡¡¢µ¡Ç½¤Ë´Ø¤¹¤ë¥á¡¼¥ë¤Ë¤è¤ë¥Þ¥Ë¥å¥¢¥ë¥ì¥Ù¥ë¤ÎÌä¤¤¹ç¤ï¤»ÂÐ±þ
	</p>
	</li>
	<li>
	<p>
	¥á¡¼¥ë¤Ç¤Î¥ª¥Õ¥µ¥¤¥È¾ã³²Ä´ºº&nbsp;
	</p>
	</li>
	<li>
	<p>
	À½ÉÊ¤Î¥Ð¡¼¥¸¥ç¥ó¥¢¥Ã¥×ÈÇ¤ÎÄó¶¡
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>Ìä¹ç¤»</h3>
<p>
ËÜ¥½¥Õ¥È¥¦¥§¥¢¤Ë´Ø¤¹¤ë¤ªÌä¹ç¤»¤Ï<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤«¤é¤ª´ê¤¤¤·¤Þ¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2010/09/secioss_access_manager_communi_1.html</link>
         <guid>http://www.secioss.co.jp/2010/09/secioss_access_manager_communi_1.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00201¥½¥ê¥å¡¼¥·¥ç¥ó</category>
                  <category domain="http://www.sixapart.com/ns/types#category">00500¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢</category>
        
        
         <pubDate>Mon, 20 Sep 2010 12:19:46 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Access Manager Communiy Edition ¥¯¥¤¥Ã¥¯¥¹¥¿¡¼¥È¥¬¥¤¥É</title>
         <description><![CDATA[<p>
Secioss Access Manager Community Edition¡Ê°Ê¹ßAccess Manager¡Ë¤òÆ³Æþ¤·¤Æ¡¢Google Apps¤ÈSalesforce¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó´Ä¶­¤ò¹½ÃÛ¤¹¤ë¤Þ¤Ç¤Ë¤Ä¤¤¤Æ²òÀâ¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>´Ä¶­</h3>
<p>
¡¦OS¡§ CentOS 5<br />
¡¦LDAP¥µ¡¼¥Ð¡§¡¡OpenLDAP 2.3.43¡ÊCentOS 5Æ±º­¤Î¤â¤Î¡Ë
</p>
<p>
&nbsp;
</p>
<h3>¥¤¥ó¥¹¥È¡¼¥ë</h3>
<h5>»öÁ°½àÈ÷</h5>
<p>
ºÇ½é¤Ë°Ê²¼¤Îrpm¥Ñ¥Ã¥±¡¼¥¸¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦libxml2-devel<br />
¡¦libtool-ltdl<br />
¡¦unixODBC<br />
¡¦httpd<br />
¡¦mod_perl<br />
¡¦perl-LDAP<br />
¡¦perl-DBI<br />
¡¦perl-DBD-Pg<br />
¡¦perl-libwww-perl<br />
¡¦php-pear<br />
¡¦php-mysql<br />
¡¦php-xml<br />
¡¦words.noarch
</p>
<p>
&nbsp;
</p>
<p>
¥Ñ¥¹¥ï¡¼¥É¶¯ÅÙ¥Á¥§¥Ã¥¯ÍÑ¤Î¼­½ñ¥Õ¥¡¥¤¥ë¤òºîÀ®¤·¤Þ¤¹¡£<br />
&nbsp;# create-cracklib-dict /usr/share/dict/linux.words
</p>
<p>
&nbsp;
</p>
<p>
OS¤Î»þ´Ö¤òÀµ¤·¤¤»þ¹ï¤Ë¹ç¤ï¤»¤Þ¤¹¡£<br />
&nbsp;# ntpdate ntp.nict.jp
</p>
<p>
&nbsp;
</p>
<h5>Access Manager¤Î¥¤¥ó¥¹¥È¡¼¥ë</h5>
<p>
°Ê²¼¤ÎURL¤«¤éAccess Manager¤Î¥Ñ¥Ã¥±¡¼¥¸¥Õ¥¡¥¤¥ë¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦Secioss Access Manager Community Edition
</p>
<p>
&nbsp;
</p>
<p>
¥À¥¦¥ó¥í¡¼¥É¤·¤¿¥Ñ¥Ã¥±¡¼¥¸¥Õ¥¡¥¤¥ë¤òÅ¸³«¤·¤Æ¡¢¥¤¥ó¥¹¥È¡¼¥ë¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤·¤Æ²¼¤µ¤¤¡£<br />
&nbsp;# ./install.sh install
</p>
<p>
&nbsp;
</p>
<p>
Access ManagerÍÑ¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤ò¥³¥Ô¡¼¤·¤Æ¤«¤é¡¢Apache¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£<br />
&nbsp;# cp /etc/httpd/conf.d/ssl.conf-secioss /etc/httpd/conf.d/ssl.conf&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>ÀßÄê</h3>
<h5>LDAP¥µ¡¼¥Ð</h5>
<p>
LDAP¥µ¡¼¥Ð¤ËAccess ManagerÍÑ¤ÎLDAP¥¹¥­¡¼¥Þ¤òÅÐÏ¿¤·¤Þ¤¹¡£<br />
&nbsp;# cp /usr/share/doc/secioss-sso-enterprise-x.x.x/conf/secioss.schema /etc/openldap.schema
</p>
<p>
&nbsp;
</p>
<p>
OpenLDAP¤ÎÀßÄê¥Õ¥¡¥¤¥ë/etc/openldap/slapd.conf¤Ë°Ê²¼¤ÎÀßÄê¤òÄÉµ­¤·¤Æ¡¢LDAP¥µ¡¼¥Ð¤òºÆµ¯Æ°¤·¤Æ²¼¤µ¤¤¡£
</p>
<hr />
<p>
<br />
include&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; /etc/openldap/schema/ppolicy.schema<br />
include&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; /etc/openldap/schema/secioss.schema<br />
<br />
¡¦¡¦¡¦<br />
<br />
attributeoptions lang- phonetic
</p>
<hr />
<p>
&nbsp;
</p>
<p>
LDAP¥µ¡¼¥Ð¤Î¥Ç¥£¥ì¥¯¥È¥ê¥Ä¥ê¡¼¤Ï¡¢°Ê²¼¤Î¹½À®¤òÁÛÄê¤·¤Æ¤¤¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc00.jpg" alt="" title="samc00" width="429" height="321" />
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h5>Access Manager¤ÎÀßÄê</h5>
<p>
ÀßÄê¤Ï´ÉÍý¥Ä¡¼¥ëSecioss Administrator¤«¤é¹Ô¤¤¤Þ¤¹¡£<br />
https://&lt;Access Manager¤Î¥Û¥¹¥ÈÌ¾&gt;/seciossadmin/¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢¥æ¡¼¥¶&quot;admin&quot;¡¢¥Ñ¥¹¥ï¡¼¥É&quot;admin&quot;¤È¤·¤Æ¥í¥°¥¤¥ó¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<h6>LDAP¥µ¡¼¥Ð¤ÎÀßÄê</h6>
<p>
ºÇ½é¤ËLDAP¥µ¡¼¥Ð¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£¡ÖLDAPÀßÄê¡×¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢³Æ¹àÌÜ¤ËÀßÄêÃÍ¤òÆþÎÏ¤·¤Æ²¼¤µ¤¤¡£<br />
Îã¡§<br />
¡¦LDAP¥µ¡¼¥Ð¤Î¼ïÎà¡§ LDAP¥µ¡¼¥Ð<br />
¡¦LDAP¥µ¡¼¥Ð¤ÎURI¡§ ldaps://localhost<br />
¡¦LDAP¥µ¡¼¥Ð¤Î¥Ù¡¼¥¹DN¡§ dc=secioss,dc=co,dc=jp<br />
¡¦¥æ¡¼¥¶¸¡º÷¤Î¥Ù¡¼¥¹DN¡§ ou=People<br />
¡¦¥°¥ë¡¼¥×¸¡º÷¤Î¥Ù¡¼¥¹DN¡§ ou=Groups<br />
¡¦LDAP¥µ¡¼¥Ð¤Î¥æ¡¼¥¶Ì¾¡§ cn=Manager,dc=secioss,dc=co,dc=jp<br />
¡¦¥Ñ¥¹¥ï¡¼¥É¥Ï¥Ã¥·¥å·Á¼°¡§ SHA
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc01.jpg" alt="" title="samc01" width="566" height="410" />
</p>
<p>
&nbsp;
</p>
<h6>¥æ¡¼¥¶ÅÐÏ¿</h6>
<p>
¡Ö¥æ¡¼¥¶¡×-&gt;¡Ö¿·µ¬ÅÐÏ¿¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢¥æ¡¼¥¶ÅÐÏ¿²èÌÌ¤«¤é¥æ¡¼¥¶¾ðÊó¤òÆþÎÏ¤·¤Æ²¼¤µ¤¤¡£<br />
Îã¡§<br />
¡¦¥æ¡¼¥¶ID¡§ user001<br />
¡¦¼Ò°÷ÈÖ¹æ¡§ 1001<br />
¡¦»áÌ¾¡§ ÅÄÃæ °ìÏº<br />
¡¦¥á¡¼¥ë¥¢¥É¥ì¥¹¡§ user001@secioss.co.jp
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc02.jpg" alt="" title="samc02" width="566" height="410" />
&nbsp;
</p>
<p>
&nbsp;
</p>
<h6>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÎÀßÄê</h6>
<p>
¡Ö¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÂÐ¾Ý¤È¤Ê¤ë¥µ¡¼¥Ð¤Î¥É¥á¥¤¥óÌ¾¤òÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
Îã¡§<br />
¡¦¥É¥á¥¤¥ó¡§ secioss.co.jp
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc07.jpg" alt="" title="samc07.jpg" width="566" height="410" />
</p>
<p>
&nbsp;
</p>
<h6>SAML ID¥×¥í¥Ð¥¤¥À¤ÎÀßÄê</h6>
<p>
¡Ö¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡×-&gt;¡ÖSAML ID¥×¥í¥Ð¥¤¥À¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢ÀßÄê¤òÆþÎÏ¤·¤Æ²¼¤µ¤¤¡£<br />
ÈëÌ©¸°¤È¸ø³«¸°¤ÏPEM·Á¼°¤Î¤â¤Î¤òÅÐÏ¿¤·¤Æ²¼¤µ¤¤¡£<br />
Îã¡§<br />
¡¦È¯¹Ô¼Ô¡§ idp.secioss.co.jp
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc03.jpg" alt="" title="samc03" width="566" height="410" />
&nbsp;
</p>
<p>
&nbsp;
</p>
<h6>Google Apps¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÀßÄê</h6>
<p>
¡Ö¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡×-&gt;¡ÖGoogle Apps¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢&rdquo;Google Apps¤Î¥É¥á¥¤¥óÌ¾&rdquo;¤òÆþÎÏ¤·¤Æ²¼¤µ¤¤¡£<br />
Îã¡§<br />
¡¦Google Apps¤Î¥É¥á¥¤¥óÌ¾¡§ secioss.co.jp
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc04.jpg" alt="" title="samc04" width="566" height="410" />
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤Ë¡¢Google Apps¤Î¥³¥ó¥È¥í¡¼¥ë¥Ñ¥Í¥ë¤Ë¥í¥°¥¤¥ó¤·¤Æ¡¢¡Ö¹âÅÙ¤Ê¥Ä¡¼¥ë¡×-&gt;¡Ö¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó(SSO)¤ÎÀßÄê¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢°Ê²¼¤Î¤è¤¦¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦¥í¥°¥¤¥ó¥Ú¡¼¥¸¤ÎURL¡§<br />
¡¡https://&lt;Access Manager¤Î¥Û¥¹¥ÈÌ¾&gt;/saml/saml2/idp/SSOService.php<br />
¡¦¥í¥°¥¢¥¦¥È¥Ú¡¼¥¸¤ÎURL¡§<br />
&nbsp; https://&lt;Access Manager¤Î¥Û¥¹¥ÈÌ¾&gt;/saml/saml2/idp/initSLO.php?RelayState=/saml/logout.php<br />
¡¦¥Ñ¥¹¥ï¡¼¥ÉÊÑ¹¹URL¡§<br />
&nbsp; https://&lt;Access Manager¤Î¥Û¥¹¥ÈÌ¾&gt;/user/password.php<br />
¡¦¥É¥á¥¤¥ó¸ÇÍ­¤ÎÈ¯¹Ô¸µ¤ò»ÈÍÑ¡§ ¥Á¥§¥Ã¥¯&nbsp;&nbsp;
</p>
<p>
&nbsp;
</p>
<h6>Salesforce¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÀßÄê</h6>
<p>
¡Ö¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¡×-&gt;¡ÖSalesforce¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢³Æ¹àÌÜ¤ËÀßÄêÃÍ¤òÆþÎÏ¤·¤Æ²¼¤µ¤¤¡£<br />
°Ê²¼¤Ï¡¢¥á¡¼¥ë¥¢¥É¥ì¥¹¤òSalesforce¤Î¥æ¡¼¥¶ID¤È¤·¤Æ»ÈÍÑ¤¹¤ëÎã¤Ç¤¹¡£<br />
Îã¡§<br />
¡¦Salesforce¤Î¥í¥°¥¤¥óURL¡§ https://login.salesforce.com<br />
¡¦¥æ¡¼¥¶ID¤ÎÂ°À­Ì¾¡§ mail
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc05.jpg" alt="" title="samc05" width="566" height="410" />
&nbsp;
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤Ë¡ÖÀßÄê¡×-&gt;¡Ö¥»¥­¥å¥ê¥Æ¥£¥³¥ó¥È¥í¡¼¥ë¡×-&gt;¡Ö¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÀßÄê¡×¤È¥¢¥¯¥»¥¹¤·¤Æ¡¢ÊÔ½¸¥Ü¥¿¥ó¤ò¥¯¥ê¥Ã¥¯¤·¤Æ²¼¤µ¤¤¡£³Æ¹àÌÜ¤Ï°Ê²¼¤Î¤è¤¦¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
¡¦SAML¤Î¥Ð¡¼¥¸¥ç¥ó¡§ 2.0<br />
¡¦È¯¹Ô¼Ô¡§ SAML ID¥×¥í¥Ð¥¤¥À¤ÇÀßÄê¤·¤¿È¯¹Ô¼Ô<br />
¡¦SAML¤Î¥æ¡¼¥¶ID¼ïÊÌ¡§ ¥¢¥µ¡¼¥·¥ç¥ó¤Ë¤Ï¡¢¥æ¡¼¥¶¤ÎSalesforce¥æ¡¼¥¶Ì¾¤¬´Þ¤Þ¤ì¤Þ¤¹<br />
¡¦SAML¤Î¥æ¡¼¥¶ID¤Î¾ì½ê¡§ ¥æ¡¼¥¶ID¤Ï¡¢Subject¥¹¥Æ¡¼¥È¥á¥ó¥È¤ÎNameIdentifierÍ×ÁÇ¤Ë¤¢¤ê¤Þ¤¹
</p>
<p>
&nbsp;
</p>
<h3>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h3>
<h5>Google Apps</h5>
<p>
Gmail¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¹¤ë¾ì¹ç¡¢&quot;https://mail.google.com/a/&lt;¥É¥á¥¤¥óÌ¾&gt;&quot;¤Ë¥¢¥¯¥»¥¹¤·¤Æ²¼¤µ¤¤¡£¤¹¤ë¤È¡¢Access Manager¤Î¥í¥°¥¤¥ó²èÌÌ¤¬É½¼¨¤µ¤ì¤Þ¤¹¤Î¤Ç¡¢ÅÐÏ¿¤·¤¿¥æ¡¼¥¶¤Ç¥í¥°¥¤¥ó¤¹¤ë¤È¡¢¥Ñ¥¹¥ï¡¼¥ÉÊÑ¹¹²èÌÌ¤¬É½¼¨¤µ¤ì¡¢½é´ü¥Ñ¥¹¥ï¡¼¥É¤ÎÊÑ¹¹¤òÍ×µá¤µ¤ì¤Þ¤¹¡£<br />
¥Ñ¥¹¥ï¡¼¥ÉÊÑ¹¹¸å¡¢¡ÖÌá¤ë¡×¤ò¥¯¥ê¥Ã¥¯¤·¤Æ¡¢ÊÑ¹¹¸å¤Î¥Ñ¥¹¥ï¡¼¥É¤ÇºÆÅÙ¥í¥°¥¤¥ó¤¹¤ë¤È¡¢Gmail¤Î²èÌÌ¤¬É½¼¨¤µ¤ì¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc06.jpg" alt="" title="samc06" width="468" height="324" />
</p>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/samc08.jpg" alt="" title="samc08" width="509" height="363" />
</p>
<p>
&nbsp;
</p>
<h5>Salesforce</h5>
<p>
Salesforce¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¹¤ë¾ì¹ç¡¢°Ê²¼¤ÎURL¤Ë¥¢¥¯¥»¥¹¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
https:&lt;Access Manager¤Î¥Û¥¹¥ÈÌ¾&gt;/saml/saml2/idp/SSOService.php?spentityid=https://saml.salesforce.com
</p>
<p>
Access Manager¤Ë¥í¥°¥¤¥óºÑ¤ß¤Î¾ì¹ç¤Ï¡¢Salesforce¤Î¥Û¡¼¥à²èÌÌ¤¬É½¼¨¤µ¤ì¤Þ¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2010/09/secioss_access_manager_communi.html</link>
         <guid>http://www.secioss.co.jp/2010/09/secioss_access_manager_communi.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00501¥ª¡¼¥×¥ó¥½¡¼¥¹µ»½Ñ¾ðÊó</category>
        
        
         <pubDate>Wed, 15 Sep 2010 17:10:42 +0900</pubDate>
      </item>
            <item>
         <title>Shibboleth¤Ë¤è¤ë¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</title>
         <description><![CDATA[<p>
Shibboleth¤Ï¡¢SAML¤ò¼ÂÁõ¤·¤¿¥ª¡¼¥×¥ó¥½¡¼¥¹¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤ò¹½ÃÛ¤¹¤ë¤³¤È¤Ë¤è¤ê¡¢¥¯¥í¥¹¥É¥á¥¤¥ó¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ä¥¢¥¯¥»¥¹À©¸æ¤ò¹Ô¤¦¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
º£²ó¤Ï¡¢Shibboleth¤ò»ÈÍÑ¤·¤Æ¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤òSAML¤ÎSP¡ÊService Provider¡Ë¤È¤·¤Æ¡¢Shibbileth¤ÎIDP¤È¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¦¼ê½ç¤Ë¤Ä¤¤¤Æ²òÀâ¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>´Ä¶­</h3>
<ul>
	<li>
	<p>
	IDP<br />
	OS¡§ CentOS 5<br />
	IDP¡§ shibboleth-idp 2.1.5
	</p>
	</li>
	<li>
	<p>
	SP<br />
	OS¡§ CentOS 5<br />
	¥°¥ë¡¼¥×¥¦¥§¥¢¡§ ¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2 2.5.4<br />
	SP¡§ shibboleth 2.3.1
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h3>IDP¤Î¹½ÃÛ</h3>
<p>
Shibboleth¤ÎIDP¤Î¥¤¥ó¥¹¥È¡¼¥ë¡¢ÀßÄê¤Ë¤Ä¤¤¤Æ¤Ï°Ê²¼¤Î³Ø½ÑÇ§¾Ú¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤Îµ»½Ñ¥¬¥¤¥É¡¡IDP¤Î¹à¤ò»²¹Í¤Ë¤·¤Æ²¼¤µ¤¤¡£<br />
<a href="https://upki-portal.nii.ac.jp/docs/fed/technical">https://upki-portal.nii.ac.jp/docs/fed/technical</a>
</p>
<p>
&nbsp;
</p>
<h3>SP¤Î¹½ÃÛ</h3>
<h5>¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2</h5>
<p>
º£²ó¤Ï¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤Î»îÍÑÈÇ¤ò»ÈÍÑ¤·¤Þ¤·¤¿¡£
</p>
<p>
¤Þ¤º¡¢¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤Î¥·¥¹¥Æ¥à´ÉÍý²èÌÌ¡Êhttps://&lt;¥Û¥¹¥ÈÌ¾&gt;/cgi-bin/cbgrn/grn.cgi/system/index¡Ë¤Ë¥í¥°¥¤¥ó¤·¤Æ¡¢¥í¥°¥¤¥óÇ§¾Ú¤ËShibbolethÇ§¾Ú¤òÄÉ²Ã¤·¤Þ¤¹¡£<br />
[´ðËÜ¥·¥¹¥Æ¥à¤Î´ÉÍý]-&gt;[Ç§¾Ú]-&gt;[¥í¥°¥¤¥óÇ§¾Ú]-&gt;[¥í¥°¥¤¥óÇ§¾Ú¤òÄÉ²Ã¤¹¤ë]
</p>
<p>
¡¦¥í¥°¥¤¥óÇ§¾Ú·Á¼°¡§ ´Ä¶­ÊÑ¿ôÇ§¾Ú<br />
¡¦É½¼¨Ì¾¡§ Shibboleth¡¡ # Ç¤°Õ<br />
¡¦´Ä¶­ÊÑ¿ôÌ¾¡§ REMOTE_USER<br />
¡¦¤³¤ÎÊ¸»úÎó°Ê¹ß¤ò½ü³°¤·¤ÆÇ§¾Ú¡§ @
</p>
<p>
&nbsp;
</p>
<p>
Shibboleth¤ÎÇ§¾Ú¤ò»ÈÍÑ¤¹¤ë¤è¤¦¤ËÀßÄê¤·¤Þ¤¹¡£<br />
[´ðËÜ¥·¥¹¥Æ¥à¤Î´ÉÍý]-&gt;[Ç§¾Ú]-&gt;[¥í¥°¥¤¥óÇ§¾Ú]
</p>
<p>
ÄÉ²Ã¤·¤¿&rdquo;Shibboleth&rdquo;¤ò&rdquo;»ÈÍÑ¤¹¤ë&rdquo;¤ËÊÑ¹¹¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h5>Shibboleth</h5>
<p>
Shibboleth¤ÎSP¤Î¥¤¥ó¥¹¥È¡¼¥ë¡¢ÀßÄê¤Ë¤Ä¤¤¤Æ¤Ï°Ê²¼¤Î³Ø½ÑÇ§¾Ú¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤Îµ»½Ñ¥¬¥¤¥É¡¡SP¤Î¹à¤ò»²¹Í¤Ë¤·¤Æ²¼¤µ¤¤¡£<br />
<a href="https://upki-portal.nii.ac.jp/docs/fed/technical">https://upki-portal.nii.ac.jp/docs/fed/technical</a>
</p>
<p>
&nbsp;
</p>
<p>
/etc/httpd/conf.d/shib.conf¤Ë°Ê²¼¤ÎÀßÄê¤òÄÉµ­¤·¤Æ¡¢httpd¤òºÆµ¯Æ°¤·¤Þ¤¹¡£
</p>
<hr />
<p>
&lt;Location /cgi-bin/cbgrn/grn.cgi/index&gt;<br />
&nbsp; AuthType shibboleth<br />
&nbsp; ShibRequestSetting requireSession 1<br />
&nbsp; require valid-user<br />
&lt;/Location&gt;
</p>
<hr />
<p>
°Ê¾å¤Ç¡¢¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤ÎÇ§¾Ú¤òShibboleth¤Ç¹Ô¤¦¤³¤È¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
&rdquo;https://&lt;¥Û¥¹¥ÈÌ¾&gt;/cgi-bin/cbgrn/grn.cgi/index&rdquo;¤Ë¥¢¥¯¥»¥¹¤¹¤ë¤È¡¢Shibboleth¤Î¥í¥°¥¤¥ó²èÌÌ¤¬É½¼¨¤µ¤ì¡¢¥í¥°¥¤¥ó¤¹¤ë¤È¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤Î¥Ý¡¼¥¿¥ë²èÌÌ¤¬É½¼¨¤µ¤ì¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<hr />
<p>
¢¨¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó2¤Ï¡¢¥µ¥¤¥Ü¥¦¥º³ô¼°²ñ¼Ò¤ÎÅÐÏ¿¾¦É¸¤Ç¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2010/08/shibboleth2.html</link>
         <guid>http://www.secioss.co.jp/2010/08/shibboleth2.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00501¥ª¡¼¥×¥ó¥½¡¼¥¹µ»½Ñ¾ðÊó</category>
        
        
         <pubDate>Sun, 08 Aug 2010 19:33:23 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Identity Manager Enterprise¤Ç³ØÆâ¤ÎID¤òÅý¹ç´ÉÍý</title>
         <description><![CDATA[<p>
ÅìµþÌô²ÊÂç³ØÍÍ¤Ç¤Ï¡¢³ØÆâ¤Î¥·¥¹¥Æ¥à¤Ç´ÉÍý¤µ¤ì¤Æ¤¤¤ë³ØÀ¸¤ä¿¦°÷¤Î¾ðÊó¤òÅý¹çÅª¤Ë´ÉÍý¤·¡¢¥Ñ¥¹¥ï¡¼¥É¤Î´ÉÍý¤òÅ°Äì¤¹¤ë¤³¤È¤Ç¡¢¥»¥­¥å¥¢¤Ê¥·¥¹¥Æ¥à´Ä¶­¤òÀ°¤¨¤¿¤¤¤È¹Í¤¨¤Æ¤¤¤Þ¤·¤¿¡£
</p>
<p>
&nbsp;
</p>
<p>
¤½¤³¤Ç¡¢Åö¼Ò¤¬Äó°Æ¤·¤¿¤Î¤¬¡ÖSecioss Identity Manager Enterprise¡×¤Ç¤·¤¿¡£Secioss Identity Manager Enterprise¤òÆ³Æþ¤·¤¿·ë²Ì¡¢¸ÄÊÌ¤Ë´ÉÍý¤¹¤ëÉ¬Í×¤¬¤¢¤Ã¤¿LDAP¥µ¡¼¥Ð¡ÊOpen Directotry¡Ë¡¢¥á¡¼¥ë¥·¥¹¥Æ¥à¡ÊZimbra¡Ë¡¢Active Directory¤Î¥æ¡¼¥¶¾ðÊó¤òSecioss Identity Manager Enterprise¤«¤é°ì³ç´ÉÍý¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤ê¡¢ºßÀÒ¤·¤Æ¤¤¤ë³ØÀ¸¤À¤±¤Ç¤Ê¤¯Â´¶ÈÀ¸¤Î¾ðÊó¤Þ¤Ç°ì¸µ´ÉÍý¤¹¤ë¤³¤È¤¬¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤·¤¿¡£¤µ¤é¤Ë¡¢¥æ¡¼¥¶¾ðÊó¤ÏCSV¥Õ¥¡¥¤¥ë¤Ç´ÊÃ±¤ËÆþ½ÐÎÏ¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤·¤¿¡£
</p>
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢´ÉÍý¼Ô¤Ï¥æ¡¼¥¶¤Î¥Ñ¥¹¥ï¡¼¥É¤Ë¡¢Í­¸ú´ü¸ÂÅù¡¢ÍÍ¡¹¤Ê¥Ý¥ê¥·¡¼¤òÀßÄê¤¹¤ë¤³¤È¤¬¤Ç¤­¡¢¥»¥­¥å¥ê¥Æ¥£¤ò¹â¤á¤ë¤³¤È¤¬¤Ç¤­¤Þ¤·¤¿¡£¥æ¡¼¥¶¤ÏWeb¤«¤é¼«Ê¬¤Î¥Ñ¥¹¥ï¡¼¥É¤òÊÑ¹¹¤¹¤ë¤³¤È¤¬²ÄÇ½¤È¤Ê¤ê¡¢¥Ñ¥¹¥ï¡¼¥É¤Î´ü¸ÂÀÚ¤ì¤¬¶áÉÕ¤¤¤¿ºÝ¤Ë¤Ï¡¢·Ù¹ð¤Î¥á¡¼¥ë¤¬¼«Æ°ÇÛ¿®¤µ¤ì¤ë¤¿¤á¡¢¥Ñ¥¹¥ï¡¼¥É´ÉÍý¤Ë´Ø¤¹¤ëºî¶È¤¬¸úÎ¨²½¤µ¤ì¤Þ¤·¤¿¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2010/07/post_8.html</link>
         <guid>http://www.secioss.co.jp/2010/07/post_8.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00401Æ³Æþ»öÎã</category>
        
        
         <pubDate>Sat, 17 Jul 2010 18:45:35 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Identity Suite GAE Edition</title>
         <description><![CDATA[<p>
Secioss Identity Suite GAE Edition¤Ï¡¢Goolge App Engine¾å¤ÇÆ°ºî¤¹¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈIDÏ¢·ÈÍÑ¤Î¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¤òÄó¶¡¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ë¤ÏOpenID¡¢IDÏ¢·È¤Ë¤Ï¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤ÎLISM¤ò»ÈÍÑ¤·¤Æ¤¤¤Þ¤¹¡£<br />
Ç§¾Ú¥µ¡¼¥Ð¡ÊOpenID Provider¡Ë¤Ë¤Ä¤¤¤Æ¤Ï´ÉÍý¼Ô¤¬ÆÃÄê¤Î¥µ¡¼¥Ð¤òÀßÄê¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h5>¥ª¡¼¥×¥ó¥½¡¼¥¹¥×¥í¥¸¥§¥¯¥È</h5>
<p>
Secioss Identity Suite GAE Edition¤Ë¤Ä¤¤¤Æ¤Ï¡¢¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤È¤·¤ÆApache¥é¥¤¥»¥ó¥¹¤Ë¤è¤ê¸ø³«¤·¤Æ¤¤¤Þ¤¹¡£
</p>
<ul>
	<li>
	<p>
	¥×¥í¥¸¥§¥¯¥È¥µ¥¤¥È¡§<a href="http://sourceforge.jp/projects/secioss-auth/devel/"><u>http://sourceforge.jp/projects/secioss-auth/</u></a>
	</p>
	</li>
	<li>
	<p>
	¥á¡¼¥ê¥ó¥°¥ê¥¹¥È¡§<a href="http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users"><u>http://lists.sourceforge.jp/mailman/listinfo/secioss-auth-users</u></a>
	</p>
	</li>
</ul>
<h5>¾¦ÍÑ¥µ¡¼¥Ó¥¹</h5>
<p>
Identity Suite&nbsp;Cloud SP¤Ë´Ø¤¹¤ë¥³¥ó¥µ¥ë¥Æ¥£¥ó¥°¡¢¾¦ÍÑ¥µ¥Ý¡¼¥È¥µ¡¼¥Ó¥¹¤Ë¤Ä¤¤¤Æ¤Ï¡¢<a href="http://www.secioss.co.jp/005/"><u>¤³¤Á¤é</u></a>¤Ø¤ªÌä¹ç¤»²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<h3>¥¤¥ó¥¹¥È¡¼¥ë</h3>
<p>
<a href="http://sourceforge.jp/projects/secioss-auth/releases/"><span style="color: #810081"><u>http://sourceforge.jp/projects/secioss-auth/releases/</u></span></a>¤«¤ésecioss-idsuite-gae¤ò¥À¥¦¥ó¥í¡¼¥É¤·¤ÆÅ¸³«¤·¤Æ²¼¤µ¤¤¡£
</p>
<h5>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h5>
<p>
secioss-idsuite-gae¤Î°Ê²¼¤Î¥Õ¥¡¥¤¥ë¡¢¥Ç¥£¥ì¥¯¥È¥ê¤òÆ³ÆþÀè¤ÎGoogle App Engine¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥×¥í¥¸¥§¥¯¥È¤Ë¥¢¥Ã¥×¥í¡¼¥É¤·¤Æ²¼¤µ¤¤¡£<br />
consumer.py¡¢fetcher.py¡¢session.py¡¢store.py¡¢elementtree¡¢openid
</p>
<h5>IDÏ¢·È</h5>
<p>
IDÏ¢·È¤ÏLISM¤È¤Î´Ö¤Ç¹Ô¤¤¤Þ¤¹¡£<br />
¤Þ¤º¡¢LISM¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£¥¤¥ó¥¹¥È¡¼¥ëÊýË¡¤Ï<a href="http://lism.sourceforge.jp/index.php?LISM%20%A5%A4%A5%F3%A5%B9%A5%C8%A1%BC%A5%EB%A5%DE%A5%CB%A5%E5%A5%A2%A5%EB"><u><span style="color: #810081">¤³¤Á¤é</span></u></a>¤ò¤´Í÷²¼¤µ¤¤¡£<br />
¼¡¤Ë¡¢Google App Engine SDK¤ò¥¤¥ó¥¹¥È¡¼¥ë¤·¤Æ²¼¤µ¤¤¡£¥¤¥ó¥¹¥È¡¼¥ëÊýË¡¤Ï¤³¤³¤Ç¤Ï³ä°¦¤·¤Þ¤¹¡£<br />
ºÇ¸å¤Ësecioss-idsuite-gae¤Îtools/gaesync.py¤ò/opt/secioss/sbin¤Ë¥³¥Ô¡¼¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<h3>ÀßÄê</h3>
<h5>¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</h5>
<p>
secioss-idsuite-gaeÆâ¤Îmain.py¤Î¥µ¥ó¥×¥ë¥¯¥é¥¹SampleFrontPage¤ò»²¹Í¤Ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎÇ§¾Ú¤òOpenID¤ËÊÑ¹¹¤·¤Æ²¼¤µ¤¤¡£<br />
¤Þ¤¿¡¢¥¯¥é¥¹SampleAdminHandler¤Ï¡¢Ç§¾Ú¤¹¤ëOpenID Provider¤ÎURL¤òÀßÄê¤¹¤ë¥µ¥ó¥×¥ë¥¯¥é¥¹¤Ç¡¢Google App Engine¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥Ç¡¼¥¿¥¹¥È¥¢¤ÎOpenIDConfig¤ËÀßÄê¤òÅÐÏ¿¤·¤Þ¤¹¡£
</p>
<p>
OpenID Provider¤ÎURL¤òOpenIDConfig¤ËÅÐÏ¿¸å¡¢Google App Engine¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¥¢¥¯¥»¥¹¤·¤Æ¡¢OpenID Provider¤Î¥í¥°¥¤¥ó²èÌÌ¤¬É½¼¨¤µ¤ì¤ì¤ÐÀ®¸ù¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<h5>IDÏ¢·È</h5>
<p>
IDÏ¢·È¤ÎÂÐ¾Ý¤È¤Ê¤ëGoogle App Engine¤Î¥â¥Ç¥ë¥¯¥é¥¹¤¬ÄêµÁ¤µ¤ì¤¿¥Õ¥¡¥¤¥ë¤ògaesync.py¤¬ÆÉ¤ß¹þ¤á¤ë¤è¤¦¤Ë¥Ñ¥¹¤¬ÄÌ¤Ã¤Æ¤¤¤ë¾ì½ê¤ËÇÛÃÖ¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<p>
¼¡¤Ë¡¢LISM¤ÎÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£ÀßÄêÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï¡¢¤³¤Á¤é¤ò¤´Í÷²¼¤µ¤¤¡£
</p>
<p>
¥â¥Ç¥ë¥¯¥é¥¹¤ÈLISM¤ÎÀßÄêÎã¤ò°Ê²¼¤Ë¼¨¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong>User.py</strong>
</p>
<hr />
<p>
from google.appengine.ext import db
</p>
<p>
class User(db.Model):<br />
&nbsp; &quot;&quot;&quot;User class&quot;&quot;&quot;<br />
&nbsp; id = db.StringProperty()<br />
&nbsp; name = db.StringProperty()
</p>
<hr />
<p>
&nbsp;
</p>
<p>
<strong>lism.conf<br />
<hr />
<br />
</strong>
</p>
<p>
&lt;config&gt;<br />
&nbsp; ¡¦¡¦¡¦<br />
&nbsp; &lt;data name=&quot;GAE&quot;&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=GAE&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;storage name=&quot;GAE&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;appid&gt;application_id&lt;/appid&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;admin&gt;admin@secioss.co.jp&lt;/admin&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;passwd&gt;secret&lt;/passwd&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;command&gt;/usr/local/bin/python /opt/secioss/sbin/gaesync.py&lt;/command&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;updatelog&gt;/opt/secioss/var/lib/ldap/update.log&lt;/updatelog&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;object name=&quot;User&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;ou=People&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;organizationalUnit&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/container&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;rdn&gt;uid&lt;/rdn&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;person&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;oc&gt;inetOrgPerson&lt;/oc&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;uid&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;param&gt;id&lt;/param&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;attr name=&quot;cn&quot;&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;param&gt;name&lt;/param&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/attr&gt;<br />
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &lt;/object&gt;<br />
&nbsp;&nbsp;&nbsp; &lt;/storage&gt;<br />
&nbsp; &lt;/data&gt;<br />
&lt;/config&gt;
</p>
<hr />
<p>
&nbsp;
</p>
<p>
¤Þ¤¿¡¢cron¤ÇÄê´üÅª¤Ë°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤¹¤ë¤è¤¦¤ËÀßÄê¤·¤Æ²¼¤µ¤¤¡£<br />
&nbsp;/opt/secioss/sbin/gaesync.py update /opt/secioss/var/lib/ldap/update.log
</p>
<p>
&nbsp;
</p>
<p>
¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Î¥æ¡¼¥¶¤òÅÐÏ¿¤¹¤ë¤Ë¤Ï¡¢LISM¤ËÂÐ¤·¤Æ¥æ¡¼¥¶¥¨¥ó¥È¥ê¤òÄÉ²Ã¤·¤Æ²¼¤µ¤¤¡£<br />
&nbsp;&nbsp;# ldapadd -x -H&nbsp;ldap://:3890&nbsp; -D &#39;cn=Manager,dc=secioss,dc=co,dc=jp&#39; -w secret -f user.ldif
</p>
<p>
&nbsp;
</p>
<p>
<strong>Îã¡§user.ldif</strong>
</p>
<hr />
<p>
dn: uid=user01,ou=People,ou=GAE,dc=secioss,dc=co,dc=jp<br />
objectClass: inetOrgPerson<br />
uid: user01<br />
cn: ÅÄÃæ¡¡°ìÏº<br />
sn: ÅÄÃæ
</p>
<hr />
<p>
&nbsp;
</p>
<p>
LDAP¥µ¡¼¥Ð¤ÈIDÏ¢·È¤ò¹Ô¤¦¤Ë¤Ï¡¢lism.conf¤ËÊÌÅÓLDAP¥µ¡¼¥Ð¤ÈÆ±´ü¤ò¹Ô¤¦ÀßÄê¤òÄÉ²Ã¤·¤Æ²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
]]></description>
         <link>http://www.secioss.co.jp/2010/07/secioss_identity_suite_gae_edi.html</link>
         <guid>http://www.secioss.co.jp/2010/07/secioss_identity_suite_gae_edi.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00501¥ª¡¼¥×¥ó¥½¡¼¥¹µ»½Ñ¾ðÊó</category>
        
        
         <pubDate>Sun, 04 Jul 2010 00:13:37 +0900</pubDate>
      </item>
            <item>
         <title>Shibboleth¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó</title>
         <description><![CDATA[<p>
Shibboleth¤Ï¡¢¶µ°éµ¡´ØÅù¤ÇÂ¿¤¯ÍøÍÑ¤µ¤ì¤Æ¤¤¤ëSAML¤ò¼ÂÁõ¤·¤¿¥ª¡¼¥×¥ó¥½¡¼¥¹¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¤ò¹½ÃÛ¤¹¤ë¤³¤È¤Ë¤è¤ê¡¢¥¯¥í¥¹¥É¥á¥¤¥ó¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ä¥¢¥¯¥»¥¹À©¸æ¤ò¹Ô¤¦¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
ÊÀ¼Ò¤Ç¤Ï¡¢¥í¥°¥¤¥ó»þ¤ÎÇ§¾Ú¤ËID¡¦¥Ñ¥¹¥ï¡¼¥ÉÇ§¾Ú¤ÎÂ¾¤Ë¥ª¥×¥·¥ç¥ó¤È¤·¤ÆÅý¹çWindowsÇ§¾Ú¤òÁªÂò¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
<strong><u>¥¢¥¯¥»¥¹À©¸æ</u></strong><br />
Shibboleth-IdP¤Ë¤Ï¥¢¥¯¥»¥¹À©¸æµ¡Ç½¤¬¤Ê¤¯¡¢ÀÜÂ³ÀèSP¤¬ÂÐ±þ¤·¤Æ¤¤¤Ê¤±¤ì¤Ð¥¢¥¯¥»¥¹À©¸æ¤Ç¤­¤Þ¤»¤ó¤Ç¤·¤¿¡£ÊÀ¼Ò¤¬Äó¶¡¤¹¤ë¡ÖShibboleth-IdP¥¢¥¯¥»¥¹À©¸æ¥×¥é¥°¥¤¥ó¡×¤ò¹ØÆþ¤·¤ÆÄº¤¯¤È¡¢¥¢¥¯¥»¥¹À©¸æ¤ËÂÐ±þ¤·¤Æ¤Ê¤¤SP¤ËÂÐ¤·¤Æ¤â¥¢¥¯¥»¥¹À©¸æ¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h5>ÆÃÄ§</h5>
<ul>
	<li>
	<p>
	Shibboleth¤Ø¥í¥°¥¤¥ó¤¹¤ë¤À¤±¤Ç¡¢SAML¤ËÂÐ±þ¤·¤¿³Æ¥·¥¹¥Æ¥à¤Ø¡¢¥í¥°¥¤¥ó¤ÎÉ¬Í×¤Ê¤¯¥¢¥¯¥»¥¹¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	³Ø½ÑÇ§¾Ú¥Õ¥§¥Ç¥ì¡¼¥·¥ç¥ó¡¢Google AppsÅùSAML¤ËÂÐ±þ¤·¤¿³°Éô¤Î¥µ¡¼¥Ó¥¹¤È¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Åý¹çWindowsÇ§¾Ú¤Ë¤è¤êWindows¥Þ¥·¥ó¤Ë¥í¥°¥¤¥ó¤¹¤ë¤À¤±¤Ç¡¢¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£
	</p>
	</li>
</ul>
<ul>
	<li>
	<p>
	¥¢¥¯¥»¥¹À©¸æ¤ËÂÐ±þ¤·¤Æ¤¤¤Ê¤¤SP¤â´Þ¤á¡¢Shibboleth-IdPÂ¦¤ÇÁ´¤Æ¤ÎSP¤ËÂÐ¤·¤Æ¥¢¥¯¥»¥¹À©¸æ¤¬²ÄÇ½¤È¤Ê¤ê¤Þ¤¹¡£<u>¢¨Ã¢¤·¡¢¡ÖShibboleth-IdP¥¢¥¯¥»¥¹À©¸æ¥×¥é¥°¥¤¥ó¡×¤ò¹ØÆþ¤·¤¿¾ì¹ç¤Î¤ß</u>
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h5>¸ú²Ì</h5>
<ul>
	<li>
	<p>
	¥·¥¹¥Æ¥à¤Ø¥í¥°¥¤¥ó¤¹¤ë¼ê´Ö¤ò¾Ê¤¯¤³¤È¤Ç¡¢¥æ¡¼¥¶¤ÎÀ¸»ºÀ­¤¬¸þ¾å¤·¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥æ¡¼¥¶¤Ï¥Ñ¥¹¥ï¡¼¥É¤ò£±¤Ä´ÉÍý¤¹¤ì¤Ð¤è¤¯¡¢¥Ñ¥¹¥ï¡¼¥ÉËº¤ì¤Ë¤è¤ë¥Ñ¥¹¥ï¡¼¥É¤ÎºÆÈ¯¹Ô¤òºï¸º¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Ç§¾Ú¤ò°ì¸µÅª¤Ë´ÉÍý¤·¡¢³Æ¥·¥¹¥Æ¥à¤ËÅý°ìÅª¤Ê¥»¥­¥å¥ê¥Æ¥£¥Ý¥ê¥·¡¼¤òÅ¬ÍÑ¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
ËÜ¥µ¡¼¥Ó¥¹¤Ë´Ø¤¹¤ë¤ªÌä¹ç¤»¤Ï<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤«¤é¤ª´ê¤¤¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>¥µ¡¼¥Ó¥¹</h3>
<h5>¥·¥¹¥Æ¥àÀß·×</h5>
<p>
Shibboleth¤òÆ³Æþ¤¹¤ë¥·¥¹¥Æ¥à¤ËÂÐ¤·¤Æ¡¢¥·¥¹¥Æ¥à¹½À®¤ä¡¢±¿ÍÑ´ÉÍýÊý¼°¤ÎÀß·×¤ò¹Ô¤¤¤Þ¤¹¡£
</p>
<h5>¥·¥¹¥Æ¥àÆ³Æþ</h5>
<p>
Shibboleth¤Î¥¤¥ó¥¹¥È¡¼¥ë¤ÈÀßÄê¤ò¹Ô¤¤¤Þ¤¹¡£
</p>
<h5>Web¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎSAMLÂÐ±þ</h5>
<p>
Shibboleth¤È¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò²ÄÇ½¤Ë¤¹¤ë¤¿¤á¡¢Web¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ÎSAMLÂÐ±þ¤ò¹Ô¤¤¤Þ¤¹¡£
</p>
<h5>¥µ¥Ý¡¼¥È¡¦¥µ¡¼¥Ó¥¹</h5>
<p>
Ç¯´Ö¥µ¥Ý¡¼¥È¡¦¥µ¡¼¥Ó¥¹¤È¤·¤Æ¡¢°Ê²¼¤Î¥µ¡¼¥Ó¥¹¤òÄó¶¡¤¤¤¿¤·¤Þ¤¹¡£
</p>
<ul>
	<li>
	<p>
	¥½¥Õ¥È¥¦¥§¥¢¤ÎÀßÄê¤ä±¿ÍÑ¤Ë´Ø¤¹¤ë¥á¡¼¥ë¤Ç¤ÎÌä¤¤¹ç¤ï¤»ÂÐ±þ
	</p>
	</li>
	<li>
	<p>
	¥ª¥Õ¥µ¥¤¥È¤Ç¤Î¾ã³²ÂÐ±þ
	</p>
	</li>
	<li>
	<p>
	²óÈòºö¤Î¤Ê¤¤ÉÔ¶ñ¹ç¤ËÂÐ¤¹¤ë¥Ñ¥Ã¥ÁºîÀ®
	</p>
	</li>
</ul>
]]></description>
         <link>http://www.secioss.co.jp/2010/06/shibboleth_1.html</link>
         <guid>http://www.secioss.co.jp/2010/06/shibboleth_1.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">0101¥³¥ó¥µ¥ë¥Æ¥£¥ó¥°</category>
        
        
         <pubDate>Sat, 19 Jun 2010 19:00:40 +0900</pubDate>
      </item>
            <item>
         <title>Secioss Identity/Access Manager</title>
         <description><![CDATA[<p>
¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤Î¹­¤¬¤ê¤È¤È¤â¤Ë¡¢º£¤Þ¤Ç¤Î¼ÒÆâ¥Í¥Ã¥È¥ï¡¼¥¯¤À¤±¤ÎID´ÉÍý¤ä¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤Ç¤ÏÂÐ±þ¤Ç¤­¤Ê¤¤¾ìÌÌ¤¬Áý¤¨¤Æ¤ª¤ê¤Þ¤¹¡£¤½¤³¤ÇÊÀ¼Ò¤Ç¤Ï¥¯¥é¥¦¥É¥µ¡¼¥Ó¥¹¤ËÂÐ±þ¤·¤¿ID´ÉÍý¡¦¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥ê¥å¡¼¥·¥ç¥ó¤òÄó¶¡¤¤¤¿¤·¤Þ¤¹¡£
</p>
<p>
&nbsp;
</p>
<p>
¡¦Secioss Identity Manager Enterprise Edition¡§¡¡¤ªµÒÍÍ´ë¶È¤ÎID¤òÅý¹ç´ÉÍý¤¹¤ë¥½¥ê¥å¡¼¥·¥ç¥ó¤Ç¤¹¡£<br />
¡¦Secioss Access Manager Enterprise Edition¡§¡¡¤ªµÒÍÍ´ë¶È¤ÇÍøÍÑ¤¹¤ë¥µ¡¼¥Ó¥¹¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¦¥½¥ê¥å¡¼¥·¥ç¥ó¤Ç¤¹¡£<br />
¡¦Secioss Identity/Access Manager SaaS Edition¡§¡¡¤ªµÒÍÍ¤Î¥¨¥ó¥É¥æ¡¼¥¶¤ËÂÐ¤·¤ÆSaaS·¿¤ÇÅý¹çID´ÉÍý¡¦¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥µ¡¼¥Ó¥¹¤òÄó¶¡²ÄÇ½¤È¤¹¤ë¥½¥ê¥å¡¼¥·¥ç¥ó¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<h3>¥·¥¹¥Æ¥à¹½À®</h3>
<h5>´ë¶ÈÆ³Æþ¤Î¾ì¹ç</h5>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/system_cloud1.jpg" alt="system_cloud1.jpg" width="307" height="241" />
</p>
<p>
&nbsp;
</p>
<h5>SaaS·¿¤Î¾ì¹ç</h5>
<p>
&nbsp;
</p>
<p>
<img src="http://www.secioss.co.jp/images/system_cloud2.jpg" alt="system_cloud2.jpg" width="329" height="250" />
</p>
<p>
&nbsp;
</p>
<h3>Secioss Identity Manager</h3>
<h4>µ¡Ç½</h4>
<ul>
	<li>
	<p>
	¥æ¡¼¥¶´ÉÍý<br />
	Google Apps¡¢Salesforce¤ä¥ª¥ó¥×¥ì¥ß¥¹¡¢¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥ÉÆâ¤Î¥·¥¹¥Æ¥à¤ÎID¤òÅý¹ç´ÉÍý¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£<br />
	¤Þ¤¿¡¢¥·¥¹¥Æ¥àËè¤ËÏ¢·È¤¹¤ë¥æ¡¼¥¶¤ò»ØÄê¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥°¥ë¡¼¥×´ÉÍý<br />
	¥æ¡¼¥¶¤Î¥°¥ë¡¼¥×¤ò´ÉÍý¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£Google Apps¤Î¥á¡¼¥ê¥ó¥°¥ê¥¹¥È¤Î¥á¥ó¥Ð¤Î°ì³çÅÐÏ¿Åù¤â²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥Ñ¥¹¥ï¡¼¥É¥Ý¥ê¥·¡¼&nbsp;<br />
	¥Ñ¥¹¥ï¡¼¥É¤Î¥Ý¥ê¥·¡¼´ÉÍý¤¬²ÄÇ½¤Ç¤¹¡£Í­¸ú´ü¸Â¤ä¥Ñ¥¹¥ï¡¼¥É¤Î»ÈÍÑÊ¸»ú¤Ê¤É¤Î»ØÄê¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	IDÆ±´ü¤ÎÊÂÎó½èÍý<br />
	Æ±´ü½èÍý¤òÊÂÎó¤Ë¥Ð¥Ã¥¯¥°¥é¥¦¥ó¥É¤Ç¼Â¹Ô¤¹¤ë¤¿¤á¡¢Ï¢·È¤¹¤ë¥µ¡¼¥Ó¥¹¤¬Áý²Ã¤·¤¿¾ì¹ç¤â¡¢IDÁàºî¤Î¥ì¥¹¥Ý¥ó¥¹»þ´Ö¤ÏÁý²Ã¤·¤Þ¤»¤ó¡£&nbsp;
	</p>
	</li>
	<li>
	<p>
	¥í¥°¸¡º÷<br />
	¥æ¡¼¥¶¡¢¥°¥ë¡¼¥×¤Î¹¹¿·¤Ë´Ø¤¹¤ë¥í¥°¤òWeb¤«¤é¸¡º÷¡¢É½¼¨¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥Þ¥ë¥Á¥Æ¥Ê¥ó¥È<br />
	¥Þ¥ë¥Á¥Æ¥Ê¥ó¥È¤ËÂÐ±þ¤·¤Æ¤ª¤ê¡¢¥Æ¥Ê¥ó¥ÈÃ±°Ì¤Ç¤ÎID´ÉÍý¤¬²ÄÇ½¤È¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£<br />
	SaaS Edition¤Ç¤Ï¡¢¥Æ¥Ê¥ó¥ÈÃ±°Ì¤ÇÏ¢·È¤¹¤ë¥µ¡¼¥Ó¥¹¤òÀßÄê¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h3>Secioss Access Manager</h3>
<h4>µ¡Ç½</h4>
<ul>
	<li>
	<p>
	¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó<br />
	Google Apps¡¢Salesforce¤ä¥ª¥ó¥×¥ì¥ß¥¹¡¢&nbsp;¥×¥é¥¤¥Ù¡¼¥È¥¯¥é¥¦¥ÉÆâ¤Î¥·¥¹¥Æ¥à¤È¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤¬²ÄÇ½¤Ç¤¹¡£<br />
	¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÊý¼°¤È¤·¤Æ¡¢SAML¡¢OpenID¡¢¥ê¥Ð¡¼¥¹¥×¥í¥­¥·Êý¼°¡¢¥¨¡¼¥¸¥§¥ó¥ÈÊý¼°¤ËÂÐ±þ¤·¤Æ¤¤¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	Ç§¾Ú<br />
	ID/¥Ñ¥¹¥ï¡¼¥ÉÇ§¾Ú¡¢Åý¹çWindowsÇ§¾Ú¡¢¥¯¥é¥¤¥¢¥ó¥È¾ÚÌÀ½ñÇ§¾Ú¡¢¥ï¥ó¥¿¥¤¥à¥Ñ¥¹¥ï¡¼¥ÉÇ§¾Ú¡¢·ÈÂÓÅÅÏÃÃ¼ËöÇ§¾Ú¡¢SAMLÇ§¾Ú¤ËÂÐ±þ¤·¤Æ¤¤¤Þ¤¹¡£<br />
	¥¯¥é¥¤¥¢¥ó¥È¤Î¥¢¥¯¥»¥¹¸µ¥Í¥Ã¥È¥ï¡¼¥¯¤ä»þ´ÖÂÓ¤Ë¤è¤Ã¤Æ¡¢Ç§¾Ú¥ë¡¼¥ë¡ÊÊ£¿ô¤ÎÇ§¾ÚÊý¼°¤òÁÈ¤ß¹ç¤ï¤»¤¿¤ê¡¢½çÈÖ¤ò»ØÄê¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡Ë¤òÀßÄê¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥¢¥«¥¦¥ó¥È¤Î¥í¥Ã¥¯¥¢¥¦¥È<br />
	»ØÄê¤·¤¿»þ´ÖÆâ¤Ë»ØÄê¤·¤¿²ó¿ôÇ§¾Ú¤Ë¼ºÇÔ¤·¤¿¾ì¹ç¡¢¥¢¥«¥¦¥ó¥È¤ò¥í¥Ã¥¯¥¢¥¦¥È¤·¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥¢¥¯¥»¥¹À©¸æ<br />
	¥æ¡¼¥¶¡¢¥°¥ë¡¼¥×¡¢¥¯¥é¥¤¥¢¥ó¥È¤Î¥¢¥¯¥»¥¹¸µ¥Í¥Ã¥È¥ï¡¼¥¯¤Ï¤â¤Á¤í¤ó¡¢»þ´ÖÂÓ¤äÇ§¾ÚÊý¼°¤Ç¤Î¥µ¡¼¥Ó¥¹¤ËÂÐ¤¹¤ë¥¢¥¯¥»¥¹À©¸æ¤¬²ÄÇ½¤Ç¤¹¡£&nbsp;<br />
	Ç§¾ÚÊý¼°¤Ë¤è¤ë¥¢¥¯¥»¥¹À©¸æ¤Ç¤Ï¡¢»ØÄê¤ÎÇ§¾ÚÊý¼°¤Ë¤è¤ë¥í¥°¥¤¥ó¤¬¹Ô¤ï¤ì¤Æ¤¤¤Ê¤¤¾ì¹ç¡¢¥µ¡¼¥Ó¥¹¤Ë¥¢¥¯¥»¥¹¤·¤¿¥¿¥¤¥ß¥ó¥°¤Ç»ØÄê¤ÎÇ§¾Ú¤¬Í×µá¤µ¤ì¤Þ¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥í¥°¸¡º÷<br />
	Ç§¾Ú¤Ë´Ø¤¹¤ë¥í¥°¤òWeb¤«¤é¸¡º÷¡¢É½¼¨¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	ÂåÍýÇ§¾Ú<br />
	SAMLÌ¤ÂÐ±þ¤ÎSaaS¤äASPÅù¡¢¥µ¡¼¥Ó¥¹Â¦¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¦¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¤¬¤Ê¤¤¾ì¹ç¡¢ÂåÍýÇ§¾Ú¤Ë¤è¤ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ò¹Ô¤¦¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£<br />
	SaaS Edition¤Î¤ß¤Îµ¡Ç½¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	¥Þ¥ë¥Á¥Æ¥Ê¥ó¥È<br />
	¥Æ¥Ê¥ó¥ÈÃ±°Ì¤Ç¡¢Ç§¾Ú¥ë¡¼¥ë¡¢¥¢¥¯¥»¥¹À©¸æ¤ÎÀßÄê¤¬²ÄÇ½¤Ç¤¹¡£<br />
	SaaS Edition¤Ç¤Ï¡¢¥Æ¥Ê¥ó¥ÈÃ±°Ì¤Ç»ÈÍÑ²ÄÇ½¤ÊÇ§¾ÚÊý¼°¤äÏ¢·È¤¹¤ë¥µ¡¼¥Ó¥¹¤òÀßÄê¤¹¤ë¤³¤È¤¬²ÄÇ½¤Ç¤¹¡£
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<h3>ÂÐ±þOS</h3>
<ul>
	<li>
	<p>
	Red Hat Enterprise Linux 5
	</p>
	</li>
	<li>
	<p>
	CentOS 5
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>ÂÐ±þ¥¢¥×¥ê¥±¡¼¥·¥ç¥ó</h3>
<p>
¼¡¤ÎWeb¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤È¤ÎÏ¢·È¤¬²ÄÇ½¤Ç¤¹¡£<br />
¤½¤ÎÂ¾¤ÎWeb¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¤Ä¤¤¤Æ¤âÂÐ±þ²ÄÇ½¤Ç¤¹¤Î¤Ç¡¢¤´ÁêÃÌ²¼¤µ¤¤¡£
</p>
<h5>Secioss Identity Manager Enterprise Edition</h5>
<ul>
	<li>
	<p>
	¥°¥ë¡¼¥×¥¦¥§¥¢<br />
	¡¡¡¦<a href="http://www.aipo.com/" target="_blank">Aipo</a>
	</p>
	</li>
	<li>
	<p>
	¶ÐÂÕ´ÉÍý<br />
	¡¡¡¦<a href="http://www.mosp.jp/" target="_blank">MosP</a>
	</p>
	</li>
	<li>
	<p>
	ÈÎÇä´ÉÍý<br />
	¡¡¡¦<a href="http://www.ark-info-sys.co.jp/jp/product/salescube/index.html" target="_blank">SalesCube</a>
	</p>
	</li>
	<li>
	<p>
	Saas¥µ¡¼¥Ó¥¹<br />
	¡¡¡¦Salesforce<br />
	¡¡¡¦Google Apps
	</p>
	</li>
	<li>
	<p>
	¥á¡¼¥ë¥·¥¹¥Æ¥à<br />
	¡¡¡¦Zimbra
	</p>
	</li>
	<li>
	<p>
	¥á¡¼¥ë¥¢¡¼¥«¥¤¥Ö<br />
	¡¡¡¦MailArchiva
	</p>
	</li>
	<li>
	<p>
	¥Ý¡¼¥¿¥ë<br />
	¡¡¡¦NetCommons<br />
	¡¡¡¦Liferay<br />
	¡¡¡¦XOOPS Cube
	</p>
	</li>
	<li>
	<p>
	ECM¡Ê´ë¶È¸þ¤±¥³¥ó¥Æ¥ó¥Ä´ÉÍý¥·¥¹¥Æ¥à¡Ë<br />
	¡¡¡¦Alfresco
	</p>
	</li>
	<li>
	<p>
	Ê¸½ñ´ÉÍý<br />
	¡¡¡¦KnowledgeTree
	</p>
	</li>
	<li>
	<p>
	¥Ö¥í¥°<br />
	¡¡¡¦MovableType
	</p>
	</li>
	<li>
	<p>
	CRM<br />
	¡¡¡¦SugarCRM
	</p>
	</li>
</ul>
<h5>Secioss Access Manager Eterprise Edition</h5>
<ul>
	<li>
	<p>
	¾ÚÌÀ½ñÇ§¾Ú<br />
	¡¡¡¦<a href="http://www.jcch-sss.com/service/gleas" target="_blank">Gleas¡ÊJCCH¡¦¥»¥­¥å¥ê¥Æ¥£¡¦¥½¥ê¥å¡¼¥·¥ç¥ó¡¦¥·¥¹¥Æ¥à¥º¡Ë</a>
	</p>
	</li>
	<li>
	<p>
	¥°¥ë¡¼¥×¥¦¥§¥¢<br />
	¡¡¡¦<a href="http://www.aipo.com/" target="_blank">Aipo</a><br />
	¡¡¡¦¥µ¥¤¥Ü¥¦¥º¥¬¥ë¡¼¥ó£²
	</p>
	</li>
	<li>
	<p>
	¶ÐÂÕ´ÉÍý<br />
	¡¡¡¦<a href="http://www.mosp.jp/" target="_blank">MosP</a>
	</p>
	</li>
	<li>
	<p>
	ÈÎÇä´ÉÍý<br />
	¡¡¡¦<a href="http://www.ark-info-sys.co.jp/jp/product/salescube/index.html" target="_blank">SalesCube</a>
	</p>
	</li>
	<li>
	<p>
	SaaS¥µ¡¼¥Ó¥¹<br />
	¡¡¡¦Salesforce<br />
	¡¡¡¦Google Apps
	</p>
	</li>
	<li>
	<p>
	¥á¡¼¥ë¥¢¡¼¥«¥¤¥Ö<br />
	¡¡¡¦MailArchiva
	</p>
	</li>
	<li>
	<p>
	¥Ý¡¼¥¿¥ë<br />
	¡¡¡¦NetCommons ¡¡¡¦XOOPS Cube
	</p>
	</li>
	<li>
	<p>
	Ê¸½ñ´ÉÍý<br />
	¡¡¡¦KnowledgeTree
	</p>
	</li>
	<li>
	<p>
	¥Ö¥í¥°<br />
	¡¡¡¦MovableType
	</p>
	</li>
	<li>
	<p>
	CRM<br />
	¡¡¡¦SugarCRM
	</p>
	</li>
	<li>
	<p>
	¥¢¥ó¥±¡¼¥È¥·¥¹¥Æ¥à<br />
	¡¡¡¦LimeSurvey
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>²Á³Ê</h3>
<h4>¥½¥Õ¥È¥¦¥§¥¢</h4>
<p>
¥é¥¤¥»¥ó¥¹²Á³Ê¤Î¾ÜºÙ¤Ë¤Ä¤¤¤Æ¤Ï¡¢<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤Ë¤ªÌä¹ç¤»²¼¤µ¤¤¡£
</p>
<p>
&nbsp;
</p>
<h4>¥µ¥Ý¡¼¥È</h4>
<p>
Ç¯´Ö¤Î¥µ¥Ý¡¼¥ÈÎÁ¤Ï¡¢¥é¥¤¥»¥ó¥¹²Á³Ê¤Ë´Þ¤Þ¤ì¤Æ¤¤¤Þ¤¹¡£&nbsp;
</p>
<p>
¥µ¥Ý¡¼¥È¡¦¥µ¡¼¥Ó¥¹¤ÎÆâÍÆ¤Ï°Ê²¼¤Ë¤Ê¤ê¤Þ¤¹¡£
</p>
<ul>
	<li>
	<p>
	À½ÉÊ¤Î¥¤¥ó¥¹¥È¡¼¥ëÊýË¡¡¢ÀßÄêÊýË¡¡¢µ¡Ç½¤Ë´Ø¤¹¤ë¥á¡¼¥ë¤Ë¤è¤ë¥Þ¥Ë¥å¥¢¥ë¥ì¥Ù¥ë¤ÎÌä¤¤¹ç¤ï¤»ÂÐ±þ
	</p>
	</li>
	<li>
	<p>
	¥á¡¼¥ë¤Ç¤Î¥ª¥Õ¥µ¥¤¥È¾ã³²Ä´ºº&nbsp;
	</p>
	</li>
	<li>
	<p>
	À½ÉÊ¤Î¥Þ¥¤¥Ê¡¼¥Ð¡¼¥¸¥ç¥ó¥¢¥Ã¥×ÈÇ¤ÎÄó¶¡
	</p>
	</li>
</ul>
<p>
&nbsp;
</p>
<p>
&nbsp;
</p>
<h3>Ìä¹ç¤»</h3>
<p>
ËÜÀ½ÉÊ¤Ë´Ø¤¹¤ë¤ªÌä¹ç¤»¤Ï<a href="http://www.secioss.co.jp/005/">¤³¤Á¤é</a>¤«¤é¤ª´ê¤¤¤·¤Þ¤¹¡£
</p>
]]></description>
         <link>http://www.secioss.co.jp/2010/01/secioss_identityaccess_manager_1.html</link>
         <guid>http://www.secioss.co.jp/2010/01/secioss_identityaccess_manager_1.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">00201¥½¥ê¥å¡¼¥·¥ç¥ó</category>
        
        
         <pubDate>Thu, 07 Jan 2010 17:56:27 +0900</pubDate>
      </item>
            <item>
         <title>¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢</title>
         <description><![CDATA[<p>
¥»¥·¥ª¥¹¤¬Äó¶¡¤·¤Æ¤¤¤ë¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£
</p>
<p>
&nbsp;
</p>
<ul>
	<li>
	<p>
	<a href="http://www.secioss.co.jp/2010/09/secioss_access_manager_communi_1.html">Secioss Access Manager Community Edition</a><br />
	SAML¤äShibboleth¡¢OpenID¡¢¥ê¥Ð¡¼¥¹¥×¥í¥­¥·Êý¼°¡¢¥¨¡¼¥¸¥§¥ó¥ÈÊý¼°Åù¡¢ÍÍ¡¹¤Ê¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óÊý¼°¤ËÂÐ±þ¤·¤¿¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¥½¥ê¥å¡¼¥·¥ç¥ó¤Ç¤¹¡£<br />
	&nbsp;
	</p>
	</li>
	<li>
	<p>
	<a href="http://www.secioss.co.jp/2009/12/secioss_otp_1.html">Secioss OTP</a><br />
	·ÈÂÓÅÅÏÃ¤ò»ÈÍÑ¤·¤¿¥ï¥ó¥¿¥¤¥à¥Ñ¥¹¥ï¡¼¥É¤Î¥½¥Õ¥È¥¦¥§¥¢¥È¡¼¥¯¥ó¤Ç¤¹¡£<br />
	&nbsp;
	</p>
	</li>
	<li>
	<p>
	<a href="http://www.secioss.co.jp/2011/02/secioss_identity_suite_cloud_e_2.html">Secioss Identity Suite Cloud Edition</a><br />
	Web¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤ËSAMLÇ§¾Ú¤Î¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥óµ¡Ç½¤ÈIDÆ±´üÍÑWeb API¤òÉÕ²Ã¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£
	</p>
	</li>
	<li>
	<p>
	<a href="http://www.secioss.co.jp/2010/07/secioss_identity_suite_gae_edi.html">Secioss Identity Suite GAE Edition<br />
	</a>Goolge App Engine¾å¤ÇÆ°ºî¤¹¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¥·¥ó¥°¥ë¥µ¥¤¥ó¥ª¥ó¤ÈIDÏ¢·ÈÍÑ¤Î¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¤òÄó¶¡¤¹¤ë¥½¥Õ¥È¥¦¥§¥¢¤Ç¤¹¡£<br />
	&nbsp;
	</p>
	</li>
</ul>
]]></description>
         <link>http://www.secioss.co.jp/2009/12/post_5.html</link>
         <guid>http://www.secioss.co.jp/2009/12/post_5.html</guid>
                  <category domain="http://www.sixapart.com/ns/types#category">005µ»½Ñ¾ðÊó</category>
        
        
         <pubDate>Sat, 12 Dec 2009 10:24:37 +0900</pubDate>
      </item>
      
   </channel>
</rss>

