Yini okufanele uyibhale ngemfihlo kusistimu yebhizinisi? Futhi kungani wenze lokhu?

I-GlobalSign Company wenze ucwaningo, kanjani futhi kungani izinkampani zisebenzisa ingqalasizinda yokhiye womphakathi (i-PKI) kwasekuqaleni. Babalelwa ku-750 abantu ababambe iqhaza ocwaningweni: baphinde babuzwa imibuzo mayelana namasiginesha edijithali nama-DevOps.

Uma ungalijwayele leli gama, i-PKI ivumela amasistimu ukuthi ashintshisane ngokuphephile idatha futhi aqinisekise abanikazi bezitifiketi. Izixazululo ze-PKI kufaka phakathi ukuqinisekiswa kwezitifiketi zedijithali nokhiye basesidlangalaleni bokubethela nokuqinisekiswa kwe-cryptographic kobuqiniso bedatha. Noma yiluphi ulwazi olubucayi luncike ohlelweni lwe-PKI, futhi i-GlobalSign ithathwa njengabahlinzeki abahamba phambili emhlabeni bamasistimu anjalo.

Ngakho-ke, ake sibheke okumbalwa okutholakele okubalulekile ocwaningweni.

Yini ebethelwe?

Sekukonke, izinkampani ezingama-61,76% zisebenzisa i-PKI ngendlela eyodwa noma enye.

Yini okufanele uyibhale ngemfihlo kusistimu yebhizinisi? Futhi kungani wenze lokhu?

Omunye wemibuzo eyinhloko abacwaningi abanentshisekelo ukuthi yiziphi izinhlelo ezithile zokubethela kanye nezitifiketi zedijithali abaphendulayo bazisebenzisayo. Akumangazi ukuthi cishe u-75% uthe usebenzisa izitifiketi zomphakathi I-SSL noma i-TLS, futhi cishe u-50% uthembele ku-SSL yangasese ne-TLS. Lolu uhlelo lokusebenza oludume kakhulu lwe-cryptography yesimanje - ukubethela ithrafikhi yenethiwekhi.

Yini okufanele uyibhale ngemfihlo kusistimu yebhizinisi? Futhi kungani wenze lokhu?
Lo mbuzo ubuzwe ezinkampanini eziphendule ngoyebo emibuzweni edlule mayelana nokusebenzisa amasistimu e-PKI, futhi uvumele izinketho eziningi zezimpendulo.

Ingxenye yesithathu yabahlanganyeli (30%) ithe isebenzisa izitifiketi zokusayina kwedijithali, kuyilapho kancane ithembele ku-PKI ukuze ivikele i-imeyili (S / MIME). I-S/MIME iphrothokholi esetshenziswa kabanzi yokuthumela imilayezo ebethelwe ngedijithali futhi iyindlela yokuvikela abasebenzisi ebugebengwini bobugebengu bokweba imininingwane ebucayi. Ngokukhula kokuhlaselwa kobugebengu bokweba imininingwane ebucayi, kuyacaca ukuthi kungani lesi kuyisixazululo esithandwa kakhulu sokuphepha kwebhizinisi.

Siphinde sabheka ukuthi kungani izinkampani ekuqaleni zikhetha ubuchwepheshe obususelwa ku-PKI. Ngaphezu kwama-30% akhombise ukwehla kwe-inthanethi Yezinto (IoT), futhi i-26% ikholelwa ukuthi i-PKI ingasetshenziswa ezinhlobonhlobo zezimboni. U-35% wabaphenduli baphawule ukuthi bayayazisa i-PKI ukuze kuqinisekiswe ubuqotho bedatha.

Izinselelo zokusetshenziswa ezivamile

Yize sazi ukuthi i-PKI inenani elikhulu lenhlangano, i-cryptography iwubuchwepheshe obuyinkimbinkimbi. Lokhu kudala izinkinga ngokuqaliswa. Sibuze abaphendulayo ukuthi bathini mayelana nezinselelo ezinkulu zokuqaliswa. Kuvele ukuthi enye yezinkinga ezinkulu ukuntuleka kwezinsiza zangaphakathi ze-IT. Abekho abasebenzi abanele abaqeqeshiwe abaqonda i-cryptography. Ukwengeza, u-17% wabaphenduli babike izikhathi ezinde zokuthunyelwa kwephrojekthi, futhi cishe ama-40% asho ukuthi ukuphatha umjikelezo wokuphila kungase kudle isikhathi. Kwabaningi, isithiyo yizindleko eziphezulu zezixazululo ze-PKI zangokwezifiso.

Yini okufanele uyibhale ngemfihlo kusistimu yebhizinisi? Futhi kungani wenze lokhu?

Sifunde ocwaningweni ukuthi izinkampani eziningi zisasebenzisa igunya lazo lezitifiketi zangaphakathi, ngaphandle komthwalo eziwudalayo ezinsizeni ze-IT zenkampani.

Ucwaningo luphinde lwabonisa ukwanda kokusetshenziswa kwamasignesha edijithali. Bangaphezu kuka-50% abaphendulile kwinhlolovo bathi basebenzisa amasiginesha edijithali ukuvikela ubuqotho nobuqiniso bokuqukethwe.

Yini okufanele uyibhale ngemfihlo kusistimu yebhizinisi? Futhi kungani wenze lokhu?

Ngokuqondene nokuthi kungani bekhethe amasignesha edijithali, ama-53% abaphendulile athi ukuthobela kwakuyisizathu esiyinhloko, kanti u-60% ucaphuna ukwamukelwa kobuchwepheshe obungenamaphepha. Isikhathi sokulondoloza siphawulwe njengesinye sezizathu eziyinhloko zokushintshela kumasiginesha edijithali. Kanye nekhono lokunciphisa isikhathi sokucubungula amadokhumenti kungenye yezinzuzo eziyinhloko zokusebenzisa ubuchwepheshe be-PKI.

Ukubethela ku-DevOps

Ucwaningo belungeke luphelele ngaphandle kokubuza abaphendulayo mayelana nokusetshenziswa kwezinhlelo zokubethela ku-DevOps, imakethe ekhula ngokushesha okucatshangwa ukuthi izofinyelela ku-$13 billion ngo-2025. Nakuba imakethe ye-IT yashintshela ngokushesha endleleni ye-DevOps (intuthuko + yokusebenza) enezinqubo zayo zebhizinisi ezizenzakalelayo, ukuguquguquka nezindlela ezi-Agile, empeleni lezi zindlela zivula izingozi ezintsha zokuphepha. Okwamanje, inqubo yokuthola izitifiketi endaweni ye-DevOps iyinkimbinkimbi, idla isikhathi, futhi inephutha. Nakhu onjiniyela nezinkampani ababhekana nazo:

  • Bayanda okhiye nezitifiketi ezisebenza njengezihlonzi zemishini kuzilinganisi zomthwalo, imishini ebonakalayo, iziqukathi namanethiwekhi wesevisi. Ukuphathwa kwesiphithiphithi salezi zikhozi ngaphandle kobuchwepheshe obufanele ngokushesha kuba inqubo ebizayo neyingozi.
  • Izitifiketi ezibuthakathaka noma ukuphelelwa yisikhathi kwezitifiketi ezingalindelekile lapho ukusetshenziswa kwenqubomgomo okuhle kanye nezinqubo zokuqapha zintula. Akudingekile ukusho, isikhathi esinjalo sokuphumula sinomthelela omkhulu ebhizinisini.

Kungakho i-GlobalSign inikeza isisombululo I-PKI ye-DevOps, ehlanganisa ngokuqondile ne-REST API, EST noma ifu Venafi, ukuze ithimba lokuthuthukiswa liqhubeke nokusebenza ngesivinini esifanayo ngaphandle kokudela ukuphepha.

Ama-cryptosystems angukhiye womphakathi angobunye bobuchwepheshe bokuphepha obuyisisekelo. Futhi kuzohlala kunjalo ngekusasa elibonakalayo. Futhi uma sibheka ukukhula okunamandla esikubonayo emkhakheni we-IoT, silindele ukuthunyelwa kwe-PKI okwengeziwe kulo nyaka.

Source: www.habr.com

Engeza amazwana