DPIïŒãã£ãŒããã±ããã€ã³ã¹ãã¯ã·ã§ã³ïŒ ãšã¯ïŒ
- ãã±ããã®ãã€ããŒãïŒäžèº«ïŒãŸã§è§£æããŠè åšãæ€ç¥ãã
- ã·ã°ããã£ãããã³ã°ã§ãã«ãŠã§ã¢ãäžå¯©ãã¿ãŒã³ãèå¥ãã
- ã¢ããªã±ãŒã·ã§ã³çš®å¥ïŒHTTPã»P2Pãªã©ïŒã«ãã垯åå¶åŸ¡ã«ã䜿ããã
- æå·åéä¿¡ïŒTLSïŒãæ®åããæ€æ»ã§ããç¯å²ãéãããŠããŠãã
ãã±ãããã£ã«ã¿ãªã³ã°ãšDPIã£ãŠäœãéãã®ïŒ
éåžžã®ãã±ãããã£ã«ã¿ãªã³ã°ã¯éä¿¡å ã»å®å ã®IPã¢ãã¬ã¹ãããŒãçªå·ã ããèŠããã ãDPIã¯ããã«èžã¿èŸŒãã§ããã±ããã®ããŒã¿éšåïŒãã€ããŒãïŒã®äžèº«ãŸã§è§£æãããã
äžèº«ãŸã§èŠãã£ãŠãããããã©ããã£ãŠãã«ãŠã§ã¢ãšãèŠã€ããã®ïŒ
æ¢ç¥ã®ãã«ãŠã§ã¢ãæ»æãã¿ãŒã³ãã·ã°ããã£ãšããŠããŒã¿ããŒã¹åããŠãããŠãæµããŠãããã±ããã®å 容ãšç §åãããã ããäžèŽãããäžå¯©ãšå€æããŠãããã¯ãããã¢ã©ãŒããåºããããããã ã
äŒæ¥ãããã¯ãŒã¯ã§YouTubeãå¶éãããããã®ãDPIãªã®ïŒ
ããã ãïŒã¢ããªã±ãŒã·ã§ã³ã®éä¿¡ãã¿ãŒã³ãèå¥ããŠãYouTubeã»P2Pã»ã²ãŒã ãšãã£ãçš®å¥ããšã«åž¯åãå¶éãããåªå é äœãã€ãããã§ãããã ããããã¢ããªã±ãŒã·ã§ã³ã¢ãŠã§ã¢ãªãã©ãã£ãã¯å¶åŸ¡ãšãããã
TLSæå·åãæ®åããŠããããäžèº«ãèªããªããªãããããªãã®ïŒ
éãããæå·åããããã€ããŒãã¯DPIã§ã¯èªããªããã ããã ããTLSãã³ãã·ã§ã€ã¯æã®SNIïŒãµãŒãåïŒãJA3ãã£ã³ã¬ãŒããªã³ããšããæå·åç¹æ§ã®æ å ±ãããããçšåºŠã®èå¥ã¯ã§ãããã
ãã©ã€ãã·ãŒçã«ã¯åé¡ã«ãªããªãã®ïŒ
éä¿¡å å®¹ãæ·±ãèŠãããããã©ã€ãã·ãŒäŸµå®³ãéä¿¡ã®ç§å¯ã®èгç¹ã§è«äºãããããäŒæ¥ã®ç€Ÿå ãããã¯ãŒã¯ç®¡çãISPã®QoSã§ã¯åºã䜿ãããŠãããã©ãäžè¬ãŠãŒã¶ã®éä¿¡ãç¡æã§æ€æ»ããããšã¯å€ãã®åœã§èŠå¶ãããŠãããã ã
ã¹ããŒããã«ãšã¹ããŒãã¬ã¹ã£ãŠDPIã«ãé¢ä¿ããã®ïŒ
ãããïŒã¹ããŒãã¬ã¹DPIã¯1ãã±ãããã€ç¬ç«ããŠæ€æ»ããããé«éã ãã©ãè€æ°ãã±ããã«ãŸãããæ»æã¯èŠéãããããã¹ããŒããã«DPIã¯TCPã»ãã·ã§ã³å šäœã远跡ããŠæèããšåæãããã粟床ãé«ããªããã ããã ããã®åã¡ã¢ãªãå€ãæ¶è²»ãããã
IDS/IPSãšã®éãã¯äœãªã®ïŒ
DPIã¯ããã±ããã®äžèº«ãèŠãæè¡ããã®ãã®ã§ãIDSãIPSã¯DPIãæŽ»çšãããã·ã¹ãã ãã ããIDSã¯DetectionïŒæ€ç¥ã®ã¿ïŒãIPSã¯PreventionïŒæ€ç¥ïŒèªå鮿ïŒãšããéãããããDPIãç®ã§èŠãèœåãIDS/IPSã¯ãã®æ å ±ã䜿ã£ãŠå€æã»è¡åããèŠåå¡ã®ã€ã¡ãŒãžã ãã
ISPãDPIã䜿ãã£ãŠã©ãããã±ãŒã¹ãªã®ïŒ
代衚çãªã®ã¯P2Pãã¡ã€ã«å ±æã®åž¯åå¶éã ããBitTorrentãªã©ã®éä¿¡ãã¿ãŒã³ãDPIã§èå¥ããŠããããã¯ãŒã¯å šäœã®èŒ»èŒ³ãé²ãããã«é床ãçµããã ããã ããç¹å®ã®ã¢ããªãå·®å¥ããŠããããšããŠéä¿¡ã®äžç«æ§ïŒãããã¯ãŒã¯äžç«æ§ïŒã®è°è«ãšåžžã«ã»ããã«ãªãåé¡ã§ããããã
äžåœã®ã°ã¬ãŒããã¡ã€ã¢ãŠã©ãŒã«ãDPIã䜿ã£ãŠãã£ãŠèãããïŒ
ããã ããGFWã¯DPIãå€§èŠæš¡ã«æŽ»çšããŠãVPNã®éä¿¡ãã¿ãŒã³ãTorã®ãã©ãã£ãã¯ãèå¥ã»ãããã¯ããŠãããã ãåçŽãªIPãããã¯ã ãã§ãªãéä¿¡ã®ç¹åŸŽéãåæãããããè¿åãã©ãã©ãé£ãããªã£ãŠãããåœå®¶ã¬ãã«ã®ã€ã³ã¿ãŒãããæ€é²ã®ä»£è¡šäŸã ãã
GDPRãæ¥æ¬ã®æ³åŸã§ã¯DPIã£ãŠã©ãæ±ãããŠãã®ïŒ
EUã®GDPRã§ã¯éä¿¡å 容ã®åŠçã«å³æ Œãªå¶éããã£ãŠãISPãç¡æã§DPIã䜿ããšéåã«ãªãã±ãŒã¹ãããããæ¥æ¬ã§ã黿°éä¿¡äºæ¥æ³ã«ãéä¿¡ã®ç§å¯ãã®ä¿è·èŠå®ããã£ãŠãISPãæ£åœçç±ãªãéä¿¡å å®¹ãæ€æ»ããããšã¯å¶éãããŠãããã ãäŒæ¥ã®ç€Ÿå éä¿¡ãªã瀟å¡ãžã®äºååç¥ãéèŠã ãã
HTTPS Inspectionã£ãŠäœãªã®ïŒ
äŒæ¥ãããã¯ãŒã¯ã§ãã䜿ãããä»çµã¿ã§ããã¡ã€ã¢ãŠã©ãŒã«ãã¯ã©ã€ã¢ã³ããšãµãŒãã®éã«å ¥ã£ãŠTLSéä¿¡ãäžåºŠåŸ©å·ããæ€æ»ããŠããåæå·åããŠè»¢éãããã ããããããäžéè ãã®åœ¢ã§DPIãå®çŸãããã瀟å¡ã®PCã«äŒæ¥ã®èšŒææžãã€ã³ã¹ããŒã«ããŠæç«ãããæ§æãå€ããã ã
å ·äœçã«ã©ããªè£œåãããã®ïŒ
Palo Alto Networksã®NGFWïŒæ¬¡äžä»£ãã¡ã€ã¢ãŠã©ãŒã«ïŒãFortinetã®FortiGateãCiscoã®Firepowerãä»£è¡šæ Œã ãããããã¯DPIãããŒã¹ã«ã¢ããªã±ãŒã·ã§ã³èå¥ã»ãã«ãŠã§ã¢æ€ç¥ã»URLãã£ã«ã¿ãªã³ã°ããŸãšããŠæäŸãããã ãã¯ã©ãŠãåã§ã¯ZscalerãCrowdStrikeã®ãããªãŒããã©ã¹ã察å¿è£œåãDPIã®èãæ¹ãåãå ¥ããŠãããã
ãŒããã©ã¹ããåºãŸããšDPIã®åœ¹å²ãå€ããã®ïŒ
å€ãã£ãŠããŠãããããŒããã©ã¹ãã§ã¯ããããã¯ãŒã¯å ã«å ¥ã£ãŠãä¿¡é Œããªãããšããèãæ¹ã ãããå¢çåã®DPIã ãã§ã¯äžååã«ãªã£ãŠããããšã³ããã€ã³ãã§ã®EDRã»ã¯ã©ãŠããããã·ã§ã®CASBã»ã¢ã€ãã³ãã£ãã£ç®¡çãçµã¿åãããŠãDPIã¯ãã®äžã®äžèŠçŽ ãšããŠäœ¿ããšããäœçœ®ã¥ãã«å€ãã£ãŠããŠãããã ã