4 5 Secure Enclave Touch ID 10 Safari 18 App App App App HomeKit HealthKit Apple Watch 27 TLS VPN Wi-Fi Bluetooth AirDrop 31 Apple Pay Apple Pay Apple



Similar documents
iOS のセキュリティ: iOS 10

iPhone Configuration Utility

BIG‑IP Access Policy Manager | F5 Datasheet

Cisco Meraki ios Android Web 1 1 BYOD Apple iphone CISCO MERAKI Mac Windows Windows Active Directory GPO Cisco Meraki IT Windows Mac Windows MSI Mac P

AirMac ネットワーク for Windows

FirePass Edge Client TM Edge Client LAN Edge Client 7.0 Edge Client Edge Client Edge Client Edge Client Edge Client Edge Client LAN Edge Client VPN Wi

FileMaker Server Getting Started Guide

AirMac ネットワーク構成の手引き

WP_8021X Authentication_21MAY2012

FileMaker Server Getting Started Guide

FileMaker Server Getting Started Guide

Cisco® ASA シリーズルーター向けDigiCert® 統合ガイド

FileMaker Server 9 Getting Started Guide

...5 VMware Workspace ONE Workspace ONE...14 Workspace ONE AirWatch VMware Identity Mana

Google Apps Google Apps for Work Education Government Drive for Work Google Apps Unlimited

3 4 iphone BIG-IP 5 F5 BIG-IP Edge

Pro 16 ipad iphone Windows Mac Web App : 12,600 T1 1 1 * Starter Solution Excel PDF Web Web CSV, Excel, XML, ODBC ODBC / JDBC ** SQL REST API (JSON, c

8 PC CoIT (Consumerization of IT) BCP () PC BYOD (Bring Your Own Device) BYOD IT IT IT IT PC/ 2

Part 1 IT CPU IT IT 1998 Windows NT Server 4.0, Terminal Server Edition 1 Windows Based Terminal WBT Windows CE 1 100Mbps 1Gbps LAN OS 1 PC 1 OS 2


wp_integrating_active_directory_ml

内閣官房情報セキュリティセンター(NISC)

Adobe AIR のセキュリティ

FileMaker Server 16 インストールおよび構成ガイド

"CAS を利用した Single Sign On 環境の構築"

Junos Pulse Mobile Security Dashboard Juniper Networks, Inc North Mathilda Avenue Sunnyvale, California Copyr

iPhone/iPad/Android(TM) とベリサイン アイデンティティプロテクション(VIP)エンタープライズゲートウェイとの組み合わせによるL2TP+IPsecのワンタイムパスワード設定例

L516394B-J_APD_Catalog_2012

wp_integrating_AD_10.9_16JAN2014

_iOS 8 ビジネス向け機能強化ポイント解説_GM_1.1.1.key

Mac OS X Server QuickTime Streaming Server 5.0 の管理(バージョン 10.3 以降用)

FileMaker Pro 15 および FileMaker Pro 15 Advanced インストールおよび新機能ガイド

LAN LAN26 LAN LAN A B C A iphone LAN LAN iphone iphone SongPal 4 B WPS AOSS LAN WPS Wi-Fi Protected SetupLAN LAN 8 LAN C LAN LAN LAN WPS AOSS 10 2

Wireless Plus.book

Dec , IS p. 1/60

ipad iphone Windows Mac Web App : 12, * Starter Solution Excel PDF Web Web CSV, Excel, XML, ODBC ODBC / JDBC ** SQL Advanced : 20, * (HT

Windows PC/ BCP () PC (BYOD: Bring Your Own Device) Windows 8 2 Windows 8 Windows 8 Windows Windows 8 Windows 8 Windows 8 PC/ 2

Cisco Aironet 1130AG アクセス ポイント クイック スタート ガイド

Oracle Identity Managementの概要およびアーキテクチャ

Press Release Marantz 1953 B model 7 model CD CD B D&M Tel Tel

Configuration Manager (SCCM) + IT IT PC IT PC PC Windows XP OS 移行は簡単! P.7 SCCM / SCCM PC OS Configuration Manager PC PC 2

DS_BIG-IP LTM VE_jp.indd

Livescribe+ ユーザー ガイド

iMac - 究極のオールインワンデスクトップコンピュータ iMacを購入する - Apple Store(日本)

HP Elite x3活用事例紹介

Windows Oracle -Web - Copyright Oracle Corporation Japan, All rights reserved.

FA48P1402C

Testing XML Performance

FileMaker Server 8 Administrator’s Guide

Oracle Secure Enterprise Search 10gを使用したセキュアな検索

VMware Horizon

SRX300 Line of Services Gateways for the Branch

HP ELITE x3 初めてガイド

wp_osx_configuration_profiles_ml

One Core, One Windows Windows Xbox 360 Xbox One Windows 8 Windows 8.1 OS Windows Phone 8.1 Windows Phone 8 OS OS Devices + IoT Adaptive User Interface

Wireless Image Utility Version 2.3 対応 NEC ios Wireless Image Utility NEC's Image 1. Wireless Image Utility Wireless I

FileMaker Server 15 入門ガイド

"CAS を利用した Single Sign On 環境の構築"

Cisco WebEx ホワイトペーパー: リアルタイムコラボレーションのパワーを解き放つ: Cisco WebEx ソリューションのセキュリティ概要

ハイブリッド デバイス管理 ~Microsoft Intune~

ios ios 4 ios ios SDK Apple iphone ipad UI Mt. Sinai Hospital Giancarlo De Lio ios FAQ ios D

目次 4 ページ概要 5 ページシステムのセキュリティセキュアブートチェーンシステムソフトウェア認証 Secure Enclave Touch ID Face ID 12 ページ暗号化とデータ保護ハードウェアのセキュリティ機能ファイルデータ保護パスコードデータ保護クラスキーチェーンデータ保護 Saf

msg_admin.book

Microsoft Enterprise Mobility License

( ) 15 cm USB PC

,,, J-SOX ISMS PCIDSS,, IM/VoIP/VoD Copyright 2008 Juniper Networks, Inc. 2

LAN LAN26 LAN LAN A B C A iphone LAN LAN iphone iphone SongPal 4 B WPS AOSS LAN WPS Wi-Fi Protected SetupLAN LAN 8 LAN C LAN LAN LAN WPS AOSS 10 2

FileMaker Server 9 Getting Started Guide

Mac OS X Server Windows NTからの移行

2014_Apr_FSLP_A4

NEC NP-P502HJD/NP-P502WJD APPS 1. APPS IMAGE EXPRESS UTILITY Miracast WEB WEB IMAGE EXPRESS UTILITY LITE 2

AC3DGmst.ps

11 Mac OS X (IP ) (Web )

組織変更ライブラリ

Martian User Manual-J Ver 2.2.1

c79plac41.ps

TM-P20 ソフトウェアユーザーズマニュアル

LAN LAN LAN LAN LAN LAN,, i

Installation and New Features Guide for FileMaker Pro and FileMaker Pro Advanced

NEC NP-L51WJD LAN AWIND Inc. LAN LAN NP03LM NP02LM LAN OS Windows Mac OS Android ios OS ViewLight NEC Apple iphone ipad ipod touch AppStore itu

Juniper NetworksJunosSteel-Belted RadiusNetScreenScreenOS Juniper Networks, Inc. Juniper Networks Junos JunosE Juniper Networks, Inc. Juniper Networks

Jp

1 Microsoft Windows Server 2012 Windows Server Windows Azure Hyper-V Windows Server 2012 Datacenter/Standard Hyper-V Windows Server Windo


unitech PA600 Rugged En PDA - RFID HF - unitech G Ver.1.2

LAPLINK ヘルプデスク 導入ガイド

Si-R180 ご利用にあたって

OS X Server 実践ワークグループ&インターネットサーバ構築-Mountain Lion対応版-

CIS とは何者か Center for Internet Security, Inc. (CIS) は 公共および民間セクター機関のサ イバーセキュリティ態勢や対応の強化に取り組む非営利団体です CIS ベンチマークの成り立ち CIS ベンチマークは当該分野の専門家で構成されたコンセンサスレビュー

VNSTProductDes3.0-1_jp.pdf

Installation and New Features Guide for FileMaker Pro and FileMaker Pro Advanced

PowerPoint プレゼンテーション

WebRTC P2P,. Web,. WebRTC. WebRTC, P2P, i

このアップデートでは iphone ipad ipod touch の メモ News ヘルスケア Apple Music の機能が改善され Night Shift という新しい機能が追加されます Night Shift では夜間にディスプレイの色が暖色系の色域に切り替わるため 心地よい眠りに役立つ

WS_EOS_user_Web

2

- - Mac Pro /09/26 15:29 FireWire 800 x /100/1000BASE-T Ethernet RJ-45 x 2 USB 2.0 x USB 2.0 x 2 TOSLINK Mini DisplayPort BFR PVC EN

( ) 15 cm USB PC

1. PKI (EDB/PKI) (Single Sign On; SSO) (PKI) ( ) Private PKI, Free Software ITRC 20th Meeting (Oct. 5, 2006) T. The University of Tokush

rzat10pdf.ps

Transcription:

ios ios 9.3 2016 5

4 5 Secure Enclave Touch ID 10 Safari 18 App App App App HomeKit HealthKit Apple Watch 27 TLS VPN Wi-Fi Bluetooth AirDrop 31 Apple Pay Apple Pay Apple Pay Secure Element Apple Pay NFC Apple Pay Apple Pay App 2

38 Apple ID imessage FaceTime icloud icloud Siri Continuity Spotlight 51 ios MDM ipad Apple School Manager Apple Configurator 2 58 59 60 62 3

ソフトウェア データ 保 護 クラス App のサンドボックス ユーザパーティション ( 暗 号 化 ) OS パーティション ファイルシステム Apple ios ios ios ios ios ios ios IT Touch ID ハードウェアおよび ファームウェア Secure Enclave カーネル 暗 号 化 エンジン Secure Element ios ios iphone ipad ipod touch デバイス 鍵 グループ 鍵 Apple ルート 証 明 書 ios App App Apple Pay Apple Apple ios ios 4

DFU DFU Apple DFU USB 8 DFU Apple ios Secure Enclave ios ios ios App Apple ios Boot ROM Boot ROM Apple CA LLB Low- Level Bootloader LLB Apple Apple LLB LLB iboot iboot ios Apple ios A7 A Secure Enclave Apple Secure Enclave 1 itunes Boot ROM LLB DFU USB itunes support.apple.com/kb/ht1808?viewlocale=ja_jp 5

Apple ios itunes Apple ios ios A7 A Secure Enclave Secure Enclave ios itunes OTA Over The Air itunesios OTA ios OS X Server ios Apple ios itunes OTA Apple LLB iboot OS cryptographic measurements ID ECID ECID ECID Apple Apple ECID ios 6

Secure Enclave Secure Enclave Apple A7 A Secure Enclave Secure Enclave Secure Enclave Apple L4 Secure Enclave Secure Enclave UID ID UID Apple UID Secure Enclave Secure Enclave UID Secure Enclave Touch ID Touch ID Secure Enclave Secure Enclave Touch ID Secure Enclave AES Touch ID Secure Enclave AES-CCM Touch ID Touch ID Touch ID Touch ID Touch ID Touch ID Touch ID 48 6 Touch ID 8 5 Touch ID Touch ID 7

Touch ID Touch ID Touch ID 5 1 50,000 1 Touch ID 5 Touch ID Touch ID itunes Store App Store ibooks Store Apple ID Store Secure Enclave itunes Store Secure Enclave Touch ID Apple Apple Pay Apple Pay App API Touch ID App Touch ID Touch ID Secure Enclave App API Touch ID ios 9 Touch ID API App Touch ID 2 Touch ID Touch ID Secure Enclave Secure Enclave Secure Enclave Apple icloud itunes 8

Touch ID ios Touch ID Secure Enclave Complete Touch ID Secure Enclave Touch ID Touch ID Touch ID Touch ID 48 Touch ID 5 Secure Enclave 9

Effaceable Storage App ios IT ios DMA AES 256 ID UID ID GID Secure Enclave UID GID AES 256 AES UID GID Secure Enclave UID GID Secure Enclave AES UID Apple Apple GID Apple A8 AES UID GID JTAG UID UID UID UID GID CTR_DRBG RNG Secure Enclave CTR_DRBG ios Effaceable Storage NAND 10

Apple ios App ios 7 App ios 256 Per File AES AES AES CBC A8 AES-XTS IV Per File SHA-1 Per File RFC 3394 NIST AES Per File Per File Per File AES AES Secure Enclave Secure Enclave AES Secure Enclave ios Effaceable Storage MDMExchange ActiveSync icloud ハードウェア 鍵 ファイル システム 鍵 パスコード 鍵 クラス 鍵 ファイルの メタデータ ファイル 鍵 ファイルの 内 容 11

Per File Per File UID Per File ios 6 4 UID 1 80 6 5 Touch ID Touch ID 1 ios 1 4 5 1 6 5 7 8 15 9 1 Touch ID 10 MDM Exchange ActiveSync A7 A Secure Enclave ios App Complete Protection NSFileProtectionComplete UID 10 Touch ID 12

Protected Unless Open NSFileProtectionCompleteUnlessOpen Curve25519 ECDH Per File NIST SP 800-56A Diffie-Hellman Per File NIST SP 800-56A 5.8.1 Concatenation Key Derivation Function Approved Alternative 1 AlgorithmID PartyUInfo PartyVInfo SHA-256 Per File Protected Unless Open Per File Per File Protected Until First User Authentication NSFileProtectionCompleteUntilFirstUserAuthentication Complete Protection App No Protection NSFileProtectionNone UID Effaceable Storage ios App ios SQLite 1 securityd App API App keychain-access-groups applicationidentifier application-group 1 App App Apple Developer Program App Apple Developer Program 13

SHA-1 ACL Per Item plist Per Item SecItemAdd AES 128 GCM Galois/Counter Mode GMAC API NSFileProtectionComplete ksecattraccessiblewhenunlocked NSFileProtectionCompleteUnlessOpen NSFileProtectionCompleteUntilFirstUserAuthentication ksecattraccessibleafterfirstunlock NSFileProtectionNone ksecattraccessiblealways ksecattraccessible- WhenPasscodeSetThisDeviceOnly App ksecattraccessibleafterfirstunlock ksecattraccessiblewhenpasscodesetthisdeviceonly ksecattraccessiblewhenunlocked icloud UID Apple ios VPN ios Wi-Fi Exchange VPN LDAP CalDAV CardDAV Handoff icloud iphone itunes Safari Safari VPN Bluetooth Apple Push Notification service icloud 14

imessage SIM PIN ACL Touch ID Touch ID ACL Secure Enclave Safari ios App Safari 2 API SecRequestSharedWebCredential SecAddSharedWebCredential App Web App App Safari Web Web App App com.apple.developer. associated-domains App ios Web TLS /apple-app-site-association App App Web App 2 API App ios icloud 5 NSFileProtectionComplete No Protection plist Effaceable Storage AppleKeyStore AppleKeyStore ios ios 15

Per File ios itunes UID itunes PBKDF2 10,000 itunes UID itunes MDM itunes MDM itunes MDM itunes Protected Until First User Authentication itunes OTA Secure Enclave UUID Secure Enclave UID Secure Enclave 16

20 Secure Enclave Effaceable Storage 20 Secure Enclave 8 icloud Protected Unless Open Curve25519 icloud No Protection icloud icloud itunes UID icloud ios support.apple.com/ ja-jp/ht202739 FIPS 140-2 ios ios 6 FIPS 140-2 1 ios 9 ios 8 Apple ios Apple App ios Apple App App ISO 15408 Apple ios CCC 2 Mobile Device Fundamental Protection Profile v2.0 MDFPP2 VID10695 ios 9 VPN IPSecPP1.4 Client Protection Profile VPNIPSecPP1.4 VID10714 MDM MDM Agent EP 2.0 Protection Profile MDMAgentEP2 Apple International Technical Community ITC PP Apple PP Commercial Solutions for Classified CSfC Apple Commercial Solutions for Classified CSfC ios ios IPSec VPN IKEv2 IKEv2 VPN Apple CSfC Apple ios 17

App App 1 App ios App App App ios ios App App ios App App ios Apple Safari App Apple App Apple OS App App App ios Apple Apple Developer Program Apple App App App Store App Store App App App Apple App ios App App App App Apple Team ID 10 1A2B3C4D5F App D-U-N-S Apple Developer Enterprise Program ADEP Apple ADEP App App App ios 18

MDM App App App App App Apple ios App Web App App App ios App App App App App App ios App ios App mobile OS App API App ios App icloud App UNIX ID App App API App ASLR App ASLR return-to-libc ios Xcode ASLR 19

ios ARM Execute Never XN App Apple 1 mmap Safari JavaScript JIT ios App App App App App API App App App App App App App App App App API Open Access Managed Open In MDM App App App App 20

App App App Apple Developer Portal App App App App 1 Apple Developer Portal App App ID App ios Software Development Kit SDK App API NSFileManager CoreData NSData SQLite API API App Safari App Protected Until First User Authentication App App Protected Until First User Authentication Made for iphone/ipod touch/ipad MFi ipod Accessories Protocol iap MFi Lightning Bluetooth ios Apple Apple Apple Lightning Bluetooth IC UART AirPlay Apple IC AirPlay CarPlay MFi-SAP Secure Association Protocol AES-128 CTR Station-to-Station STS ECDH Curve25519 IC 1024 RSA 21

HomeKit HomeKit icloud ios Apple HomeKit HomeKit Ed25519 Ed25519 HomeKit ios HomeKit ios ios icloud HomeKit HomeKit ios Ed25519 ios HomeKit Secure Remote Password 3072 8 ios HKDF-SHA-512 ChaCha20-Poly1305 AEAD MFi ios HomeKit Station-to-Station Curve25519 HKDF-SHA-512 IP Bluetooth Low Energy HomeKit ios HomeKit HomeKit Protected Until First User Authentication HomeKit itunes HomeKit HomeKit icloud icloud 1 ios HomeKit HomeKit BLOB BLOB icloud HomeKit ios icloud HomeKit ios HomeKit Ed25519 Station-to-Station 22

HomeKit Apple TV HomeKit Apple TV icloud Apple TV HomeKit icloud App App App ios App HomeKit Siri Siri Siri Siri HomeKit icloud HomeKit Bluetooth Wi-Fi icloud ios icloud Apple HomeKit icloud icloud ios Apple icloud icloud icloud icloud ios Built for HomeKit Apple prime256v1 X.509 ios icloud HomeKit icloud ios icloud URL icloud icloud icloud icloud 23

HomeKit icloud icloud icloud HTTP/2 TLS 1.2 AES-128-GCM SHA-256 icloud ios HealthKit HealthKit App HealthKit Bluetooth LE ios HealthKit Complete Protection Touch ID App HealthKit App Protected Until First User Authentication Protected Unless Open icloud itunes itunes App IETF RFC 5652 CMS App HealthKit API App App App 24

App App ios App App App App App App App App ID App ID ID No Protection ID App ios OS X icloud Web 16 PBKDF2 SHA256 AES-GCM Core Data CloudKit Web Touch ID 3 Touch ID 3 icloud 25

Apple Watch Apple Watch ios iphone UID Apple Watch iphone OOB BTLE Apple Watch iphone BTLE 4.1 BTLE BTLE Apple Watch iphone imessage IDS Bluetooth Apple Watch iphone IDS BTLE Wi-Fi 15 App FaceTime iphone IDS Apple Watch Apple Watch iphone Apple Watch Bluetooth Wi-Fi Apple Watch Wi-Fi iphone Apple Watch Apple Watch Apple Watch Apple Pay Apple Pay iphone Apple Watch App Apple Watch iphone Apple Watch iphone Apple Watch Apple Watch iphone iphone Apple Watch App Apple Watch iphone 1 iphone Apple Watch iphone iphone Apple Watch Apple Watch Apple Watch Apple Watch Apple ID 26

ios ios ios ios Wi-Fi ios TelnetWeb ios TLS ios Transport Layer Security TLS v1.0 TLS v1.1 TLS v1.2 DTLS Safari App API CFNetwork App TLS API SecureTransport CFNetwork SSLv3 Safari WebKit App SSLv3 App Transport Security App Transport Security NSURLConnection CFURL NSURLSession API App TLS 1.2 Forward Secrecy 2048 RSA 256 SHA-256 App App Transport Security App Transport Security ios 9 App 27

VPN ios ios VPN IKEv2/IPSecRSA ECDSA EAP-MSCHAPv2 EAP-TLS Pulse Secure Cisco Aruba Networks SonicWALL Check Point Palo Alto Networks Open VPN AirWatch MobileIron NetMotion Wireless F5 Networks SSL-VPN App Store App Cisco IPSec RSA SecurID CRYPTOCard L2TP/IPSec MS-CHAPV2 RSA SecurID CRYPTOCard PPTP MS-CHAPV2 RSA SecurID CRYPTOCard ios VPN IT VPN ios Per App VPN VPN MDM App Safari ios VPN MDM Apple Configurator Device Enrollment Program Wi-Fi VPN VPN IP IKEv2 Wi-Fi ios WPA2 Wi-Fi WPA2 128 AES Wi-Fi ios 802.1X RADIUS iphone ipad 802.1X EAP-TLS EAP-TTLS EAP-FAST EAP-SIM PEAPv0 PEAPv1 LEAP Wi-Fi ios Preferred Network Offload PNO Media Access Control MAC PNO itunes Wi-Fi Wi-Fi ios Preferred Network Offload epno MAC epno App 28

Wi-Fi MAC Wi-Fi MAC Apple Wi-Fi MAC Apple MAC Wi-Fi MAC iphone 4s Bluetooth ios Bluetooth ios Encryption Mode 3 Security Mode 4 Service Level 1 ios Bluetooth Hands-Free Profile HFP 1.5 Phone Book Access Profile PBAP Advanced Audio Distribution Profile A2DP Audio/Video Remote Control Profile AVRCP Personal Area Network Profile PAN Human Interface Device Profile HID support.apple.com/kb/ht3647?viewlocale=ja_jp ios SSO SSO Kerberos SSO Safari App ios SSO SPNEGO HTTP Negotiate Kerberos Kerberos Windows SSO Heimdal AES128-CTS-HMAC-SHA1-96 AES256-CTS-HMAC-SHA1-96 DES3-CBC-SHA1 ARCFOUR-HMAC-MD5 Safari SSO ios API App SSO SSO ios MDM Active Directory Kerberos SSO App Safari Web URL 29

AirDrop AirDrop ios Bluetooth Low Energy BLE Apple Wi-Fi OS X Yosemite AirDrop Mac Wi-Fi Wi-Fi AirDrop 2048 RSA Apple ID AirDrop AirDrop Bluetooth Low Energy AirDrop AirDrop AirDrop AirDrop Wi-Fi Bonjour AirDrop AirDrop AirDrop TLS icloud AirDrop App AirDrop 30

Apple Pay ios Apple Pay Apple Pay Apple Pay Apple Pay Secure Element Secure Element Java Card NFC NFC Secure Element Secure Element POS Wallet Wallet Apple Pay Wallet Apple Pay Secure Enclave iphone ipad Secure Enclave Secure Enclave Touch ID Apple Watch Secure Element Apple Pay Server Apple Pay Server Wallet Secure Element Apple Pay Server Apple Pay Server App Apple Pay Secure Element Secure Element Apple Pay Secure Element Secure Element NFC Secure Element 31

Apple Pay NFC NFC Secure Element POS NFC Touch ID Apple Watch Secure Element NFC NFC App Apple Pay Server Secure Element Apple Pay Apple Apple Pay Apple Pay 3 Apple Pay SSL Apple Secure Element Apple Web Secure Element ios watchos Apple Pay Server icloud Apple Watch iphone Apple Watch App Apple Watch Apple Watch Bluetooth Apple Watch Apple Watch Secure Element Apple Pay 3 Apple Pay itunes Store Apple Pay App Apple Pay CVV Wallet App Apple Watch App isight Check Card CVV Apple Pay Server 32

Check Card ID Apple Apple ID CVV Link and Provision Link and Provision Apple itunes App Store itunes Apple Pay ios Apple Pay Link and Provision 2 Wallet Secure Element App URL Secure Element Apple Pay itunes Store Apple Pay itunes Apple ID itunes Check Card Apple Pay ID Link and Provision itunes App App Apple Pay App ios CVV App Wallet Apple Watch App App 33

Secure Element Secure Enclave Touch ID Touch ID Touch ID 3 5 Touch ID Apple Pay Secure Enclave Secure Element Secure Element NFC Secure Enclave Secure Element AES Secure Enclave UID Secure Element Secure Enclave Secure Enclave HSM HSM Secure Element App Authorization Random AR Secure Enclave Secure Element AR Secure Enclave Apple Pay Secure Enclave AR Secure Element Secure Element AR Secure Element AR Secure Element AR ios Secure Enclave icloud Apple Watch Apple Watch Apple Watch iphone Secure Element AR Secure Enclave App 34

1 NFC App Apple Pay iphone NFC Wallet App Touch ID Apple Watch Apple Apple Apple Pay Apple Apple Pay App Apple Pay ios App Apple Pay App Apple Apple Pay App Apple Pay Apple Pay Server Apple Pay Server App App API Apple Pay App App Apple Pay ios Apple Pay App 35

App App Touch ID Apple Pay Apple Pay Server NFC Apple Secure Element Secure Element Apple Pay Server Secure Element ID API App App Apple API ID App Secure Element App App PKPaymentRequest applicationdata applicationdata ios 9 NFC VAS Apple Pay VAS Apple NFC VAS Apple Pay NFC 1 ECDH P-256 36

iphone iphone ipad Apple Pay iphone icloud Wallet Apple Pay Apple Watch icloud iphone Apple Watch App Apple Watch Wi-Fi Apple Pay Apple Pay iphone ios Secure Element Secure Element Apple Pay Server Secure Enclave AR Secure Element Apple Pay Server 37

Apple ID Apple ID icloud FaceTime imessage 8 3 Apple imessage FaceTime Siri Spotlight icloud icloud icloud ios ios Apple ID Apple ID icloud imessage FaceTime itunes Store ibooks Store App Store Apple Apple ID Apple 8 3 Apple 3 Apple Apple ID Apple ID Apple 2 Apple 2 2 Apple ID 1 2 iphone ipad Mac Apple ID 6 2 2 Apple ID Apple 38

2 Apple ID Apple ios OS X tvos watchos Apple Web 2 2 support.apple.com/ja-jp/ht204915 2 2013 Apple 2 2 Apple ID icloud imessage FaceTime Game Center itunes Store ibooks Store Apple Store 14 2 support.apple.com/ja-jp/ht204152 Apple ID ios 9.3 Apple ID Apple ID FaceTime Apple ID Touch ID Apple Pay icloud HomeKit iphone Apple Apple ID Apple School Manager Apple ID Apple ID IT Apple ID Apple School Manager Apple ID 7 icloud CloudKit Apple School Manager Apple ID Apple ID Apple ID ios icloud Apple ID Apple ID 2 2 Apple ID icloud FaceTime icloud 39

imessage Apple imessage ios Mac imessage imessage Apple Push Notification service APNs Apple Apple imessage 2 RSA 1280 NIST P-256 ECDSA 256 Apple IDS IDS APNs imessage APNs Confirmation Link SIM imessage imessage IDS APNs IDS APNs RSA IDS 128 AES CTR AES RSA-OAEP SHA-1 ECDSA APNs APNs APNs TLS APNs ios 4 KB 16 KB 256 AES CTR icloud AES URI Uniform Resource Identifier SHA-1 imessage imessage 40

ランダムな 鍵 で 暗 号 化 された 添 付 ファイル icloud APNs 署 名 および 暗 号 化 されたユーザ 2 へのメッセージ( 添 付 ファイルの URI および 鍵 を 含 む) ユーザ 1 ユーザ 2 ユーザ 2 の 公 開 鍵 と APNs トークン ユーザ 1 の 公 開 鍵 と APNs トークン IDS APNs icloud APNs APNs imessage 30 FaceTime FaceTime Apple FaceTime imessage Apple Push Notification service APNs FaceTime Apple FaceTime Internet Connectivity Establishment ICE Session Initiation Protocol SIP Salt AES-256 Secure Real Time Protocol SRTP icloud icloud icloud App App Apple ID icloud icloud Drive icloud IT 41

icloud AES-128 SHA-256 Apple icloud Amazon S3 Windows Azure icloud Drive icloud Drive icloud icloud icloud Drive icloud Drive icloud Drive icloud icloud icloud icloud Drive icloud Drive CloudKit App CloudKit icloud CloudKit App CloudKit App CloudKit icloud Drive icloud CloudKit Per File CloudKit CloudKit CloudKit icloud icloud CloudKit サービスの 鍵 CloudKit ゾーンの 鍵 CloudKit レコードの 鍵 ファイルの メタデータ ファイル チャンクリスト ファイル チャンク 収 束 暗 号 化 icloud icloud App App Wi-Fi icloud icloud Wi-Fi ios icloud App 42

App ibooks PDF App imessage SMS MMS HomeKit HealthKit Visual Voicemail Per File icloud icloud No Protection icloud Curve25519 Per File icloud icloud icloud icloud icloud icloud icloud UID Apple icloud icloud icloud Per File 43

Safari icloud Safari Web Apple Apple icloud icloud Apple ios Mac icloud icloud 2 Apple icloud icloud icloud icloud 2 icloud P256 icloud Salt icloud icloud icloud icloud icloud icloud icloud icloud icloud icloud icloud 2 icloud Apple icloud 44

1 VPN ID ksecattrsynchronizable Apple Safari Wi-Fi HomeKit App ksecattrsynchronizable Apple Apple 1 Safari Web Apple icloud icloud 4 ios icloud icloud HSM icloud 4 icloud SMS icloud icloud HSM 45

icloud SMS icloud HSM Secure Remote Password SRP icloud Apple icloud icloud 10 Apple 10 HSM HSM HSM Siri Siri Siri Siri Siri Siri Siri Siri Siri Siri HTTPS Siri Siri 10 Siri Apple Watch Apple Watch iphone Siri 46

Apple Siri Siri Siri 6 6 Apple Siri 2 Siri Siri Siri Siri Apple Siri Continuity icloud Bluetooth Wi-Fi Continuity Continuity Handoff Handoff Mac ios Handoff Handoff icloud 2 Apple Push Notification service APNs Bluetooth Low Energy 4.0 imessage 256 AES Bluetooth Low Energy GCM AES-256 icloud Bluetooth Low Energy Bluetooth Low Energy 4.0 imessage Bluetooth Low Energy Apple Push Notification service APNs imessage 47

App Web Handoff Handoff ios App App Web App Web Web App App Web Web Web Safari App Handoff App Web Handoff Handoff API Web Web Handoff Handoff App App Handoff App Web URL App Handoff App App URL Handoff App Handoff API Handoff App URL URL App Handoff App Handoff Apple Wi-Fi AirDrop API App Handoff API App 2 Handoff Bluetooth Low Energy Wi-Fi TLS icloud iphone Mac ipad ipod iphone Wi-Fi iphone icloud FaceTime Apple ID Apple Push Notification service APNs imessage UI 2 iphone 48

Bluetooth Low Energy 4.0 icloud Handoff Apple Push Notification service APNs iphone FaceTimeiPhone iphone iphone SMS ipad ipod touch Mac Apple ID imessage SMS iphone 6 iphone imessage SMS iphone iphone SMS Instant Hotspot Instant Hotspot ios Bluetooth Low Energy icloud OS X Yosemite Mac Instant Hotspot ios ios Wi-Fi icloud Bluetooth Low Energy icloud DSID Destination Signaling Identifier icloud Bluetooth Low Energy imessage Bluetooth Low Energy Spotlight Safari Spotlight App itunes App Store Apple Apple i ii Mac iphone ipad ipod iii App Spotlight Safari iv v 3 App v ID HTTPS 49

Spotlight Apple Spotlight Apple IP Apple ID 15 Apple Apple Apple ID 15 3 App Apple App 3 App Apple Apple i ii Spotlight iii Apple Spotlight 18 2 IP Spotlight IP HTTPS Apple Spotlight Spotlight Safari Spotlight Spotlight Apple Safari Apple Spotlight CoreSpotlight API Apple App Spotlight NSUserActivity API App Apple App Spotlight Spotlight 2 Spotlight Apple App API Spotlight App 50

ios BYOD MDM ios PIN Touch ID 6 4 MDM Exchange ActiveSync Touch ID developer.apple.com/library/ios/featuredarticles/ iphoneconfigurationprofileref Configuration Profile Key Reference 51

ios ios ios ios 9 2048 RSA 256 SSL itunes Xcode Wi-Fi USB ios 9 6 support.apple.com/kb/ht6331?viewlocale=ja_jp com.apple.pcapd USB com.apple.file_relay Apple support.apple.com/ht5868?viewlocale=ja_jp ios XML ios Wi-Fi VPN Exchange LDAP CalDAV Web 52

CMS RFC 3852 3DES AES-128 ios MDM App Apple Configurator Safari MDM MDM ios MDM iphone ipad MDM Apple Push Notification service APNs ios APNs MDM APNs IT MDM ios www.apple.com/iphone/business/it/management.html ipad ipad ipad ipad 1 ipad ipad Apple ID ipad ipad UNIX Apple ID Apple ID SRP UNIX ID Apple icloud icloud icloud icloud icloud 53

Apple School Manager Apple School Manager MDM itunes U Apple School Manager Web IT Device Enrollment Program DEP Apple Apple ios Apple School Manager MDM Web MDM MDM MDM Apple HTTPS SSL MDM MDM App Apple Deployment Program Apple School Manager Apple Configurator 2 MDM OS X Apple Configurator Apple Configurator App Apple Configurator 2 Apple School Manager Device Enrollment Program MDM Apple School Manager Device Enrollment Program Apple Configurator MDM Apple Configurator ios 54

App App FaceTime App Store Siri itunes Store icloud AirPlay Spotlight Spotlight Spotlight Handoff AirDrop Safari Safari Web JavaScript Safari Cookie icloud icloud icloud Apple TLS Touch ID Apple Watch App AirDrop App icloud 55

imessage App HTTP AirPlay AirDrop App App itunes App VPN Apple Watch App Apple Music Radio App App Store App App News App Apple Watch ios Effaceable Storage MDM Exchange icloud MDM icloud Exchange Exchange Server App 56

ios 9.3 MDM iphone Apple ID Apple ID MDM MDM iphone MDM MDM iphone MDM iphone iphone Apple School Manager Apple ID Apple ID Apple ID 57

Apple ios App GPS Bluetooth Wi-Fi 1 App App App App App App Apple ios Siri Spotlight ios App App iphone 5s Twitter Facebook HomeKit HealthKit Bluetooth icloud App icloud Drive icloud App ios MDM App App Apple www.apple.com/legal/privacy/jp 58

Apple ios App ios ios Apple ios ios App Apple ios App Safari OCSP EV S/MIME S/MIME S/MIME imessage FaceTime App App Store ios App ios IT Apple Apple Apple Apple Forum of Incident Response and Security Teams FIRST Apple apple.com/jp/support/security 59

ASLR Apple Push Notification service APNs Boot ROM DFU ios ios 5 App App ios Apple Apple ios App API Boot ROM USB DFU itunes itunes ipad itunes ipad ECID Effaceable Storage ID GID HSM iboot Identity Service IDS IC Joint Test Action Group JTAG ios 64 NAND Effaceable Storage Effaceable Storage UID LLB XNU imessage APNs Apple icloud ios 5 3 icloud UUID HMAC UID PBKDF2 Salt UUID UID UID 60

Low-Level Bootloader LLB Per File System on a chip SoC Uniform Resource Identifier URI ID UID XNU ios App API 1 ios RFC 3394 NIST AES Boot ROM iboot AES 256 Per File App ios Apple App App ID 1 Secure Enclave Apple A7 SoC UID PBKDF2 UID AES PRF Web AES 256 AES UID UDID ios OS X ASLR 61

2016 5 ios 9.3 ipad Apple ID Apple ID 2 Apple School Manager ios 9.3 support.apple.com/ja-jp/ht206166 2015 9 ios 9 Apple Watch Touch ID API A8 AES-XTS App Safari App Transport Security VPN HomeKit icloud Apple Pay Apple Pay App Spotlight ios Apple Configurator ios 9 support.apple.com/ja-jp/ht205212 2016 Apple Inc. All rights reserved. Apple Apple AirDrop AirPlay Apple TV Apple Watch Bonjour FaceTime ibooks imessage ipad ipod ipod touch itunes Keychain Mac OS X Safari Siri Spotlight Xcode Apple Inc. iphone Apple Pay CarPlay Lightning Touch ID Apple Inc. icloud itunes Store Apple Inc. App Store ibooks Store Apple Inc. IOS Cisco Bluetooth Bluetooth SIG, Inc. Apple Java Oracle 62