Upgrade to Pro — share decks privately, control downloads, hide ads and more …

クックパッドのセキュリティログ 検索基盤の紹介 /security-log-search

クックパッドのセキュリティログ 検索基盤の紹介 /security-log-search

Masayoshi Mizutani

December 06, 2018
Tweet

More Decks by Masayoshi Mizutani

Other Decks in Technology

Transcript

  1. ηΩϡϦςΟϩάݕࡧʹ͓͚Δཁ݅ wԣஅతͳݕࡧ͕Ͱ͖Δ͜ͱ w ηΩϡϦςΟʹؔ࿈͢ΔͱࢥΘΕΔ஋ʢ*1ΞυϨεɺυϝΠϯ໊ɺϑΝ Πϧ໊ͳͲʣ͕ग़ݱ͢ΔϩάΛҰ౓ʹݕࡧ͍ͨ͠ w ͜ͷϢʔβ͸ԿΛ΍͍ͬͯͨͷ͔ʁ w ͜ͷ*1ΞυϨε͸ͲͷϦιʔεʹΞΫηε͍ͯͨ͠ͷ͔ʁ w

    ϩάͷ౤ೖ࣌ʹଟ༷ͳεΩʔϚΛड͚ೖΕΔඞཁ͕͋Δ wΠϯλϥΫςΟϒͳݕࡧ͕Ͱ͖Δ͜ͱ w Ξϥʔτͷௐࠪ͸୳ࡧܕ෼ੳ w Ԡ౴ੑ͕ߴ͍΄Ͳࢥߟͷதஅ͕গͳ͘ͳΔ w௕ظؒͷϩά΋ݕࡧͰ͖Δඞཁ͕͋Δ w Πϯγσϯτൃੜ࣌ͷ௥੻Ͱ࣌ؒΛ૎͍͔ͬͯͳ͚Ε͹ͳΒͳ͍  
  2. ٕज़తͳνϟϨϯδ w౤ೖͰ͖Δϩάྲྀྔͱอ࣋Ͱ͖Δϩάྔͷ໰୊ w ݕࡧγεςϜ΁࣌ؒ͋ͨΓʹ౤ೖͰ͖Δϩάྲྀྔ͸γϏΞ w อ࣋Ͱ͖Δϩάྔ΋ݶΒΕ͍ͯΔ w ͓ۚʹΑͬͯεέʔϧΞ΢τͰ͖Δ৔߹΋͋Δ͕ݶք͕͋Δ w౤ೖ͞ΕΔϩάͷεΩʔϚ؅ཧ w

    ͢΂ͯͷϩάͷεΩʔϚΛ؅ཧ͢Δͷ͸ߴίετ w ʢݱࡏฐࣾͰར༻͍ͯ͠ΔϩάͷϑΟʔϧυ਺͕໿ ऑʣ w εΩʔϚͷࣗಈݕग़͸Մೳ͕ͩɺݕࡧ͢Δਓ͕ؒͦΕΛ೺Ѳ͢Δͷ͸ࠔ೉ w PQUJPOBM ηΩϡϦςΟҎ֎ͷ༻్Ͱͷར༻ w ࣾ಺*5΍։ൃʹ΋༗༻ͳϩά͕͋Δ w ҰํͰશελοϑ͕ݟΔͷʹద੾Ͱͳ͍ϩά͕͋ΔͷͰ؅ཧ͕ඞཁ  
  3. (SBZMPHͷಛ௃ wεΩʔϚΛؾʹͤͣϩάΛ౤ೖͰ͖Δ w ϑΟʔϧυͳͲࢦఆ͢Δ͜ͱͳ͘౤ೖͯ͠΋ద੾ʹJOEFYԽ w ϑΟʔϧυ಺ͷจࣈ΋ద੾ʹ۠੾ͬͯॲཧͯ͘͠ΕΔ w ηΩϡϦςΟ෼ੳͰඞཁʹͳΔ*1ΞυϨεɺυϝΠϯ໊ͳͷཁૉ͸ద੾ʹॲཧՄೳ w Ϛοϓܕ΍ϦετܕͷσʔλΛจࣈྻԽͯ͠ແཧ΍Γ౤ೖͯ͠΋ݕࡧՄೳ

    wϢʔβͷݖݶΛࡉ͔͘ࢦఆͰ͖Δ w ϩάΛ4USFBNʹ෼ׂ͠ɺݸผʹӾཡݖݶΛઃఆՄೳ w -%"1࿈ܞͰ͖ΔͷͰάϧʔϓ୯ҐͰ੍ޚͰ͖Δ w4USFBNຖʹϩάͷอ࣋ظؒΛௐ੔Մೳ w ϩάྔ΍ϩάͷॏཁ౓ʹԠͯ͡อ࣋ظؒબ୒Ͱ͖Δ  
  4. 4Ͱͷอ؅ʴ"UIFOB w4Λ௕ظอ؅৔ॴͱͯ͠ར༻ w ͢΂ͯͷϩάΛ(SBZMPHʹ౤ೖ͢Δͱڧਟͳߏ੒͕ඞཁ w ܭࢉೳྗɾσΟεΫ༰ྔ͸͓ۚͰεέʔϧ͢Δ͕ഁ࢈͢Δ w ௚ۙͰݕࡧ͠ͳ͍ͱࢥΘΕΔ΋ͷʹ͍ͭͯ͸4ʹͷΈ֨ೲ wݕࡧʹ͸"UIFOBΛར༻ w

    ൺֱతݕࡧස౓͕ߴ͍΋ͷʹ͍ͭͯ͸1BSRVFUܗࣜʹม׵ςʔϒ ϧΛࣄલʹ࡞੒ͯ͋͠Δ w ͦͷଞ͸ݕࡧͷඞཁʹԠͯ͡ςʔϒϧΛ࡞੒ͯ͠ݕࡧ w جຊతʹ44FMFDUͰ΋Α͍͕3FHFY4FSEF͕࢖͑ͳ͍ͷͰݱঢ় "UIFOBΛར༻  
  5. ࢀߟ औΓࠐΜͰ͍Δϩά   -PH )PXUPJNQPSU 4 (SBZMPH &$TZTMPH TZTMPH

    qVFOUE TQMVHJO ✅ ✅ $MPVE5SBJM %JSFDUMZUP4 ✅ ✅ (VBSE%VUZ $MPVE8BUDI&WFOU -BNCEB ✅ ✅ 71$'MPX-PHT $MPVE8BUDI-PHT -BNCEB QPMMJOH ✅ (TVJUF"VEJU-PHT "1* -BNCEB QPMMJOH ✅ ✅ "[VSF"%MPHT "1* -BNCEB QPMMJOH ✅ ✅ /('8 1BMP"MUP TZTMPH qVFOUE 4QMVHJO ✅ ✅ &%3 $SPXE4USJLF'BMDPO 424 -BNCEB DPQZ4UP4 ✅ ✅ %)$1MPHT LFB qVFOUE UBJM4QMVHJO ✅ ✅ %/4MPHT QBDLFUCFBU qVFOUE CFBU4QMVHJO  ✅ ✅ 4FSWJDFBQQMJDBUJPOMPHT qVFOUE 4QMVHJO ✅ .JEEMFXBSFMPHT FHSQSPYZ qVFOUE 4QMVHJO ✅