Daisuke Kamada, General Manager, Service Sales Department, Cloud Hosting Business Headquarters
Sosuke Shimoike, Marketing Manager, Service Sales Department, Cloud Hosting Business HeadquartersIt has been eight years since the release of the shared plan ACE01 in 2011.
CPI has fully released a new shared server plan “Shared Plan SV-Basic”.This time, although the service site ( https://www.cpi.ad.jp/shared/ ) was released, two people from the service sales department of the cloud hosting business headquarters introduced “SV-Basic”. I will!Why on earth? What is its ability? Where did you get better? We will do our best to answer your questions by approaching the whole picture of SV-Basic!
What is “SV-Basic”?
Shimoike First of all, I will briefly explain the service content of “SV-Basic”.
“SV-Basic” is a shared rental server that focuses on safety and stability.Unlike the previous ACE01, we do not offer unlimited disk capacity or multi-domain. We have received high praise for its high cost performance, but as a result of reviewing the use of 100,000 servers, we decided that there were high expectations for a more stable service, and decided to change it.By separating the web, email, and control panel systems and setting upper limits for each, we are developing a service that emphasizes stability without being affected by other users.In addition, the separation of the system makes it easier to implement security measures appropriately, making it easier to continuously improve safety.In particular, regarding the “SSL server certificate”, we have responded to many requests and have decided to provide one free of charge. Moreover, we are particular about certainty in business, and we adopt the service provided by domestic vendors for the certificates provided free of charge. Thank you for waiting for a long time!In addition, we are strengthening services in line with trends, such as security and support for high-speed display.
As an example:
-Compatible with TLS1.3 and the highest level of encryption strength-
Supports HTTP / 2 and enables high-speed website display-
Clear strict standards such as security diagnosis by specialists
.Of course, the “Smart Release” that was well received by ACE01 is still alive. The database backup, which used to be up to 10 generations, has been increased to 30 generations, further improving usability.And as another big change, we renewed the control panel for the first time in more than ten years and evolved it into a service that is easy to operate without knowledge. I want you to see the real environment.From the popular “ACE01” to “SV-Basic”.
Aiming for a bold service that puts a scalpel into the essence of “invisible” service rather than specs.
We don’t think of websites and emails as just “content” or “features”. We have a strong awareness that websites are an important business asset for our customers and support them.We also believe that email is an indispensable business infrastructure for our customers’ business communication. Even if only one email is stopped, it will result in a serious loss of opportunity and may hinder your business.We recognize that it is our role to ensure stable operation and comfortable use of services in order to protect our customers’ businesses and support their development.Kenichi Nishimura, General Manager, Cloud Hosting Business Headquarters
Kamada This is where we CPI aim to realize every day.
Since the release of ACE01, we have been refining the service with the same feeling, but it is also true that there are many parts where the service content does not match the actual usage.
From a sales standpoint, the concept of unlimited is very easy to understand, but I also thought that it was inadequate as a solution to the development of business opportunities for our customers.
In many cases, even when talking to customers and partners, the fact that the web and email are “always stable” has been the most appreciated. Now that there are almost no companies that do not use IT, web and email play an important role in the customer’s business, and the greater the results of these, the higher the importance of the business.
In that sense as well, you need to be particular about each server environment.
Kamada I think that CPI is always said to be a stable service because we are particular about putting a scalpel into the essence of “invisible” services. In order to further develop CPI as a server that can support the business growth of our customers, it was necessary to take the plunge and renew the concept at this time.Speaking of the Shimoike concept, in addition to stability, “safety” is also important.
Stability alone is not enough to protect your business assets. Although it is not conspicuous, it is a service with detailed consideration such as a server configuration that can efficiently implement security measures.I think that the good thing about Kamada CPI’s service is that it is easy to handle and hassle-free during operation. In other words, it does not interfere with the customer’s business opportunities and supports them properly.
If it is always safe, stable, and comfortable, there will be almost no hassle during operation. We believe that you will be able to work with us for a long time as a service that you do not have to worry about as your business infrastructure.No one trusts a website that is known to be dangerous.
First, let’s talk about “safety” in detail.
As I explained earlier, we have made the SSL server certificate free.
Rather than security measures, it is more of a measure for browsers that are rushing to popularize SSL at all times.The severity of warnings on browsers is unthinkable until a few years ago.For example
Kamada When this happens, no one will access the future. I’m really scared.
Many users may feel distrustful just because the address bar warns them.
Websites that turn out to be dangerous are not trusted and will be seen more severely in the future.
Given the opportunity loss, SSL is a must.
Shimoike : It should have become more widespread in the past year, but according to a survey released last year, the penetration rate is about 20%. 70% -80% of websites are not yet supported. It seems that some websites have already lost opportunities.
(* Source: Japan Institute for Promotion of Digital Economy and Society ”Constant SSL / TLS Survey Report | Corporate Site Support Status” )
Kamada: I really want you to take measures with SV-Basic.Providing a mechanism to review the entire system and continue to improve safety
In addition to Shimoike SSL, we are adding safety initiatives.
First, about “security update”.
This time, we have completely separated the system into a production environment and a control panel. As a result, it has become easier to update the web server, mail server, control panel server, etc. at the appropriate timing and response method.
Kamada Originally, the web server and mail server are provided in different server environments. Compared to general services, the time required for verification is shorter, and you can take measures for your environment at a more appropriate time.
Following Shimoike ACE01, SV-Basic also provides “WAF (Web Application Firewall)” as standard.
According to the survey results of JPCERT / CC and IPA (Information-technology Promotion Agency), the number of information security incidents has not decreased, and attacks via the web and email continue.
In particular, CMS (content management system) on websites that are open to the outside is easy to be targeted, and if vulnerability countermeasures are insufficient, there is a possibility that the website will be hijacked and become a perpetrator rather than a victim. There is also.
▼ Incident Report Response Report (JPCERT / CC “Incident Report Response Report” ) ▼ Information Security 1 Major Threats (Source: Information-technology Promotion Agency “Information Security 10 Major Threats 2019” )In the case of
WAF ( JP Secure Co., Ltd. “SiteGuard Server Edition” ) adopted by Kamada CPI , such unauthorized access is signature-identified and prevented from being accessed. Signatures will also be updated at the CPI, so I hope you will make use of them to protect your important business assets from vulnerabilities.
Shimoike From that perspective, we are also taking measures against the fully renewed control panel. This time, not only the operability has been improved, but also the system has been redesigned. Since it is a newly designed one, we request a security diagnosis from a system testing specialist and meet the “OWASP Application Security Verification Standard (ASVS)”.
Kamada: Of course, the verification by in-house engineers is also accurate, and the security standards as a KDDI group company are also cleared.
If WAF protects your content, this is to protect the service of the rental server itself.
I can recommend it for business with confidence.The world is borderless. To be a service that can be used at any time.
Next, let me introduce your commitment to “stability.”Now you can easily access the website on your smartphone. Businesses are becoming more globalized and are accessible from anywhere in the world.
You can access the website 24 hours a day, 365 days a year, send and receive e-mails, and so on.
But whether it is stable or not is different. According to a Google survey, if the website takes more than a second to display, you will lose interest in the task you were performing.In that case, you always need a stable display speed. It is required that the moment is fast, but it is important that it does not become unstable.
(Source: Google “Find out how you stack up to new industry benchmarks for mobile page speed”This is exactly what we were particular about in “SV-Basic”.
We make sure that we do not create situations that are prone to instability.
The separation of the system, which I introduced several times earlier, is also one of the measures to improve stability. Moreover, unlike the multi-domain provided by a general rental server, a web server and a mail server are added for each addition of the multi-domain.
It used to be the same method, but I didn’t explain it so much, so many people don’t know it.
Kamada What I would like to emphasize is that “the number of accommodations is determined for each website.”
In the case of a general rental server, the number of contracts to be accommodated on the physical server is determined based on the server environment, but in the case of CPI, the number of web servers = the number of websites, so the number of websites It is controlled and stabilized.
It is not easily affected and it is difficult to use it unreasonably. This is the secret of stable operation.
Shimoike That’s right.
If you can add an unlimited number of multi-domains to your environment, it can be significantly affected by customers entering the same server. Also, of course, since they are the same web server, if multiple websites live together, the probability of being accessed at the same time or connecting to the database will increase accordingly.
I think that it is a big merit that it can be secured per website like SV-Basic and the impact can be relatively small.Also, as I explained on the web server, the same distribution is done by email. I would like you to use email with confidence.
Kamada : Because we are a society that is always connected at all times, in order to promote the utilization of the web and e-mail, which are important “business assets,” it can be said that the value is stable enough to “leave it to us.”
I would also like to introduce the words of the CPI operations manager.“The most important thing for operation is the stability of the system. Then, it is easy to think of measures with a passive and defensive way of thinking. Until a few years ago, from the perspective of how to resolve a failure as soon as possible. However, I shouldn’t cause the failure itself in the first place. For that reason, I changed my mind to break the stereotypes and take on new challenges. That is what we think of as “offensive operation”. ”
Shimoike: We have received many evaluations that “there are few obstacles, it is stable, and there are no problems”, but that is the background of this idea.
Kamada I think that the essence of the service is that it cannot be introduced in the service specifications and function table. It will be too long, so I will not introduce it in depth this time, but I would like to tell you at another time.Can it be used properly without being aware of it?
Can it be used according to the division of roles?
Polish the delicate awareness along the site.
Shimoike So far, we have talked about “stability” and “safety,” but finally, let me touch on the redesigned control panel.Kamada The
control panel, which has a history of more than ten years, is finally …
Shimoike This is the control panel reborn with SV-Basic!By the way, this is the control panel up to ACE01.Kamada The
operability has also evolved significantly.
Moreover, we have re-developed it so that it is easier to repair than the conventional control panel, so we plan to further improve usability based on the opinions of our customers in the future.
Shimoike It is a good point that not only the appearance and operability but also the design is designed so that the person in charge can use it easily and leave it to other departments in charge according to the scene where the control panel is used.For example, if you say,
“The web is managed by the marketer, and the email is managed by the human resources department.”
“The web wants to be managed by the production company, and the email is managed by the general affairs department.” There is only one, you can set the web and email, so it is difficult to use, what about CPI? I have the opportunity to ask the question.In SV-Basic, we have prepared an account that
can integrate web / email and manage it collectively
, a web-only account,
and an email-only account
.Kamada It is a point that you will evaluate from the time of ACE01.
It’s safer not to use unnecessary functions, and it’s also safe because the impact will be limited if a problem actually occurs. I heard that it is useful in the actual field, so I would like you to give it a try.
: I haven’t talked about the appeal of “SV-Basic” yet, but this time around. How about Mr. Kamada?Kamada
That’s right. Then only one at the end.It is not a service that cannot be used unless you are familiar with specialized knowledge, but we would like to continue to be a service that allows you to obtain high safety and stability without being aware of technology even if you do not have knowledge.
That is why we have made a major change in the concept of this service, focusing on safety and stability, and evolving it into a service that is easy to handle during operation.