> ## Documentation Index
> Fetch the complete documentation index at: https://translations.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Universal Portals

> コードを記述したりインフラストラクチャを管理したりせずに、あらかじめ構築されたポータルをデプロイできる、Auth0 Universal Portalsのホスト型アイデンティティ体験プラットフォームについて説明します。

export const ReleaseStageNotice = ({feature, stage, plans, contact, terms}) => {
  const stageTextMap = {
    "beta": "Beta",
    "ea": "早期アクセス"
  };
  const stageText = stageTextMap[stage] || "製品リリース段階";
  const prsLink = "/docs/troubleshoot/product-lifecycle/product-release-stages";
  const linkify = (text, url) => {
    return <a href={url} target="_blank" rel="noreferrer" class="link">{text}</a>;
  };
  const includeDetails = (plans, contact, terms) => {
    const hasDetails = terms || plans || contact;
    if (!hasDetails) return null;
    return <span data-as="p">
            {plans && <>この機能は{linkify(`${plans}プラン`, "https://auth0.com/pricing")}でご利用いただけます。 </>}
            {contact && "参加をご希望の場合は、" + contact + "までお問い合わせください。 "}
            {terms && <>この機能を使用することにより、Oktaの該当する無料トライアル規約および{linkify("Master Subscription Agreement", "https://www.okta.com/legal")}に同意したものとみなされます。</>}
        </span>;
  };
  return <Warning>
            <span data-as="p">
                <strong>{feature}機能は現在、{linkify(stageText, prsLink)}です。</strong>
            </span>

            {includeDetails(plans, contact, terms)}
        </Warning>;
};

<ReleaseStageNotice feature="Auth0 Universal Portals" stage="beta" terms="true" contact="Auth0 Support" />

Auth0 Universal Portals は、ホスト型のアイデンティティエクスペリエンスプラットフォームです。プロファイル管理や organization の設定などを提供する、あらかじめ構築されたフルマネージドのポータルをデプロイできます。コードの記述、インフラストラクチャのホスティング、カスタム UI の保守は必要ありません。

Universal Portals では、個人設定用の [My Account API](/docs/ja-jp/api/myaccount) や organization 管理用の [My Organization API](/docs/ja-jp/api/myorganization) を使用して、Auth0 がホストするセルフサービスポータルを作成できます。

<Frame>
  <img src="https://mintcdn.com/translations/oyf5dwefQkpFhecP/docs/images/customize/portals/portal-editor.png?fit=max&auto=format&n=oyf5dwefQkpFhecP&q=85&s=5403d4a10f8215df81af2526d26ba982" alt="Universal Portals ビジュアルエディター" width="3826" height="1836" data-path="docs/images/customize/portals/portal-editor.png" />
</Frame>

<div id="use-cases">
  ## ユースケース
</div>

Universal Portals は、次のユースケースに対応しています。

* エンドユーザーがアカウントのプロファイル管理、[多要素認証 (MFA) ](/docs/ja-jp/secure/multi-factor-authentication#multi-factor-authentication-mfa)の登録、パスワード変更、セキュリティ設定にアクセスできるセルフサービスの**コンシューマーポータル**を作成します。
  このユースケースは、すべてのアプリケーションで一から構築する**My Account**ページに代わるものです。

<Frame>
  <img src="https://mintcdn.com/translations/oyf5dwefQkpFhecP/docs/images/customize/portals/universal-portal-b2c-example.png?fit=max&auto=format&n=oyf5dwefQkpFhecP&q=85&s=88517c77ce80793d19ccbb3ce938d352" alt="コンシューマーポータルの例" width="2400" height="1500" data-path="docs/images/customize/portals/universal-portal-b2c-example.png" />
</Frame>

* organization のメンバーが organization の設定、ドメイン検証、チーム管理を行えるセルフサービスの**ビジネスポータル**を作成します。
  このユースケースは、すべての B2B アプリケーションで一から構築する**My Organization**ページに代わるものです。

<Frame>
  <img src="https://mintcdn.com/translations/oyf5dwefQkpFhecP/docs/images/customize/portals/universal-portal-b2b-example.png?fit=max&auto=format&n=oyf5dwefQkpFhecP&q=85&s=6880bbb441a3f57720517f7000a2a61e" alt="ビジネスポータルの例" width="2400" height="1500" data-path="docs/images/customize/portals/universal-portal-b2b-example.png" />
</Frame>

<div id="key-features">
  ## 主な機能
</div>

Universal Portals では、構築、設定、保守を行うことなく、次の機能を利用できます。

* **ビジュアルビルダー**: ドラッグ＆ドロップエディターでポータルページを設定できます。以下が含まれます。

  * **アイデンティティコンポーネント**: あらかじめ用意された [Universal Components](/docs/ja-jp/get-started/universal-components/universal-components-overview) を使用して、プロファイル管理、MFA の登録、パスワード変更、organization の設定を行えます。
  * **[Auth0 フォーム](/docs/ja-jp/customize/forms)**: ポータルページでフォームを使用し、プロファイルの更新、ポリシーへの同意、マーケティングコミュニケーションの受信設定など、エンドユーザーから情報を収集できます。
  * **レイアウトコンポーネント**: セクション、区切り線、その他の構造要素を追加して、ページを視覚的に構成できます。

* **ポータルとアプリケーション**: すべてのポータルは、Auth0 の [通常の Web アプリ](/docs/ja-jp/get-started/auth0-overview/create-applications/regular-web-apps#register-regular-web-applications) を基盤としています。
  * Auth0 Dashboard を使用してポータルを作成すると、Auth0 がアプリケーションを自動的に作成・設定し、コールバック、ログアウト URL、API Access、グラントもすべて自動的に設定されます。
  * これらのリソースは、Auth0 CLI または Management API を使用して手動でプロビジョニングし、ポータルの作成時にアプリケーションをリンクすることもできます。詳細については、[Universal Portals Quickstart](/docs/ja-jp/customize/portals/quickstart) を参照してください。

* **ブランディングの継承**: ポータルは tenant のブランディング設定、ロゴ、色、フォントを自動的に継承します。B2B シナリオでは、ブランディングは組織コンテキストに応じて適用されます。

* **インフラストラクチャ不要**: ポータルは Auth0 によって完全にホストされます。デプロイ、スケーリング、保守は必要ありません。

* **デフォルトのセキュリティ**: Universal Portals は、デフォルトでアイデンティティセキュリティのベストプラクティスを実装しています。

  * [**バックチャネルログアウト**](/docs/ja-jp/authenticate/login/logout/back-channel-logout): 別のデバイスからのログアウト、セッションの取り消し、アカウントの変更など、何らかの理由でセッションが終了すると、すべてのデバイスでポータルセッションが自動的に終了します。
  * **自動 MFA ステップアップ**: ユーザーが機密性の高い操作にアクセスすると、ポータルは認証チャレンジを透過的に処理し、成功した場合は元の操作を再試行します。

<div id="how-it-works">
  ## 仕組み
</div>

Universal Portals では、認証済みのユーザーがアプリケーション内からポータルにアクセスできます。
ポータル URL にアクセスすると、ポータルサーバーで Auth0 の[シングルサインオン](/docs/ja-jp/authenticate/single-sign-on/inbound-single-sign-on)が実行されます。これはログインプロンプトを表示せずに透過的に行われます。

Auth0 は[アクセストークン](/docs/ja-jp/secure/tokens/access-tokens)と[リフレッシュトークン](/docs/ja-jp/secure/tokens/refresh-tokens)を発行し、これらはサーバー側に保存されます。ブラウザーが受け取るのは、暗号化された[session](/docs/ja-jp/manage-users/sessions) Cookie のみです。

ユーザーがセクション間を移動すると、ポータルサーバーはリフレッシュトークンを使用して、そのセクションで必要なリソースのみにスコープが設定された新しいアクセストークンを取得します。
login 時に発行されたリフレッシュトークンは、個人設定用の[My Account API](/docs/ja-jp/api/myaccount)や、organization 管理用の[My Organization API](/docs/ja-jp/api/myorganization)など、異なる audience 向けのアクセストークンと交換できます。

以下の図では、ユーザーが認証方法を管理するためにセキュリティセクションに移動しています。この操作には My Account API が必要です。

```mermaid theme={null}
sequenceDiagram
    participant Browser
    participant PS as Portal server
    participant AS as Authorization Server (Auth0)
    participant MAC as My Account API (Auth0)

    Browser->>PS: Navigate to portal URL
    PS->>AS: SSO (user already authenticated in app)
    AS-->>PS: Access token + refresh token
    Note right of PS: Tokens stored server-side
    PS-->>Browser: Session cookie

    Note over Browser,MAC: User navigates to security section

    Browser->>PS: Load authentication methods
    PS->>AS: Exchange refresh token for AT (My Account API)
    AS-->>PS: Scoped access token
    PS->>MAC: GET /me/authentication-methods
    MAC-->>Browser: Authentication methods
```

<div id="step-up-challenges">
  ### ステップアップチャレンジ
</div>

一部の操作には、より高い保証レベルが求められます。ユーザーが、`delete:me:authentication_methods` スコープを必要とする[認証器の削除](/docs/ja-jp/api/myaccount/authentication-methods/delete-authentication-method)などの機密性の高い操作を試みると、Auth0はステップアップチャレンジが必要であることを示します。

Universal Portalsはこれを自動的に処理し、ステップアップチャレンジを表示します。ユーザーが完了すると、元の操作が再試行されます。

```mermaid theme={null}
sequenceDiagram
    participant Browser
    participant PS as Portal server
    participant AS as Authorization Server (Auth0)
    participant MAC as My Account API (Auth0)

    Browser->>PS: Delete authenticator
    PS->>AS: Request AT (delete:me:authentication_methods)
    AS-->>PS: Step-up required
    PS-->>Browser: Step-up challenge
    Browser->>AS: Complete step-up challenge
    AS-->>PS: Scoped access token
    PS->>MAC: DELETE /me/authentication-methods/{id}
    MAC-->>Browser: Success
```

<div id="universal-portals-and-universal-components">
  ## Universal Portals と Universal Components
</div>

Universal Portals と [Universal Components](/docs/ja-jp/get-started/universal-components/universal-components-overview) は同じコンポーネントライブラリを使用していますが、提供主体が異なります。

* Universal Portals は完全にホスト型のエクスペリエンスを提供します。
* Universal Components は埋め込み型のエクスペリエンスを提供します。

|                 | **Universal Components (埋め込み) **  | **Universal Portals (ホスト型) **  |
| --------------- | --------------------------------- | ------------------------------ |
| **お客様の責任範囲**    | ホスティング、レイアウト、認証の連携、トークン管理         | ページコンテンツと設定                    |
| **エンドユーザーのフロー** | アプリ内で完結する                         | 別のポータル URL にリダイレクトされる          |
| **選択するケース**     | UX を完全に制御でき、リダイレクトが不要             | 最も迅速にデプロイでき、管理するインフラストラクチャが不要  |

**Universal Components (埋め込み) **

```mermaid theme={null}
flowchart LR
    user("ユーザー")
    subgraph app ["ご利用のアプリケーション"]
        direction TB
        eurl["`*app.acme.com/account*`"]
        uc["Universal Components"]
        eurl -.-> uc
    end
    user --> app
```

**Universal Portals (Hosted) **

```mermaid theme={null}
flowchart LR
    user("ユーザー")
    subgraph portal ["Universal Portals"]
        direction TB
        hurl["`*acme.us.auth0.com/portals/account*`"]
        uc["Universal Components"]
        hurl -.-> uc
    end
    user --> portal
```

<div id="learn-more">
  ## 詳しく見る
</div>

<Card title="Universal Portals Quickstart" icon="gear" href="/docs/ja-jp/customize/portals/quickstart" horizontal>
  ポータルの設定と作成方法を学びます。
</Card>
