@prefix schema: <https://schema.org/> .
@prefix skos: <http://www.w3.org/2004/02/skos/core#> .
@prefix rdf: <http://www.w3.org/1999/02/22-rdf-syntax-ns#> .
@prefix ks: <https://comcomponent.com/vocab/> .

<https://comcomponent.com/blog/windows-kiosk-mode-assigned-access-guide/#article>
    schema:about <https://comcomponent.com/knowledge/assigned-access/>, <https://comcomponent.com/knowledge/shell-launcher/>, <https://comcomponent.com/knowledge/unattended-pc/> ;
    schema:mentions <https://comcomponent.com/knowledge/multi-app-kiosk/>, <https://comcomponent.com/knowledge/keyboard-filter/>, <https://comcomponent.com/knowledge/pro-edition/>, <https://comcomponent.com/knowledge/enterprise-edu-iot-edition/>, <https://comcomponent.com/knowledge/classic-app-path/>, <https://comcomponent.com/knowledge/applocker/>, <https://comcomponent.com/knowledge/autologon-account/>, <https://comcomponent.com/knowledge/winlogon-autologon/>, <https://comcomponent.com/knowledge/wmi-bridge/>, <https://comcomponent.com/knowledge/kiosk-escape-shortcut/>, <https://comcomponent.com/knowledge/breakout-sequence/>, <https://comcomponent.com/knowledge/console-signin-requirement/>, <https://comcomponent.com/knowledge/admin-rights/>, <https://comcomponent.com/knowledge/autologon-startup-only/> .

<https://comcomponent.com/knowledge/assigned-access/> a skos:Concept ;
    skos:prefLabel "Assigned Access"@ja ;
    skos:definition "1つまたは複数の指定アプリだけを実行できるようにロックダウンする、Windowsのキオスク構成機能。シングルアプリキオスクとマルチアプリの制限付きユーザー体験を含む。"@ja ;
    skos:altLabel "割り当てられたアクセス"@ja ;
    ks:requires <https://comcomponent.com/knowledge/pro-edition/> ;
    ks:configuredBy <https://comcomponent.com/knowledge/autologon-account/> ;
    ks:configuredBy <https://comcomponent.com/knowledge/wmi-bridge/> ;
    ks:requires <https://comcomponent.com/knowledge/console-signin-requirement/> .

<https://comcomponent.com/knowledge/shell-launcher/> a skos:Concept ;
    skos:prefLabel "Shell Launcher"@ja ;
    skos:definition "Explorer.exeをWin32またはUWPの業務アプリに置き換える機能。Enterprise / Education / IoT Enterprise系エディション限定。"@ja ;
    ks:recommendedFor <https://comcomponent.com/knowledge/unattended-pc/> ;
    ks:requires <https://comcomponent.com/knowledge/enterprise-edu-iot-edition/> ;
    ks:configuredBy <https://comcomponent.com/knowledge/autologon-account/> ;
    ks:configuredBy <https://comcomponent.com/knowledge/wmi-bridge/> .

<https://comcomponent.com/knowledge/unattended-pc/> a skos:Concept ;
    skos:prefLabel "無人運転の装置PC"@ja ;
    skos:definition "人手を介さず再起動・稼働し続ける必要がある装置制御・キオスク用途のPC。"@ja ;
    skos:altLabel "装置PC"@ja ;
    skos:altLabel "キオスクPC"@ja .

<https://comcomponent.com/knowledge/autologon-startup-only/> a skos:Concept ;
    skos:prefLabel "自動ログオン+スタートアップ起動"@ja ;
    skos:definition "自動ログオンを設定しスタートアップに業務アプリを登録するだけの構成。Explorerシェルは丸ごと生きているため何も守れない。"@ja ;
    ks:notRecommendedFor <https://comcomponent.com/knowledge/unattended-pc/> .

<https://comcomponent.com/knowledge/multi-app-kiosk/> a skos:Concept ;
    skos:prefLabel "マルチアプリキオスク(制限付きユーザー体験)"@ja ;
    skos:definition "許可アプリの一覧と専用スタートメニューで、数個のアプリだけを使える共有端末を作るAssigned Accessの構成。"@ja ;
    skos:altLabel "Multi-app kiosk" ;
    skos:altLabel "Restricted User Experience" ;
    ks:recommendedFor <https://comcomponent.com/knowledge/unattended-pc/> ;
    ks:automates <https://comcomponent.com/knowledge/applocker/> ;
    ks:mayCause <https://comcomponent.com/knowledge/kiosk-escape-shortcut/> .

<https://comcomponent.com/knowledge/pro-edition/> a skos:Concept ;
    skos:prefLabel "Windows Pro/Enterprise系エディション"@ja ;
    skos:definition "Pro・Pro Education・Enterprise・Educationなど、管理機能を持つWindowsのエディション群。"@ja ;
    skos:altLabel "Pro" ;
    skos:altLabel "Enterprise" ;
    skos:altLabel "Education" .

<https://comcomponent.com/knowledge/enterprise-edu-iot-edition/> a skos:Concept ;
    skos:prefLabel "Enterprise/Education/IoT Enterprise系エディション"@ja ;
    skos:definition "Shell LauncherやKeyboard Filterなど一部のロックダウン機能が使える、Enterprise・Education・IoT Enterprise(各LTSC含む)のエディション群。Proは含まない。"@ja ;
    skos:altLabel "Enterprise LTSC含む"@ja .

<https://comcomponent.com/knowledge/keyboard-filter/> a skos:Concept ;
    skos:prefLabel "Keyboard Filter"@ja ;
    skos:definition "物理・オンスクリーン両キーボードのキー組み合わせを抑止できる、Enterprise / Education / IoT Enterprise系限定のキー抑止機能。"@ja ;
    ks:requires <https://comcomponent.com/knowledge/enterprise-edu-iot-edition/> ;
    ks:mitigates <https://comcomponent.com/knowledge/kiosk-escape-shortcut/> .

<https://comcomponent.com/knowledge/classic-app-path/> a skos:Concept ;
    skos:prefLabel "v4:ClassicAppPath"@ja ;
    skos:definition "Windows 11(21H2以降のスキーマ)のKioskModeApp要素が持つ属性で、Win32(デスクトップ)アプリの実行ファイルパスを指定してシングルアプリキオスク化できる。"@ja ;
    skos:altLabel "ClassicAppPath属性"@ja .

<https://comcomponent.com/knowledge/applocker/> a skos:Concept ;
    skos:prefLabel "AppLocker"@ja ;
    skos:definition "Windows 7で導入された実行制御機能。署名証明書の属性・ファイル属性・ハッシュ・パスに基づくルールを、コンピューター全体または特定のユーザー・グループに適用できる。セキュリティ機能としてのMSRCサービス基準は満たさない。"@ja .

<https://comcomponent.com/knowledge/autologon-account/> a skos:Concept ;
    skos:prefLabel "AutoLogonAccount要素"@ja ;
    skos:definition "構成XMLの要素で、Windowsが専用のローカル標準ユーザーを作成・管理して自動サインインさせる仕組み。パスワードを自分で保管する必要がない。"@ja ;
    ks:succeeds <https://comcomponent.com/knowledge/winlogon-autologon/> .

<https://comcomponent.com/knowledge/winlogon-autologon/> a skos:Concept ;
    skos:prefLabel "Winlogonレジストリ自動ログオン"@ja ;
    skos:definition "AutoAdminLogon/DefaultUserName/DefaultPasswordのレジストリ値による従来の自動ログオン方式。DefaultPasswordが平文でレジストリに残る。"@ja ;
    skos:altLabel "AutoAdminLogon" ;
    ks:notRecommendedFor <https://comcomponent.com/knowledge/unattended-pc/> .

<https://comcomponent.com/knowledge/wmi-bridge/> a skos:Concept ;
    skos:prefLabel "MDMブリッジWMIプロバイダー"@ja ;
    skos:definition "MDMがない端末で、AssignedAccess CSPと同じ構成をSYSTEM権限のPowerShellから設定できるようにするWMIプロバイダー。"@ja ;
    skos:altLabel "WMIブリッジ"@ja .

<https://comcomponent.com/knowledge/kiosk-escape-shortcut/> a skos:Concept ;
    skos:prefLabel "キー操作によるキオスクからの脱出"@ja ;
    skos:definition "Alt+F4・Alt+Tab・Ctrl+Alt+Delなど、マルチアプリキオスクでは既定でブロックされないキー操作でシェル外へ抜けられること。"@ja .

<https://comcomponent.com/knowledge/breakout-sequence/> a skos:Concept ;
    skos:prefLabel "BreakoutSequence(脱出キーの変更)"@ja ;
    skos:definition "Assigned Accessのキオスク体験から抜けるための既定のCtrl+Alt+Delキー組み合わせを、Windows 11で変更できる構成XMLの要素。"@ja .

<https://comcomponent.com/knowledge/console-signin-requirement/> a skos:Concept ;
    skos:prefLabel "コンソールサインイン要件"@ja ;
    skos:definition "キオスク体験にはUACが有効であることとコンソールからのサインインが必要で、リモートデスクトップ接続越しのキオスク体験はサポートされないという制約。"@ja .

<https://comcomponent.com/knowledge/admin-rights/> a skos:Concept ;
    skos:prefLabel "管理者権限"@ja ;
    skos:definition "コンピューター全体の設定を変更できる権限。"@ja ;
    skos:altLabel "昇格"@ja .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/autologon-startup-only/> ;
    rdf:predicate ks:notRecommendedFor ;
    rdf:object <https://comcomponent.com/knowledge/unattended-pc/> ;
    schema:description "自動ログオン+スタートアップ起動はExplorerシェルがそのまま生きているためAlt+TabやWinキーで一瞬でデスクトップに出られ、キオスクとしては何も守れない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/recommendations> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:recommendedFor ;
    rdf:object <https://comcomponent.com/knowledge/unattended-pc/> ;
    schema:description "Assigned Accessをシングルアプリキオスクとして構成した場合、ロック画面の上で対象アプリのみ全画面実行し、閉じられると自動再起動するため不特定の人が触る1アプリ端末に推奨される。マルチアプリキオスクとして構成した場合はこの単一アプリ運用の理由は成り立たず、許可リストのアプリだけを使わせる共有端末向けの別の理由で推奨される"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/overview> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "context-dependent" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/shell-launcher/> ;
    rdf:predicate ks:recommendedFor ;
    rdf:object <https://comcomponent.com/knowledge/unattended-pc/> ;
    schema:description "Shell LauncherはExplorer.exe自体を業務アプリに置き換え、装置の操作画面のようなExplorer由来のUIが不要な産業用途に最も向く"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/shell-launcher/> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/multi-app-kiosk/> ;
    rdf:predicate ks:recommendedFor ;
    rdf:object <https://comcomponent.com/knowledge/unattended-pc/> ;
    schema:description "マルチアプリキオスク(制限付きユーザー体験)は許可リストのアプリだけを使わせる共有端末に向く"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:requires ;
    rdf:object <https://comcomponent.com/knowledge/pro-edition/> ;
    schema:description "Assigned Access(シングルアプリ/マルチアプリ)はPro以上のエディション(Pro/Enterprise/Education/IoT Enterprise、各LTSC含む)でサポートされる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/overview> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/shell-launcher/> ;
    rdf:predicate ks:requires ;
    rdf:object <https://comcomponent.com/knowledge/enterprise-edu-iot-edition/> ;
    schema:description "Shell LauncherはEnterprise / Education / IoT Enterprise系エディション限定で、Proでは使えない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/shell-launcher/> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/keyboard-filter/> ;
    rdf:predicate ks:requires ;
    rdf:object <https://comcomponent.com/knowledge/enterprise-edu-iot-edition/> ;
    schema:description "Keyboard FilterもEnterprise / Education / IoT Enterprise系エディション限定で、Proでは使えない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/keyboard-filter/> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:incompatibleWith ;
    rdf:object <https://comcomponent.com/knowledge/shell-launcher/> ;
    schema:description "Assigned Accessのうち、シングルアプリキオスク(KioskModeApp)を使う場合は、同じ端末にShell Launcherを同時に設定することはできない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "context-dependent" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:uses ;
    rdf:object <https://comcomponent.com/knowledge/classic-app-path/> ;
    schema:description "Win32アプリをシングルアプリキオスクにする場合、Windows 11(21H2以降のスキーマ)のAssigned AccessはKioskModeAppのv4:ClassicAppPath属性でWin32アプリの実行ファイルパスを指定でき、Pro端末でもWin32アプリのシングルアプリキオスクを構成できる。UWPアプリのキオスクではこの属性は使わない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "context-dependent" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/multi-app-kiosk/> ;
    rdf:predicate ks:automates ;
    rdf:object <https://comcomponent.com/knowledge/applocker/> ;
    schema:description "マルチアプリキオスクの許可アプリ一覧(AllAppsList)を設定するとAppLockerルールが自動生成され、許可外のアプリは起動できなくなる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/shell-launcher/> ;
    rdf:predicate ks:requires ;
    rdf:object <https://comcomponent.com/knowledge/applocker/> ;
    schema:description "Shell Launcherはシェルを置き換えるだけで他アプリの起動自体は防がないため、触る人を信頼できない端末ではAppLockerの併用が必要になる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/shell-launcher/> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "context-dependent" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:configuredBy ;
    rdf:object <https://comcomponent.com/knowledge/autologon-account/> ;
    schema:description "Assigned Accessの構成XMLにあるAutoLogonAccount要素を使うと、Windowsが専用のローカル標準ユーザーを作成・管理して自動サインインし、パスワードを自分で保管する必要がなくなる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/shell-launcher/> ;
    rdf:predicate ks:configuredBy ;
    rdf:object <https://comcomponent.com/knowledge/autologon-account/> ;
    schema:description "Shell Launcherの構成XMLでも同じAutoLogonAccount要素でローカル標準ユーザーの自動作成・自動サインインを構成できる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/shell-launcher/> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/winlogon-autologon/> ;
    rdf:predicate ks:notRecommendedFor ;
    rdf:object <https://comcomponent.com/knowledge/unattended-pc/> ;
    schema:description "WinlogonのAutoAdminLogon方式はDefaultPasswordがレジストリに平文で残るため推奨されない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/recommendations> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/autologon-account/> ;
    rdf:predicate ks:succeeds ;
    rdf:object <https://comcomponent.com/knowledge/winlogon-autologon/> ;
    schema:description "構成XMLのAutoLogonAccount要素は、パスワードを平文で保管するWinlogonレジストリ方式に代わる推奨手段として位置づけられる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/recommendations> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:configuredBy ;
    rdf:object <https://comcomponent.com/knowledge/wmi-bridge/> ;
    schema:description "MDMがないスタンドアロン端末では、SYSTEM権限のPowerShellからMDMブリッジWMIプロバイダー経由でAssignedAccess CSPと同じ構成XMLを流し込める"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/quickstart-kiosk> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/shell-launcher/> ;
    rdf:predicate ks:configuredBy ;
    rdf:object <https://comcomponent.com/knowledge/wmi-bridge/> ;
    schema:description "Shell LauncherのXMLも同じWMIブリッジのMDM_AssignedAccessクラスのShellLauncherプロパティに設定して適用できる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/shell-launcher/quickstart-kiosk> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/multi-app-kiosk/> ;
    rdf:predicate ks:mayCause ;
    rdf:object <https://comcomponent.com/knowledge/kiosk-escape-shortcut/> ;
    schema:description "マルチアプリキオスク(制限付きユーザー体験)ではAlt+F4・Alt+Tab・Ctrl+Alt+Delが既定でブロックされない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/recommendations> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/keyboard-filter/> ;
    rdf:predicate ks:mitigates ;
    rdf:object <https://comcomponent.com/knowledge/kiosk-escape-shortcut/> ;
    schema:description "Keyboard Filterは物理・オンスクリーン両キーボードでキー組み合わせを抑止し、この種の脱出経路を塞げる"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/keyboard-filter/> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:configuredBy ;
    rdf:object <https://comcomponent.com/knowledge/breakout-sequence/> ;
    schema:description "Assigned Accessのキオスク体験の脱出は既定でCtrl+Alt+Delだが、Windows 11に限りBreakoutSequence要素でこのキー組み合わせを変更できる。Windows 10のAssigned Accessにはこの要素がない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "context-dependent" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/assigned-access/> ;
    rdf:predicate ks:requires ;
    rdf:object <https://comcomponent.com/knowledge/console-signin-requirement/> ;
    schema:description "Assigned Accessのキオスク体験にはUACが有効であることとコンソールからのサインインが必要で、リモートデスクトップ接続越しのキオスク体験はサポートされない"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/overview> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "established" .

[] a rdf:Statement ;
    rdf:subject <https://comcomponent.com/knowledge/breakout-sequence/> ;
    rdf:predicate ks:requires ;
    rdf:object <https://comcomponent.com/knowledge/admin-rights/> ;
    schema:description "脱出キー自体はサインイン画面に戻すだけで管理者権限を必要としないが、保守作業のために使う想定では、戻ったサインイン画面から保守員が管理者アカウントでサインインして保守を行う"@ja ;
    ks:evidence <https://learn.microsoft.com/windows/configuration/assigned-access/configuration-file> ;
    ks:verifiedAt "2026-08-01" ;
    ks:certainty "context-dependent" .
