From 0e66d22f5543eae958af4e54c03009225abd7b8d Mon Sep 17 00:00:00 2001 From: hirosassa Date: Thu, 22 Jul 2021 10:57:25 +0900 Subject: [PATCH 1/2] add ja_token_rotation.md --- docs/_advanced/ja_token_rotation.md | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) create mode 100644 docs/_advanced/ja_token_rotation.md diff --git a/docs/_advanced/ja_token_rotation.md b/docs/_advanced/ja_token_rotation.md new file mode 100644 index 000000000..7a0316a3b --- /dev/null +++ b/docs/_advanced/ja_token_rotation.md @@ -0,0 +1,16 @@ +--- +title: トークンのローテーション +lang: ja-jp +slug: token-rotation +order: 6 +--- + +
+Bolt for Python [v1.7.0](https://github.com/slackapi/bolt-python/releases/tag/v1.7.0) より、[OAuth V2 RFC](https://datatracker.ietf.org/doc/html/rfc6749#section-10.4) で規定され、アクセストークンに対するセキュリティを強化する、トークンローテーションを提供しています。 + +既存の Slack app のアクセストークンが無期限に存在し続けるのに対し、トークンローテーションを有効にすると、アクセストークンは失効します。これに対し、リフレッシュトークンを用いて、長期にわたりアクセストークンの更新行います。 + +Bolt for Python は[組み込みの OAuth](https://slack.dev/bolt-python/concepts#authenticating-oauth) が使用されている場合、自動的にトークンローテーションを行います。 + +トークンローテーションについての詳細な情報は、この[ドキュメント](https://api.slack.com/authentication/rotation)をご覧ください。 +
From 5fb5509641a57d89a9ee9a421040611f0ab8344a Mon Sep 17 00:00:00 2001 From: hirosassa Date: Thu, 22 Jul 2021 14:49:10 +0900 Subject: [PATCH 2/2] apply review comments --- docs/_advanced/ja_context.md | 4 ++-- docs/_advanced/ja_global_middleware.md | 4 ++-- docs/_advanced/ja_lazy_listener.md | 2 +- docs/_advanced/ja_listener_middleware.md | 4 ++-- docs/_advanced/ja_token_rotation.md | 8 ++++---- 5 files changed, 11 insertions(+), 11 deletions(-) diff --git a/docs/_advanced/ja_context.md b/docs/_advanced/ja_context.md index 1053cce6a..6ddfe1bf2 100644 --- a/docs/_advanced/ja_context.md +++ b/docs/_advanced/ja_context.md @@ -2,7 +2,7 @@ title: コンテキストの追加 lang: ja-jp slug: context -order: 7 +order: 9 ---
@@ -69,4 +69,4 @@ def show_tasks(event, client, context): "blocks": context["blocks"] } ) -``` \ No newline at end of file +``` diff --git a/docs/_advanced/ja_global_middleware.md b/docs/_advanced/ja_global_middleware.md index 3588e4fcb..86b844d26 100644 --- a/docs/_advanced/ja_global_middleware.md +++ b/docs/_advanced/ja_global_middleware.md @@ -2,7 +2,7 @@ title: グローバルミドルウェア lang: ja-jp slug: global-middleware -order: 6 +order: 8 ---
@@ -34,4 +34,4 @@ def auth_abc(client, context, logger, payload, next): # 次のミドルウェアに実行権を渡します next() ``` -
\ No newline at end of file +
diff --git a/docs/_advanced/ja_lazy_listener.md b/docs/_advanced/ja_lazy_listener.md index a3cbe8fec..930e4d9ff 100644 --- a/docs/_advanced/ja_lazy_listener.md +++ b/docs/_advanced/ja_lazy_listener.md @@ -2,7 +2,7 @@ title: Lazy リスナー(FaaS) lang: ja-jp slug: lazy-listeners -order: 9 +order: 10 ---
diff --git a/docs/_advanced/ja_listener_middleware.md b/docs/_advanced/ja_listener_middleware.md index 1afeb0265..7e67311b6 100644 --- a/docs/_advanced/ja_listener_middleware.md +++ b/docs/_advanced/ja_listener_middleware.md @@ -2,7 +2,7 @@ title: リスナーミドルウェア lang: ja-jp slug: listener-middleware -order: 5 +order: 7 ---
@@ -38,4 +38,4 @@ def no_bot_messages(message) -> bool: def log_message(logger, event): logger.info(f"(MSG) User: {event['user']}\nMessage: {event['text']}") ``` -
\ No newline at end of file +
diff --git a/docs/_advanced/ja_token_rotation.md b/docs/_advanced/ja_token_rotation.md index 7a0316a3b..6a733a87f 100644 --- a/docs/_advanced/ja_token_rotation.md +++ b/docs/_advanced/ja_token_rotation.md @@ -6,11 +6,11 @@ order: 6 ---
-Bolt for Python [v1.7.0](https://github.com/slackapi/bolt-python/releases/tag/v1.7.0) より、[OAuth V2 RFC](https://datatracker.ietf.org/doc/html/rfc6749#section-10.4) で規定され、アクセストークンに対するセキュリティを強化する、トークンローテーションを提供しています。 +Bolt for Python [v1.7.0](https://github.com/slackapi/bolt-python/releases/tag/v1.7.0) から、アクセストークンのさらなるセキュリティ強化のレイヤーであるトークンローテーションの機能に対応しています。トークンローテーションは [OAuth V2 の RFC](https://datatracker.ietf.org/doc/html/rfc6749#section-10.4) で規定されているものです。 -既存の Slack app のアクセストークンが無期限に存在し続けるのに対し、トークンローテーションを有効にすると、アクセストークンは失効します。これに対し、リフレッシュトークンを用いて、長期にわたりアクセストークンの更新行います。 +既存の Slack アプリではアクセストークンが無期限に存在し続けるのに対して、トークンローテーションを有効にしたアプリではアクセストークンが失効するようになります。リフレッシュトークンを利用して、アクセストークンを長期間にわたって更新し続けることができます。 -Bolt for Python は[組み込みの OAuth](https://slack.dev/bolt-python/concepts#authenticating-oauth) が使用されている場合、自動的にトークンローテーションを行います。 +[Bolt for Python の組み込みの OAuth 機能](https://slack.dev/bolt-python/concepts#authenticating-oauth) を使用していれば、Bolt for Python が自動的にトークンローテーションの処理をハンドリングします。 -トークンローテーションについての詳細な情報は、この[ドキュメント](https://api.slack.com/authentication/rotation)をご覧ください。 +トークンローテーションに関する詳細は [API ドキュメント](https://api.slack.com/authentication/rotation)を参照してください。