{"id":128,"date":"2018-08-31T20:00:10","date_gmt":"2018-08-31T11:00:10","guid":{"rendered":"http:\/\/blog.iotaker.jp\/?p=128"},"modified":"2018-10-12T15:24:35","modified_gmt":"2018-10-12T06:24:35","slug":"azure-dns-%e3%81%a7-caa-record-%e3%82%92%e8%bf%bd%e5%8a%a0%e3%81%99%e3%82%8b","status":"publish","type":"post","link":"https:\/\/blog.iotaker.jp\/?p=128","title":{"rendered":"Azure DNS \u3067 CAA Record \u3092\u8ffd\u52a0\u3059\u308b"},"content":{"rendered":"<p>\u30c9\u30e1\u30a4\u30f3\u306b\u5bfe\u3059\u308b\u8a3c\u660e\u66f8\u3092\u767a\u884c\u3067\u304d\u308b\u6a5f\u95a2\u3092\u6307\u5b9a\u3059\u308b\u3053\u3068\u3067\u610f\u56f3\u3057\u306a\u3044\u7b2c\u4e09\u8005\u304b\u3089\u306e\u8a3c\u660e\u66f8\u767a\u884c\u3092\u9632\u3050\u305f\u3081\u306e\u4ed5\u7d44\u307f\u304cCAA\u30ec\u30b3\u30fc\u30c9\u3067\u3059\u3002<\/p>\n<p>\u4ee5\u524dSymantec\u304cGoogle\u5148\u751f\u3092\u6012\u3089\u305b\u305f\u7d50\u679c\u751f\u307e\u308c\u305f\u306e\u304c\u3053\u306e\u30ec\u30b3\u30fc\u30c9\u306a\u3093\u3067\u3059\u304c\u3001\u307f\u3093\u306a\u5927\u597d\u304dQualys SSL Labs\u306eSSL Server Test\u3067\u3082\u8868\u793a\u3055\u308c\u308b\u306e\u3067\u6c17\u306b\u306a\u308b\u9805\u76ee\u3067\u3059\u3002<\/p>\n<figure id=\"attachment_134\" aria-describedby=\"caption-attachment-134\" style=\"width: 300px\" class=\"wp-caption alignnone\"><a href=\"\/wp-content\/uploads\/2018\/08\/qualys.png\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-134 size-medium\" src=\"\/wp-content\/uploads\/2018\/08\/qualys-300x187.png\" alt=\"\" width=\"300\" height=\"187\" srcset=\"https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/qualys-300x187.png 300w, https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/qualys-768x479.png 768w, https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/qualys-1024x638.png 1024w, https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/qualys.png 1099w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><figcaption id=\"caption-attachment-134\" class=\"wp-caption-text\">A+!!(\uff84\uff9e\uff94\uff67)<\/figcaption><\/figure>\n<p>\u79c1\u306fAzure DNS\u3092\u5229\u7528\u3057\u3066\u3044\u307e\u3059\u306e\u3067\u3001Azure DNS\u4e0a\u3067\u306eCAA\u30ec\u30b3\u30fc\u30c9\u306e\u8a2d\u5b9a\u65b9\u6cd5\u306b\u3064\u3044\u3066\u8abf\u3079\u3066\u5b9f\u8df5\u3057\u307e\u3057\u305f\u3002<!--more--><\/p>\n<h1>Azure DNS\u3067\u306eCAA\u30ec\u30b3\u30fc\u30c9\u5bfe\u5fdc<\/h1>\n<p>Azure DNS\u306f2017\u5e7411\u6708\u306bCAA\u30ec\u30b3\u30fc\u30c9\u306b\u6b63\u5f0f\u5bfe\u5fdc\u3057\u307e\u3057\u305f\u3002<br \/>\n\u5bfe\u5fdc\u3057\u305f\u65e8\u306f<span style=\"color: #0000ff;\"><a style=\"color: #0000ff;\" href=\"https:\/\/azure.microsoft.com\/ja-jp\/blog\/azure-dns-updates-caa-record-support-and-ipv6-nameservers\/\" target=\"_blank\" rel=\"noopener\">Azure\u306e\u30d6\u30ed\u30b0<\/a><\/span>\u306b\u63b2\u8f09\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>Azure DNS\u306fCAA\u30ec\u30b3\u30fc\u30c9\u306b\u5bfe\u5fdc\u3057\u305f\u3082\u306e\u306e\u30012018\u5e748\u6708\u672b\u6642\u70b9\u3067Azure Portal\u306e\u753b\u9762\u304b\u3089\u306fCAA\u30ec\u30b3\u30fc\u30c9\u306e\u8ffd\u52a0\u30fb\u524a\u9664\u30fb\u5909\u66f4\u7b49\u306f\u3067\u304d\u306a\u3044\u72b6\u614b\u3067\u3059\u3002<br \/>\nCAA\u30ec\u30b3\u30fc\u30c9\u3092\u64cd\u4f5c\u3059\u308b\u305f\u3081\u306b\u306fPowerShell\u304b\u3089\u5b9f\u65bd\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_130\" aria-describedby=\"caption-attachment-130\" style=\"width: 300px\" class=\"wp-caption alignnone\"><a href=\"\/wp-content\/uploads\/2018\/08\/azuredns.png\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-130 size-medium\" src=\"\/wp-content\/uploads\/2018\/08\/azuredns-300x205.png\" alt=\"\" width=\"300\" height=\"205\" srcset=\"https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/azuredns-300x205.png 300w, https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/azuredns-768x526.png 768w, https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/azuredns-1024x701.png 1024w, https:\/\/blog.iotaker.jp\/wp-content\/uploads\/2018\/08\/azuredns.png 1084w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><figcaption id=\"caption-attachment-130\" class=\"wp-caption-text\">\u30ec\u30b3\u30fc\u30c9\u30bf\u30a4\u30d7\u4e00\u89a7\u306bCAA\u304c\u306a\u3044(\u30ea\u30fc\u30b8\u30e7\u30f3\u3067\u9055\u3063\u305f\u308a\u3059\u308b\u306e\u304b\u306a)<\/figcaption><\/figure>\n<h1>Powershell\u3067\u306eCAA\u30ec\u30b3\u30fc\u30c9\u767b\u9332<\/h1>\n<p>AzureDNS\u306bCAA\u30ec\u30b3\u30fc\u30c9\u3092\u767b\u9332\u3059\u308b\u306e\u306f\u3056\u3063\u304f\u308a\u4ee5\u4e0b\u306e\u624b\u9806\u3067\u3059\u3002<\/p>\n<ol>\n<li>Azure\u306bPowerShell\u3067\u63a5\u7d9a<\/li>\n<li>CAA\u30ec\u30b3\u30fc\u30c9\u7528\u306eConfig\u3092\u4f5c\u308b<\/li>\n<li>CAA\u30ec\u30b3\u30fc\u30c9\u3092\u4f5c\u308b<\/li>\n<\/ol>\n<p>\u624b\u9806\u3092\u8ffd\u3063\u3066\u89e3\u8aac\u3057\u307e\u3059\u3002<\/p>\n<h2>Azure\u306bPowerShell\u3067\u63a5\u7d9a<\/h2>\n<p>PowerShell\u3092\u958b\u3044\u3066\u4ee5\u4e0b\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3057\u3001Azure\u306e\u30ea\u30bd\u30fc\u30b9\u30de\u30cd\u30fc\u30b8\u30e3\u30fc\u306b\u63a5\u7d9a\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"brush: powershell; title: ; notranslate\" title=\"\">\r\nConnect-AzureRmAccount\r\n\r\n\u203bAzureRM\u304c\u672a\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u306e\u5834\u5408\u306f\u5148\u306b\u30e2\u30b8\u30e5\u30fc\u30eb\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\r\nInstall-Module AzureRM\r\nConnect-AzureRmAccount\r\n<\/pre>\n<p>\u30d6\u30e9\u30a6\u30b6\u3068\u540c\u69d8\u306e\u8a8d\u8a3c\u7a93\u304c\u51fa\u308b\u306e\u3067\u8a8d\u8a3c\u3092\u5b9f\u65bd\u3057\u3001PowerShell\u306bAzure\u306e\u30c6\u30ca\u30f3\u30c8\u60c5\u5831\u7b49\u304c\u8868\u793a\u3055\u308c\u308c\u3070\u63a5\u7d9a\u6210\u529f\u3067\u3059\u3002<\/p>\n<h2>CAA\u30ec\u30b3\u30fc\u30c9\u7528\u306eConfig\u3092\u4f5c\u308b<\/h2>\n<p>New-AzureRmDnsRecordConfig\u3092\u5229\u7528\u3057\u3066CAA\u30ec\u30b3\u30fc\u30c9\u306e\u8a2d\u5b9a\u3092\u4f5c\u308a\u307e\u3059\u3002<br \/>\n\u8a2d\u5b9a\u5185\u5bb9\u306f\u8a3c\u660e\u66f8\u767a\u884c\u3092\u8a31\u53ef\u3059\u308b\u8a3c\u660e\u5c40\u3092\u6307\u5b9a\u3059\u308bissue\u3001\u30ef\u30a4\u30eb\u30c9\u30ab\u30fc\u30c9\u8a3c\u660e\u66f8\u767a\u884c\u3092\u8a31\u53ef\u3059\u308b\u8a3c\u660e\u5c40\u3092\u6307\u5b9a\u3059\u308bissuewild\u3001\u4f55\u304b\u3042\u3063\u305f\u3068\u304d\u306e\u9023\u7d61\u7528\u30a2\u30c9\u30ec\u30b9\u3092\u6307\u5b9a\u3059\u308biodef\u306e3\u3064\u3067\u3059\u3002<\/p>\n<pre class=\"brush: powershell; title: ; notranslate\" title=\"\">\r\n\r\n$caaconf = @()\r\n$caaconf += New-AzureRmDnsRecordConfig -CaaFlags 0 -CaaTag &quot;issue&quot; -CaaValue &quot;symantec.com&quot;\r\n$caaconf += New-AzureRmDnsRecordConfig -CaaFlags 0 -CaaTag &quot;issuewild&quot; -CaaValue &quot;;&quot;\r\n$caaconf += New-AzureRmDnsRecordConfig -CaaFlags 0 -CaaTag &quot;iodef&quot; -CaaValue &quot;mailto:hogehoge@example.com&quot;\r\n<\/pre>\n<h2>CAA\u30ec\u30b3\u30fc\u30c9\u3092\u4f5c\u308b<\/h2>\n<p><span style=\"display: inline !important; float: none; background-color: transparent; color: #071f2e; cursor: text; font-family: 'Droid Sans',Arial,sans-serif; font-size: 15px; font-style: normal; font-variant: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: left; text-decoration: none; text-indent: 0px; text-transform: none; -webkit-text-stroke-width: 0px; white-space: normal; word-spacing: 0px;\">New-AzureRmDnsRecord<\/span>Set\u3092\u5229\u7528\u3057\u3066\u30ec\u30b3\u30fc\u30c9\u3092\u767b\u9332\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"brush: powershell; title: ; notranslate\" title=\"\">New-AzureRmDnsRecordSet -ResourceGroupName iotaker -ZoneName iotaker.jp -Name test -RecordType CAA -ttl 3600 -DnsRecords $caaconf\r\n\r\nName : test\r\nZoneName : iotaker.jp\r\nResourceGroupName : iotaker\r\nTtl : 3600\r\nEtag : ************************************\r\nRecordType : CAA\r\nRecords : {&#x5B;0,issue,symantec.com], &#x5B;0,issuewild,;], &#x5B;0,iodef,mailto:hogehoge@example.com]}\r\nMetadata :\r\n\r\n<\/pre>\n<p>CAA\u30ec\u30b3\u30fc\u30c9\u304c\u4f5c\u6210\u3067\u304d\u307e\u3057\u305f\u3002<\/p>\n<pre class=\"brush: bash; title: ; notranslate\" title=\"\">\r\n\r\n~$ dig test.iotaker.jp CAA\r\n0 issue &quot;symantec.com&quot;\r\n0 issuewild &quot;\\;&quot;\r\n0 iodef &quot;mailto:hogehoge@example.com&quot;\r\n\r\n<\/pre>\n<p>\u5916\u304b\u3089\u540d\u524d\u3092\u5f15\u304f\u3068\u4e0a\u8a18\u306e\u3088\u3046\u306b\u5fdc\u7b54\u304c\u8fd4\u3063\u3066\u304f\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u30c9\u30e1\u30a4\u30f3\u306b\u5bfe\u3059\u308b\u8a3c\u660e\u66f8\u3092\u767a\u884c\u3067\u304d\u308b\u6a5f\u95a2\u3092\u6307\u5b9a\u3059\u308b\u3053\u3068\u3067\u610f\u56f3\u3057\u306a\u3044\u7b2c\u4e09\u8005\u304b\u3089\u306e\u8a3c\u660e\u66f8\u767a\u884c\u3092\u9632\u3050\u305f\u3081\u306e\u4ed5\u7d44\u307f\u304cCAA\u30ec\u30b3\u30fc\u30c9\u3067\u3059\u3002 \u4ee5\u524dSymantec\u304cGoogle\u5148\u751f\u3092\u6012\u3089\u305b\u305f\u7d50\u679c\u751f\u307e\u308c\u305f\u306e\u304c\u3053\u306e\u30ec\u30b3\u30fc\u30c9\u306a\u3093\u3067\u3059\u304c\u3001\u307f\u3093 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13],"tags":[15,6],"class_list":["post-128","post","type-post","status-publish","format-standard","hentry","category-azure","tag-dns","tag-powershell"],"_links":{"self":[{"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=\/wp\/v2\/posts\/128","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=128"}],"version-history":[{"count":22,"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=\/wp\/v2\/posts\/128\/revisions"}],"predecessor-version":[{"id":176,"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=\/wp\/v2\/posts\/128\/revisions\/176"}],"wp:attachment":[{"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=128"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=128"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.iotaker.jp\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=128"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}