çµç¹ã¯ããœãããŠã§ã¢ãµãã©ã€ãã§ãŒã³ãä¿è·ããããšããäžã§ããŸããŸãæ°ããªèª²é¡ã«çŽé¢ããŠããŸãã ããã¯ãåŸæ¥å¡ããã忣ã¢ãã«ã«ç§»è¡ããçµç¹ã忣ããŒã ã§ããå€ãã®éçºè ãã¹ã±ãŒãªã³ã°ããã³ãªã³ããŒãã£ã³ã°ããã«ã€ããŠãç¹ã«å°é£ã«ãªã£ãŠããŸãã 2021幎ã«ã¯ãœãããŠã§ã¢ãµãã©ã€ãã§ãŒã³æ»æã®æ°ã650%å¢å ããŠãããããããã¹ãŠã®éçºè ã調æŽããããšã¯ãçµç¹ã«æ·±å»ãªã»ãã¥ãªãã£ã管çãããã³å¯èŠæ§ã®èª²é¡ããããããŸãã
æè¿ããŠã§ãããŒãäž»å¬ããŸããã Docker Businessã«ãããœãããŠã§ã¢ãµãã©ã€ãã§ãŒã³ã®ä¿è· ããã¯ãèŠéããå Žåã¯ãªã³ããã³ãã§å©çšã§ããããã«ãªããŸããã ãŠã§ãããŒã§ã¯ãDockerã®CTOã§ããJustin Cormackãšã«ã¹ã¿ããŒãµã¯ã»ã¹ãšã³ãžãã¢ã®Nikhi Anandããäžè¬çãªã»ãã¥ãªãã£ã®èª²é¡ãã³ã³ãã³ããã»ãã¥ãªãã£ã§ä¿è·ããããã®ãã¹ããã©ã¯ãã£ã¹ãDockerãæè¿ã®Log4jã®è匱æ§ã«å¯ŸåŠããã®ã«ã©ã®ããã«åœ¹ç«ã€ããéçºè ã®äœæ¥ãå®å šã«ä¿ã€ããã«Dockerãç©æ¥µçã«è¡ã£ãŠããããšãããã³ Docker Business ãçµç¹ãã¹ã±ãŒã©ãã«ã§ããå®å šãªæ¹æ³ã§Dockerã®äœ¿çšãæšæºåããã®ã«ã©ã®ããã«åœ¹ç«ã€ãã«ã€ããŠèª¬æããŸããã
ã»ãã¥ãªãã£ãŠã§ãããŒã®é²ç»ã ãªã³ããã³ãã§èŠèŽããããèªã¿ç¶ããŠèŠéãããã®ã«è¿œãã€ããŸãã
ã³ã³ãã³ããã»ãã¥ãªãã£ã§ä¿è·ããããã®ãã¹ã ãã©ã¯ãã£ã¹: Docker ã®ä¿¡é Œãããã³ã³ãã³ã
ãµãã©ã€ãã§ãŒã³ãä¿è·ããããã®éèŠãªåºçºç¹ã®1ã€ã¯ãéçºè ã®ã©ãããããã§ãã éçºè ã䜿çšããŠããã€ã¡ãŒãžãããããã©ãããæ¥ãŠããããã©ã®ããã«ç¶æãããŠããããããã³ããããçŸåšã®ã»ãã¥ãªãã£ã®ãã¹ããã©ã¯ãã£ã¹ã«æºæ ããŠãããã©ããã«ã€ããŠã®æŽå¯ãåŸãããšãéèŠã§ãã Docker å ¬åŒã€ã¡ãŒãžã Docker æ€èšŒæžã¿çºè¡å ããã°ã©ã ãªã©ã® Docker ä¿¡é Œæžã¿ã³ã³ãã³ã ããã°ã©ã ã¯ããããã®ã€ã¡ãŒãžãä¿¡é Œã§ãããœãŒã¹ããã®ãã®ã§ããããšãéçºè ã«æ€èšŒãããªãããŸããªããžããªããæªæã®ããã€ã¡ãŒãžããã«ãããªã¹ã¯ã軜æžããŸãã
Docker å ¬åŒã€ã¡ãŒãžã¯ãDocker Hub ã§ãã¹ããããŠãã Docker ãªããžããªã®å³éžãããã»ããã§ãããããã®ç»åã«ã¯æç¢ºãªããã¥ã¡ã³ããããããã¹ããã©ã¯ãã£ã¹ãä¿é²ããæãäžè¬çãªãŠãŒã¹ã±ãŒã¹åãã«èšèšãããŠããŸãã
Docker æ€èšŒæžã¿çºè¡å ããã°ã©ã ã䜿çšãããšãç¬ç«ç³»ãœãããŠã§ã¢ ãã³ã㌠(ISV)ãéçºããŒã« ãã³ããŒãããã³ãã©ãããã©ãŒã ãããã€ããŒã¯ãDocker Hub ãä»ã㊠Docker åãããã³ã³ãã³ããé åžã§ããŸããDocker Hub ãªããžããªã«å«ãŸããæ€èšŒæžã¿çºè¡å ãããžã¯ããããã®ãªããžããªã Docker ããŒãããŒã«ãã£ãŠå ¬éãããŠãããéçºè ã®ã»ãã¥ãªãã£ã§ä¿è·ããããµãã©ã€ ãã§ãŒã³ã«å«ããè³æ Œãããããšã瀺ããŸãã
ä»»æã®ãããªãã¯ã€ã¡ãŒãžããã«ããŠå®è¡ãããšãããžãã¹ã¯ã»ãã¥ãªãã£ãªã¹ã¯ã«ãããããŸãã Docker å ¬åŒã€ã¡ãŒãžã Docker æ€èšŒæžã¿çºè¡å ã€ã¡ãŒãžãªã©ã®ä¿¡é Œã§ããã³ã³ãã³ãã¯ãããå®å šãªã¢ããªã±ãŒã·ã§ã³éçºã«å¿ èŠãªä¿¡é Œæ§ã®é«ããã«ãã£ã³ã° ãããã¯ãæäŸããŸãã ãããã®ã€ã¡ãŒãžã¯å®æçã«ç¶æããã³æŽæ°ãããã»ãã¥ãªãã£ã®ãã¹ã ãã©ã¯ãã£ã¹ã«åŸããŸããÂ
Log4j ã®è匱æ§
ãŠã§ãããŒã§ã¯ãDocker CTOããžã£ã¹ãã£ã³ã»ã³ãŒããã¯ãæè¿ã® Log4j 2ã®è匱æ§CVE-2021-44228ã«å¯ŸåŠããŸããã Dockerãšã³ãžãã¢ãªã³ã°ããŒã ã¯ããŠãŒã¶ãŒãæ¯æŽããããã«ã次ã®ãããªããã€ãã®ãœãªã¥ãŒã·ã§ã³ã«åãçµãã§ããŸããã
- Docker ã®è匱æ§ã¹ãã£ã³ ãæ¹åããããã®ããã€ãã®ä¿®æ£ãåºè·ãããã³ã³ãã㌠ã€ã¡ãŒãžã® Log4j ã®åé¡ãæ€åºã§ããããã«ãªããŸããã ããŒã ã¯å¿ èŠã«å¿ããŠããã調æŽããŠããŸãã
- Docker Hub ã¹ãã£ã³ ã€ã³ã¿ãŒãã§ã€ã¹ã«ãLog4j ã®åœ±é¿ãåããã€ã¡ãŒãžã衚瀺ããã¡ã¢ã远å ããŸãã
- Docker å ¬åŒã€ã¡ãŒãžã Log4j ã«å¯ŸããŠè匱ã§ããããä¿®æ£ãããŠããããç€ºãæ©èœããªãªãŒã¹ããŸããã
- è匱ãªããŒãžã§ã³ãå«ã Docker å ¬åŒã€ã¡ãŒãžãšãDocker å ¬åŒã€ã¡ãŒãžã®çŸåšã®ã¹ããŒã¿ã¹æŽæ°ã«é¢ããæ å ±ã衚瀺ãã ããŒãžã Web ãµã€ãã«èšçœ®ããŸãã
Docker ç¬èªã®ã€ã³ãã©ã¹ãã©ã¯ãã£ããã³ Docker Desktop ã¯ãLog4j 2 ã®è匱æ§ã®åœ±é¿ãåããŸããã Dockerã¯äž»ã«Goã³ãŒãã䜿çšããŠã¢ããªã±ãŒã·ã§ã³ãæ§ç¯ããJavaã¯äœ¿çšããŸããã äžéšã®Javaã¢ããªã±ãŒã·ã§ã³ãå éšã§äœ¿çšããŠããŸãããCVE-2021-44228ããã³CVE-2021-45046ã«å¯ŸããŠè匱ã§ã¯ãªãããšã確èªããŠããŸãã
Dockerãã¹ã¯ããããå®å šã«ãããã®ã¯äœã§ãã?
Dockerãã¹ã¯ãããã¯ããŠãŒã¶ãŒã«ãšã£ãŠå®å šãªãã¹ã¯ãããã·ã¹ãã ãšããŠèšèšãããçµ±å補åã§ãã ã»ãã¥ãªã㣠ãªã¹ã¯ã軜æžãããšããç¹ã§ãDocker Desktop ã«ã¯ãDocker ã«ãã£ãŠç®¡çãããå®å šãªè»œéã® Linux VM ããããŸãã Docker Desktop ã¯ããã® VM ãå®å šãªæ¢å®å€ã§èšå®ããã ãã§ãªããå¿ èŠã«å¿ã㊠curl ããããŸãã¯ã»ãã¥ãªãã£ä¿®æ£ããã°ã©ã ãé©çšããããšã§ããã® VM ãšä»ã®ãã¹ãŠã®ã³ã³ããŒãã³ããæ®æ¥æéã§ææ°ã®ç¶æ ã«ä¿ã¡ãŸãã Docker Desktop ã§ã¯ãMicrosoft Hyper-V ãŸã㯠WSL 2 ããã¯ãšã³ãã®éžæè¢ããããŸãã åºè·ããã Hyper-V ããã¯ãšã³ãã¯ãDocker ã«ãã£ãŠå®å šã«ç®¡çãããŠããŸãã
Docker Businessã¯ãã€ã¡ãŒãžã¢ã¯ã»ã¹ç®¡çã(ãŸããªãåºè·ããã)ã¬ãžã¹ããªã¢ã¯ã»ã¹ç®¡çãªã©ã®æ©èœãåããã³ã³ãããŒã«ãã¬ãŒã³ãæäŸããããã管çè ã¯éçºè ãäœæ¥ããŠããã€ã¡ãŒãžãå¶åŸ¡ããã³ç®¡çã§ããŸãã ç§ãã¡ã¯è¿œå ã®å¯èŠ³æž¬æ§æ©èœã«åãçµãã§ããŸãããããã£ãŒãããã¯ããåŸ ã¡ããŠãããŸãã®ã§ãããŒããããã§éçºè ã«ãšã£ãŠæã圹ç«ã€æ©èœããç¥ãããã ããã
ã»ãã¥ãªãã£ã®èгç¹ããèŠãããã«ãŒãšDIY
ã€ãããŒã·ã§ã³ãæšé²ããããã«äŒæ¥ãçŽé¢ããäžè¬çãªèª²é¡ã® 1 ã€ã¯ãéçºè ãäœæ¥ãç°¡çŽ åããããžãã¹ã®äžæ žã§ã¯ãªãäœæ¥ã«æå°éã®æéãè²»ãããªãã䟡å€ãåµé ããããã«å¿ èŠãªããŒã«ã確å®ã«å ¥æã§ããããã«ããæ¹æ³ã§ãã ã»ãšãã©ã®äŒæ¥ã¯ãç¬èªã®ãœãããŠã§ã¢ãæ§ç¯ããã®ã§ã¯ãªããåçšãœãããŠã§ã¢ãè³Œå ¥ããããšã匷ã奜ã¿ããããã®æ±ºå®ãäžãéã®éèŠãªèŠçŽ ã®ããã€ãã¯æ¬¡ã®ãšããã§ãã
- æéã®ã³ã¹ã
- æ©äŒè²»çš
- 䟡å€å®çŸãŸã§ã®æé
- ã»ãã¥ãªãã£ãªã¹ã¯ã®ã³ã¹ã
- ãªãŒãã³ãœãŒã¹ãœãããŠã§ã¢ã䜿çšããDIYã¯ãç§ãã¡ã®çµç¹ã«ãšã£ãŠçã«ããªã£ãŠããŸãã?
éçºè ãããžãã¹ã®äžæ žã§ã¯ãªãDIYéçºãããžã§ã¯ãã®æ§ç¯ã«æéãè²»ãããŠããå Žåã䟡å€å®çŸãŸã§ã®æéãšæè³åççã«å€§ããªåœ±é¿ãäžããå¯èœæ§ããããŸãã ãªãŒãã³ãœãŒã¹ãœãããŠã§ã¢ãšDocker Engineã¢ãããŒãã䜿çšããDIYãæ€èšããŠããå Žåã¯ããœãããŠã§ã¢ããŒã ãšãšã³ãžãã¢ãªã³ã°ãªãœãŒã¹ããDIYãœãªã¥ãŒã·ã§ã³ã®ãã¹ãŠã®ã³ã³ããŒãã³ããæŽæ°ãããã¹ãŠã®è匱æ§ã«æéã®çµéãšãšãã«ããããé©çšããããã®æºåãšèšåãåããŠãããã©ãããæ€èšããããšãéèŠã§ãã
æéã®ã³ã¹ãã䟡å€å®çŸãŸã§ã®æéãDIYãœãªã¥ãŒã·ã§ã³ãçµç¹ã«æé©ãã©ãããªã©ãããã€ãã®å·¥å Žãèæ ®ãããšãããŒã¿ã¯ãã»ãšãã©ã®çµç¹ãç¬èªã®ãœãªã¥ãŒã·ã§ã³ãæ§ç¯ããããšããããããåçšãœãããŠã§ã¢ãè³Œå ¥ããæ¹ãè¯ãããšã瀺ããŠããŸããÂ
ããã«ãŒSSOãè¿ã¥ããŠããŸã
ãŠã§ãããŒã®æåŸã®èª¬æã«ã¯ãSSOã2022幎1æ(仿)ã«æäŸããããšããçºè¡šãå«ãŸããŸãã SSO ã䜿çšãããšããŠãŒã¶ãŒã¯çµç¹ã®æšæº ID ãããã€ããŒã䜿çšããŠèªèšŒããDocker ã«ã¢ã¯ã»ã¹ã§ããŸãããããã¯æãèŠæã®å€ãã£ãæ©èœã® 1 ã€ã§ãããDocker Business ãµãã¹ã¯ãªãã·ã§ã³ã«å«ãŸããŠããŸãã
ãã¯ã€ãããŒããŒ: Docker Business ã䜿çšããææ°ã®å®å šãªã¢ããªã±ãŒã·ã§ã³ãå€§èŠæš¡ã«æ§ç¯ãã
ãŠã§ãããŒã§åãäžãããããã¯ã®äžéšãšãDocker Business ãé«åºŠãªæ©èœã§ãœãããŠã§ã¢ ãµãã©ã€ ãã§ãŒã³ãä¿è·ããæ¹æ³ã«ã€ããŠè©³ããã¯ãæ°ãã Docker Business ãã¯ã€ãããŒããŒãã芧ãã ããã
ã»ãã¥ãªãã£ã«é¢ãã Q&A
Dockerã®CTOã§ããJustin Cormackãšã«ã¹ã¿ããŒãµã¯ã»ã¹ãšã³ãžãã¢ã®Nikhi AnandããŠã§ãããŒäžã«ã©ã€ãã§Q&Aã«åçãããŠã§ãããŒã®è³ªåãšåçã以äžã«ãã£ããã£ããŸããã
å人ããŒã¿ã¯ Docker ãã¹ã¯ããã ãµãã¹ã¯ãªãã·ã§ã³ã§åéãããŸãã?Â
åœç€Ÿã¯ãDocker Desktop äžã§å人ããŒã¿ã PII ãåéããããšã¯ãããŸããã åœç€Ÿã¯ã人ã ãåœç€Ÿã®è£œåãã©ã®ããã«äœ¿çšããŠããããããããçè§£ããããã«å¿ååãããããŒã¿ãåéãã補åãæ¹åããããšãã§ããŸããããã¹ãŠã®ãŠãŒã¶ãŒã¯èšå®ã§å¿åããŒã¿åéããªããã¢ãŠããããªãã·ã§ã³ããããŸãã å°æ¥çã«ã¯ãçµç¹å ã®ãã¹ãŠã®äººããªããã¢ãŠãã§ããDocker Businessæ©èœãæäŸããäºå®ã§ãããçŸæç¹ã§ã¯åå¥ã«ãªããã¢ãŠãããå¿ èŠããããŸããããã®æ©èœã¯ ããŒããããã«ãããŸãã
Docker Business ãµãã¹ã¯ãªãã·ã§ã³ã¯ SaaS ãªãã¡ãªã³ã°ã§ãã?Â
ã¯ããDocker Businessã³ã³ãããŒã«ãã¬ãŒã³ã¯ãµãŒãã¹ãšããŠæäŸãããŠããŸãããDocker Desktopèªäœã¯éçºè ã®ã¯ãŒã¯ã¹ããŒã·ã§ã³ã§ã¹ã¿ã³ãã¢ãã³ã§å®è¡ãããŸãã éçºè ã¯ãªãã©ã€ã³ã§äœæ¥ããããšã奜ãããšãçè§£ããŠããããã管çè ã¯ããŒã ã¡ã³ããŒã«ãã°ã€ã³ãèŠæ±ãããã©ãããèšå®ã§ããããžãã¹ã³ã³ãããŒã«ãã¬ãŒã³ããåæãããDockerDesktopã䜿çšã§ããŸããÂ
ã³ã³ããã§log4jãã©ã®ããã«åŠçããå¿ èŠããããŸãã?
åæ§ç¯ãšæŽæ°ã¯ãçŸæç¹ã§ã®æåã®è§£æ±ºçã§ãã æãéèŠãªããšã¯ãã§ããã ãæ©ãä¿®æ£ããŒãžã§ã³ã«æŽæ°ããããšã§ãã Docker å ¬åŒã€ã¡ãŒãžã䜿çšããŠããŠããã®ãŸãŸãããã€ããŠããå Žåã¯ãDocker å ¬åŒã€ã¡ãŒãž ãµã€ãã® ãªãªãŒã¹ ããŒããèŠããšããã®ããŒãžã§ã³ãä¿®æ£ãããŠãããã©ãããããããŸãã Docker Desktop ã®ææ°ãªãªãŒã¹ã§ã¯ããã¹ãŠã广çã«ä¿®åŸ©ã§ãããã©ãããæ€åºã§ããã¹ãã£ã³ ããŒã«ãæäŸãããŠããããããããã®ããŒã«ã䜿çšããŠãæŽæ°ããããšãèŠèœãšãããªãããšã確èªã§ããŸãã
ææ°ããŒãžã§ã³ã® Docker ãã¹ã¯ãããã«æŽæ°ããå©ç¹ã¯äœã§ãã?
ææ°ããŒãžã§ã³ã«ã¢ããã°ã¬ãŒãããããšã匷ããå§ãããŸãã èæœåãããœãããŠã§ã¢ãé·ã䜿ãç¶ããã»ã©ãèªåã§çã¿åºãã»ãã¥ãªãã£ãªã¹ã¯ã倧ãããªããŸãã å ·äœçã«ã¯ãå€ããœãããŠã§ã¢ã«ã¯æè¿çºèŠãããã»ãã¥ãªãã£è匱æ§ã®ãããããªããæ°ããé »ç¹ã«æŽæ°ããããœãããŠã§ã¢(Docker Desktopã®æ©èœã®1ã€)ã«ã¯åžžã«ææ°ã®ãããããããŸãã
Hyper-V ãš WSL 2 ã®ã©ã¡ããããå®å šã§ãã?
çŸåšã®äžè¬çãªã³ã³ã»ã³ãµã¹ã¯ãHyper-Vã¯ãç¹ã«Dockerãã¹ã¯ãããHyper-Vã®ç®¡çãšæŽæ°ã«ãããããå°ãå®å šã§ç®¡çãããããšããããšã§ãã WSL 2 ã§ã¯ããå€ãã®æ©èœãæäŸãããå€ãã®éçºè ã Windows ã§ WSL 2 ã䜿çšããããšã楜ããã§ãããããDocker ã¯äž¡æ¹ã®ãªãã·ã§ã³ãæäŸããŸãã ããªããšããªãã®ããŒã ã«ãšã£ãŠé©åãªãªãã·ã§ã³ã¯ãçµç¹ã®ããŒãºãšèŠä»¶ã«å€§ããäŸåããŸãã
ã¯ã©ã€ã¢ã³ãã«ã€ã¡ãŒãžããããã€ããå ŽåãåŸæ¥å¡ã 150 人ãè¶ ããå Žåãã¯ã©ã€ã¢ã³ãã¯ã€ã¡ãŒãžãå®è¡ããããã« Docker Business ãµãã¹ã¯ãªãã·ã§ã³ãæã£ãŠããå¿ èŠããããŸãã?
Dockerãã¹ã¯ãããã¯ãããã䜿çšããŠãã人ã«åºã¥ããŠã©ã€ã»ã³ã¹ãããŠãããããã¯ã©ã€ã¢ã³ãã¯DockerBusinessãµãã¹ã¯ãªãã·ã§ã³ãå¿ èŠã«ãªããŸãã ãã®ã¿ã€ãã®äœ¿çšæ³ã«ã€ããŠå€ãã®è³ªåããããå€ãã®äººããã®ããã«Docker Desktopã䜿çšããŠããããšãããã£ãŠãããããDocker Desktopã®ã©ã®çš®é¡ã®çµ±åæ¡åŒµæ©èœãã³ãã¥ããã£ã«åœ¹ç«ã€ãã«ã€ããŠè©³ããç¥ããããšæããŸãã ãã¹ã¯ãããæ¡åŒµæ©èœã«é¢ãã ããŒããããã®åé¡ ããããŸãã®ã§ãããã§ãã£ãŒãããã¯ããå¯ããã ããã
ã³ã³ããã®çœ²åãšæ€èšŒãããã³ãã®å®è£ æ¹æ³ã«ã€ããŠå°ãã話ãããã ããŸãããÂ
ç§ãã¡ã¯äœå¹Žãåã«NotaryãšåŒã°ããçµ±åãããžã§ã¯ããDocker Hubã«åºè·ããŸããã ãã€ã¯ããœãããAmazonããã®ä»ã®ããŒãããŒãšååããŠãããã®æŽæ°ããŒãžã§ã³ãäœæããŠãããæ°ããã³ã³ãããŒçœ²åãã¬ãŒã ã¯ãŒã¯ãšèŠãªããŠããŸãã ããã¯2022幎ã«ãªãªãŒã¹ãããäºå®ã§ãã
çµè«ãšè¿œå ã®ãªãœãŒã¹Â
Dockerããžãã¹ãŠã§ãããŒã«ãããœãããŠã§ã¢ãµãã©ã€ãã§ãŒã³ã®ä¿è·ã«ãåå ããã ãããããšãããããŸãã以äžã¯ãDockerã»ãã¥ãªãã£ãã©ã¯ãã£ã¹ãšDockerããžãã¹ã«ã€ããŠè©³ããç¥ãããå Žåã«ç¢ºèªãã¹ã远å ã®ãªãœãŒã¹ã§ãã
- Dockerãµãã¹ã¯ãªãã·ã§ã³ãµãŒãã¹å¥çŽã®ç¶äºæéããŸããªãçµäºããŸãâç¥ã£ãŠããã¹ãããšã¯æ¬¡ã®ãšããã§ã
- ãªã³ããã³ããŠã§ãããŒ:Docker Business ã«ããå€§èŠæš¡ãªç®¡çãšã»ãã¥ãªãã£
- Web ããŒãž: Docker ãã¹ã¯ãããã®ä»£æ¿æ¡ãè©äŸ¡ããããã®èæ ®äºé
- ãã¯ã€ãããŒããŒ: Docker Business ã䜿çšããææ°ã®å®å šãªã¢ããªã±ãŒã·ã§ã³ãå€§èŠæš¡ã«æ§ç¯ãã
- ããã°:å®å šãªãœãããŠã§ã¢ãµãã©ã€ãã§ãŒã³ã®ãã¹ããã©ã¯ãã£ã¹