28
Copyright 2015 By KICA. All Right Reserved. Copyright 2015 By KICA. All Right Reserved.

Copyright 2015 By KICA. All Right Reserved

  • Upload
    others

  • View
    3

  • Download
    0

Embed Size (px)

Citation preview

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 2 -

์ž์ฃผ ๋ฐœ์ƒํ•˜๋Š” ๋ฌธ์˜์™€ ์„ค์น˜ ์˜ค๋ฅ˜ ์•ˆ๋‚ด

์„ค์น˜ ๊ฒฐ๊ณผ ํ™•์ธ ๋ฐฉ๋ฒ•์€

๋ฌธ์„œ ๋งˆ์ง€๋ง‰ ์žฅ์— ์„ค๋ช…๋˜์–ด์žˆ์Šต๋‹ˆ๋‹ค.

SSL ์„ค์น˜ ์ค‘ ์˜ค๋ฅ˜ ๋ฐ SSL ์„ค์น˜ ํ™•์ธ ์‹œ ์ฐธ๊ณ  ๋ถ€ํƒ ๋“œ๋ฆฝ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 3 -

โ‘  SSL ์ธ์ฆ์„œ

โ‘ก SSL ์‚ฌ์ดํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ‘ฃ ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ ์„ค์ •

โ‘ค SSL ์ธ์ฆ์„œ ์„ค์น˜ ํ™•์ธ

- SSL ์„ค์น˜ ์ฃผ์˜์‚ฌํ•ญ ๋ฐ ์ž์ฃผ ๋ฐœ์ƒํ•˜๋Š” ์„ค์น˜ ์ค‘ ์˜ค๋ฅ˜

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 4 -

โ‘  SSL ์ธ์ฆ์„œ

โ€ข ์›น ์„œ๋ฒ„ ํ™˜๊ฒฝ์— ๋”ฐ๋ผ ์•„๋ž˜์— ๊ตฌ์„ฑ์œผ๋กœ ์ „๋‹ฌ๋จ

(1) SSL ๋„๋ฉ”์ธ ์ธ์ฆ์„œ (SSL ์ธ์ฆ์„œ, ์‹ ์ฒญํ•œ๋„๋ฉ”์ธ๋ช…_cert.pem)

(2) ์ฝ”๋ชจ๋„ ์ค‘๊ฐœ ์ธ์ฆ์„œ ๋ชจ์Œ

๊ฐ€. apache, webtob, NginX โ€“ Chain_RootCA_Bundle.crt

๋‚˜. IIS, Tomcat, Weblogic, Oracle Http Server, iPlanet, IBM HTTP Server, node.js

- ChainCA1.crt ~ ChainCA2 ๋˜๋Š” ChainCA3๊นŒ์ง€ [์ƒํ’ˆ๋งˆ๋‹ค ์ฐจ์ด๊ฐ€ ์žˆ์œผ๋ฉฐ, ์••์ถ•ํŒŒ์ผ ๋‚ด ๋™๋ด‰๋œ ChainCA(์ˆซ์ž).crt ํŒŒ์ผ ๋ชจ๋‘ ์‚ฌ์šฉ]

- ์ค‘๊ฐœ ์ธ์ฆ์„œํŒŒ์ผ์ด ํ•˜๋‚˜ ์ด์ƒ์ธ ๊ฒฝ์šฐ, ํ•ด๋‹น ์ค‘๊ฐœ ์ธ์ฆ์„œ ์ „๋ถ€ ๊ฒ€์ฆ์— ์ด์šฉํ•ฉ๋‹ˆ๋‹ค

(3) ์ฝ”๋ชจ๋„ ๋ฃจํŠธ ์ธ์ฆ์„œ (RootCA.crt)

โ€ป ์›น์„œ๋ฒ„์— ๋”ฐ๋ผ ์‚ฌ์šฉํ•˜๋Š” ์ค‘๊ฐœ์ธ์ฆ์„œ์™€ ๋ฃจํŠธ์ธ์ฆ์„œ๋Š”๋ณธ ์„ค์น˜๊ฐ€์ด๋“œ์— ๊ธฐ์ž…๋œ ํŒŒ์ผ ํ˜•ํƒœ๋ฅผ ์‚ฌ์šฉํ•ด ์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 5 -

โ‘  SSL ์ธ์ฆ์„œ [์ธ์ฆ์„œ ํƒ€์ž…๋ณ„ ์ฃผ์˜์‚ฌํ•ญ]

โ€ข ๋‹จ์ผ / ๋ฉ€ํ‹ฐ / ์™€์ผ๋“œ์นด๋“œ ๋„๋ฉ”์ธ SSL ์ธ์ฆ์„œ์— ๋”ฐ๋ฅธ ์„ค์น˜ ๋ฐฉ๋ฒ•์˜ ์ฐจ์ด์ 

์ƒํ’ˆ ์ข…๋ฅ˜ ์ฐจ์ด์ 

๋‹จ์ผ ๋„๋ฉ”์ธ ํ•œ ์„œ๋ฒ„์— ๋ณต์ˆ˜๋กœ ์ธ์ฆ์„œ ์„ค์น˜ ์‹œ ๋‹จ์ผ ๋„๋ฉ”์ธ ์ธ์ฆ์„œ๋Š” ํฌํŠธ ๊ณต์œ  ๋ถˆ๊ฐ€๋Šฅ

๋ฉ€ํ‹ฐ ๋„๋ฉ”์ธ๋ฉ€ํ‹ฐ ์ธ์ฆ์„œ์— ๋“ฑ๋ก๋œ ๋„๋ฉ”์ธ์€ ํฌํŠธ ๊ณต์œ ๊ฐ€ ๊ฐ€๋Šฅํ•˜๋ฏ€๋กœ์„ค์น˜ํ•  ๋„๋ฉ”์ธ ์ˆ˜๋Ÿ‰์— ๋งž์ถ”์–ด ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ ์„ค์ •ํ•ด์ฃผ์‹œ๋ฉด ๋ฉ๋‹ˆ๋‹ค.๊ทธ ์™ธ ๋‹ค๋ฅธ ๋‚ด์šฉ์€ ๋™์ผํ•ฉ๋‹ˆ๋‹ค.

์™€์ผ๋“œ์นด๋“œ ๋„๋ฉ”์ธ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ๋Š” ๋ชจ๋“  ์„œ๋ธŒ๋„๋ฉ”์ธ์„ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ๊ณ , ํฌํŠธ ๊ณต์œ ๊ฐ€ ๊ฐ€๋Šฅํ•˜๋ฏ€๋กœ์„ค์น˜ํ•  ๋„๋ฉ”์ธ์— ๋”ฐ๋ผ ์ถ”๊ฐ€ํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค. ๊ทธ ์™ธ ๋‹ค๋ฅธ ๋‚ด์šฉ์€ ๋™์ผํ•ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 6 -

โ‘ก SSL ์‚ฌ์ดํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ํ•ด๋‹น ์‚ฌ์ดํŠธ์— SSL ์ธ์ฆ์„œ ๋ฐ”์ธ๋”ฉ

- SSL ์ธ์ฆ์„œ๋ฅผ ์ ์šฉํ•˜๋ ค๋Š” ์‚ฌ์ดํŠธ ์šฐํด๋ฆญ - ์†์„ฑ โ€“ โ€œ๋””๋ ‰ํ† ๋ฆฌ ๋ณด์•ˆโ€ ํƒญ โ€“ โ€œ์„œ๋ฒ„ ์ธ์ฆ์„œโ€๋ฅผ ํด๋ฆญํ•˜์—ฌ ์„ค์น˜ ๋งˆ๋ฒ•์‚ฌ๋ฅผ ์‹คํ–‰ํ•ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 7 -

โ‘ก SSL ์‚ฌ์ดํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ํ•ด๋‹น ์‚ฌ์ดํŠธ์— SSL ์ธ์ฆ์„œ ๋ฐ”์ธ๋”ฉ

- ์ธ์ฆ์„œ ์„ค์น˜ ๋งˆ๋ฒ•์‚ฌ์—์„œ โ€œ๋Œ€๊ธฐ ์ค‘์ธ ์š”์ฒญ์„ ์ฒ˜๋ฆฌํ•œ ๋‹ค์Œ ์ธ์ฆ์„œ๋ฅผ ์„ค์น˜ํ•ฉ๋‹ˆ๋‹คโ€๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.

- ์„ค์น˜ํ•  ์ธ์ฆ์„œ๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค

* ๋‹ค๋ฅธ ์„ ํƒ์ง€๊ฐ€ ๋‚˜์˜ฌ ๊ฒฝ์šฐ, ์ธ์ฆ์„œ ์š”์ฒญ์ด ์—†๋Š” ์ƒํ™ฉ์ž…๋‹ˆ๋‹ค. ์š”์ฒญ์„ ์žฌ์ƒ์„ฑํ•˜์—ฌ ์ธ์ฆ์„œ๋ฐœ๊ธ‰์„ ๋‹ค์‹œ ๋ฐ›์œผ์…”์•ผ ํ•ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 8 -

โ‘ก SSL ์‚ฌ์ดํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ํ•ด๋‹น ์‚ฌ์ดํŠธ์— SSL ์ธ์ฆ์„œ ๋ฐ”์ธ๋”ฉ

- ์‚ฌ์šฉํ•  ํฌํŠธ๋ฅผ ์ž…๋ ฅํ•˜์—ฌ ์„ค์น˜๋ฅผ ๋งˆ๋ฌด๋ฆฌ ํ•ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 9 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ์Šค๋ƒ…์ธ ์ถ”๊ฐ€

- ์‹คํ–‰ > MMC ์ž…๋ ฅ > ํŒŒ์ผ > ์Šค๋ƒ…์ธ ์ถ”๊ฐ€/์ œ๊ฑฐ > ์ถ”๊ฐ€ ํด๋ฆญ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 10 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ์Šค๋ƒ…์ธ ์ถ”๊ฐ€

- ์ธ์ฆ์„œ ์„ ํƒ > ์ปดํ“จํ„ฐ ๊ณ„์ • > ๋กœ์ปฌ ์ปดํ“จํ„ฐ ์„ ํƒ > ๋งˆ์นจ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 11 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ์Šค๋ƒ…์ธ ์ถ”๊ฐ€

- ํ™•์ธ์„ ๋ˆŒ๋Ÿฌ ์Šค๋ƒ…์ธ ์ถ”๊ฐ€ ์™„๋ฃŒ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 12 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ์ค‘๊ฐœ ์ธ์ฆ์„œ ์„ค์น˜

- ์ค‘๊ฐœ ์ธ์ฆ ๊ธฐ๊ด€์˜ ์ธ์ฆ์„œ ํด๋”์—์„œ ๊ฐ€์ ธ์˜ค๊ธฐ ํด๋ฆญ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 13 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ์ค‘๊ฐœ ์ธ์ฆ์„œ ์„ค์น˜

- ๋งˆ๋ฒ•์‚ฌ์—์„œ ์ค‘๊ฐœ ์ธ์ฆ์„œ ํŒŒ์ผ์„ ์„ ํƒ (2๊ฐœ ์ด์ƒ์ผ ๊ฒฝ์šฐ ๋ฐ˜๋ณต ์ง„ํ–‰. ์˜ˆ : ChainCA1.crt ChainCA2.crt)

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 14 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ์ค‘๊ฐœ ์ธ์ฆ์„œ ์„ค์น˜

- ์ธ์ฆ์„œ ์ €์žฅ์†Œ ์„ค์ • ํ›„, ์„ค์น˜ ์™„๋ฃŒ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 15 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

- โ€œ์‹ ๋ขฐํ•  ์ˆ˜ ์žˆ๋Š” ๋ฃจํŠธ ์ธ์ฆ ๊ธฐ๊ด€โ€์˜ ์ธ์ฆ์„œ ํด๋”์—์„œ ๊ฐ€์ ธ์˜ค๊ธฐ ํด๋ฆญ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 16 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

- ๋งˆ๋ฒ•์‚ฌ์—์„œ ๋ฃจํŠธ ์ธ์ฆ์„œ ํŒŒ์ผ์„ ์„ ํƒ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 17 -

โ‘ข ์ค‘๊ฐœ/๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

โ€ข ๋ฃจํŠธ ์ธ์ฆ์„œ ์„ค์น˜

- ์ธ์ฆ์„œ ์ €์žฅ์†Œ ์„ค์ • ํ›„, ์„ค์น˜ ์™„๋ฃŒ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 18 -

โ‘ฃ ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ ์„ค์ • (๋ฉ€ํ‹ฐ ๋˜๋Š” ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ ์„ค์น˜ ์‹œ ํ•„์ˆ˜)

โ€ข ๋ฉ€ํ‹ฐ๋„๋ฉ”์ธ/์™€์ผ๋“œ์นด๋“œ SSL ์ธ์ฆ์„œ์˜ ๊ฒฝ์šฐ https ํฌํŠธ๋ฅผ ๊ณต์œ ํ•˜๊ธฐ ์œ„ํ•˜์—ฌ ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ์ด ํ•„์š”ํ•จ

- SecureBindings๋Š” 443 ํฌํŠธ๋ฅผ ์—ฌ๋Ÿฌ ๋„๋ฉ”์ธ์ด ์“ธ ์ˆ˜ ์žˆ๋„๋ก ์„ค์ •ํ•ด ์ฃผ๋Š” ๊ฒƒ์„ ๋œปํ•˜๋ฉฐ,

์ด ์„ค์ •ํ•ด ํ•ด์ฃผ์‹œ์ง€ ์•Š์œผ์‹œ๋ฉด ์ด๋ฏธ 443 ํฌํŠธ๋ฅผ ์„ค์ •ํ•œ ์›น ์‚ฌ์ดํŠธ์™€ ์ถฉ๋Œ์ด ์ผ์–ด๋‚ฉ๋‹ˆ๋‹ค.

1) adsutil.vbs ํŒŒ์ผ ํ™•์ธ

* ์œ„์น˜๋Š” ๊ฐ ์„œ๋ฒ„ ์„ค์ •์— ๋”ฐ๋ผ ๋‹ค๋ฅผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 19 -

โ‘ฃ ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ ์„ค์ • (๋ฉ€ํ‹ฐ ๋˜๋Š” ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ ์„ค์น˜ ์‹œ ํ•„์ˆ˜)

- IIS ๊ด€๋ฆฌ์ž๋ฅผ ์‹คํ–‰์‹œํ‚จ ํ›„ ๊ฐ ์›น ์‚ฌ์ดํŠธ๋ฅผ ํ™•์ธํ•˜์‹œ๋ฉด ์•„๋ž˜ ๊ทธ๋ฆผ๊ณผ ๊ฐ™์ด ๊ฐ ์›น ์‚ฌ์ดํŠธ์˜ ์‹๋ณ„์ž๋ฅผ ํ™•์ธํ•˜์‹ค ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

2) ๊ฐ ์›น ์‚ฌ์ดํŠธ ์‹๋ณ„์ž ํ™•์ธ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 20 -

โ‘ฃ ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ ์„ค์ • (๋ฉ€ํ‹ฐ ๋˜๋Š” ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ ์„ค์น˜ ์‹œ ํ•„์ˆ˜)

- cscript ๋ช…๋ น์„ ์ด์šฉํ•˜์—ฌ 443 ํฌํŠธ๋ฅผ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ๋„๋ก ๋„๋ฉ”์ธ๋“ค์„ ๋ฐ˜๋ณต ์ถ”๊ฐ€ํ•ฉ๋‹ˆ๋‹ค.

3) adsutil.vbs ์„ค์ • ์ถ”๊ฐ€

cscript adsutil.vbs set /w3svc/์‹๋ณ„์ž/SecureBindings ":ํฌํŠธ:๋„๋ฉ”์ธ๋ช…"

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 21 -

โ‘ฃ ์‹œํ์–ด ๋ฐ”์ธ๋”ฉ ์„ค์ • (๋ฉ€ํ‹ฐ ๋˜๋Š” ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ ์„ค์น˜ ์‹œ ํ•„์ˆ˜)

4) ๊ฐ ์›น ์‚ฌ์ดํŠธ ์‹œ์ž‘

- ๊ฐ ์‚ฌ์ดํŠธ๋“ค์„ ์‹œ์ž‘/์žฌ์‹œ์ž‘ ํ•ด์ฃผ์‹œ๋ฉด ์ธ์ฆ์„œ๊ฐ€ ์ ์šฉ๋ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 22 -

โ‘ค SSL ์ธ์ฆ์„œ ์„ค์น˜ ํ™•์ธ

โ€ข โ€œhostsโ€ ํŒŒ์ผ์— ServerName๊ณผ IP ๋งคํ•‘ ์„ค์ •

โ€ป ServerName ํ•ญ๋ชฉ์ด ์œ ํšจํ•˜๊ธฐ ์œ„ํ•ด์„œ๋Š” ์„œ๋ฒ„์˜ โ€œhostsโ€ํŒŒ์ผ์˜ ๋‚ด์šฉ์— SSL์ธ์ฆ์„œ๋ฅผ ์ ์šฉํ•  ๋„๋ฉ”์ธ๋“ค์— ๋Œ€ํ•œ IP๋งคํ•‘ ์„ค์ •์ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค.

- โ€œhostsโ€ ํŒŒ์ผ ๊ฒฝ๋กœ

[์œˆ๋„์šฐ ์„ค์น˜ ํ™ˆ๋””๋ ‰ํ† ๋ฆฌ]/system32/drivers/etc ๋‚ด๋ถ€ ์กด์žฌ

- โ€œhostsโ€ ์„ค์ • ์ถ”๊ฐ€ ์˜ˆ์ œ

โ€œguide.kicassl.comโ€ ์— ๋Œ€ํ•œ ip์ฃผ์†Œ๊ฐ€ โ€œ123.123.123.1โ€์ด๋ผ๋ฉด hosts ํŒŒ์ผ์— โ€œ123.123.123.1 guide.kicassl.comโ€ ์„ ์ถ”๊ฐ€ํ•ฉ๋‹ˆ๋‹ค.

(์‚ฌ์šฉํ•˜์‹ค ์ •๋ณด์— ๋งž์ถ”์–ด ์ž…๋ ฅํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.)

- hosts ์„ค์ • ์˜ˆ์ œ ํ™”๋ฉด

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 23 -

โ‘ค SSL ์ธ์ฆ์„œ ์„ค์น˜ ํ™•์ธ

โ€ข SSL ๊ด€๋ จ ์„ค์ • ์™„๋ฃŒ ํ›„ IIS ํ•ด๋‹น ์‚ฌ์ดํŠธ ์žฌ์‹œ์ž‘

- ๋งŒ์ผ, ์žฌ์‹œ์ž‘ ์‹œ ์˜ค๋ฅ˜๊ฐ€ ๋ฐœ์ƒํ•˜์‹ ๋‹ค๋ฉด SSL ์˜ค๋ฅ˜ ๋กœ๊ทธ ๋˜๋Š” ์˜ค๋ฅ˜ ๋กœ๊ทธ ํ™•์ธ ๋ถ€ํƒ ๋“œ๋ฆฌ๊ฒ ์Šต๋‹ˆ๋‹ค.

- โ€œhttps://์‹ ์ฒญํ•œ ๋„๋ฉ”์ธ:ํฌํŠธโ€ ์œผ๋กœ ์ ‘์†ํ•˜์—ฌ ์ž๋ฌผ์‡  ํ‘œ์‹œ ๋ฐ https ํ†ต์‹  ํ™•์ธ

๋งŒ์ผ, ์ ‘์†์ด ์•ˆ๋  ์‹œ ๋ณธ ๊ฐ€์ด๋“œ ๋งˆ์ง€๋ง‰ ๋ถ€๋ถ„์˜ ๋ฅผํ™•์ธํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

443ํฌํŠธ๋Š” ๊ธฐ๋ณธํฌํŠธ์ด๊ธฐ ๋•Œ๋ฌธ์— ํฌํŠธ๋ฒˆํ˜ธ ์ƒ๋žต ๊ฐ€๋Šฅ.๋งŒ์ผ, ๋‹ค๋ฅธํฌํŠธ๋ฅผ ์‚ฌ์šฉํ•˜์‹ ๋‹ค๋ฉด ํฌํŠธ๋ฒˆํ˜ธ๋ฅผ ๊ผญ ์ž…๋ ฅํ•ด์•ผ ํ•จ.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 24 -

โ‘ฅ SSL ์•”ํ˜ธํ™” ํ†ต์‹  ์ ์šฉ ์˜ˆ์ œ

โ€ป SSL์ธ์ฆ์„œ๋ฅผ ์›น ์„œ๋ฒ„์— ์„ค์น˜ํ•œ ํ›„ SSL์•”ํ˜ธํ™” ํ†ต์‹ (https ํ”„๋กœํ† ์ฝœ)์ด ๊ฐ€๋Šฅํ•˜๋„๋ก ์›น ํŽ˜์ด์ง€์— ์ ์šฉํ•˜๋Š” ์ž‘์—…์ด ๋ฐ˜๋“œ์‹œ ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค.

- ์ „์ฒด ํŽ˜์ด์ง€๋ฅผ ์•”ํ˜ธํ™”ํ•˜๋ฉด ์•”ํ˜ธํ™” ์ ์šฉ์ด ํ•„์š” ์—†๋Š” ๋ถ€๋ถ„๊นŒ์ง€ ์•”ํ˜ธํ™”ํ•˜์—ฌ ๋ถ€๋ถ„ ์•”ํ˜ธํ™” ๋ณด๋‹ค ์„œ๋ฒ„์— ๋ถ€ํ•˜๋ฅผ ์ค„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

- ๋ถ€๋ถ„ ํŽ˜์ด์ง€(๋กœ๊ทธ์ธ ๋ฐ ํšŒ์›๊ฐ€์ž… ๋“ฑ)๋งŒ ์•”ํ˜ธํ™”ํ•˜๋ฉด ์ „์ฒด ํŽ˜์ด์ง€ ์ ์šฉ์— ๋น„ํ•ด ์„œ๋ฒ„ ๋ถ€ํ•˜๊ฐ€ ์ฆ๊ฐ€ํ•˜๋Š” ๊ฒƒ์„ ์ค„์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

โ–ถ SSL ์•”ํ˜ธํ™” ํ†ต์‹ ์„ ์œ„ํ•œ ๊ธฐ๋ณธ์ ์ธ ๋ณ€๊ฒฝ ์‚ฌํ•ญ(1) ์›นํŽ˜์ด์ง€ ์†Œ์Šค ๋‚ด๋ถ€์— โ€œhttp://โ€ํ˜ธ์ถœ ๊ฒฝ๋กœ ๋ฐ ๋งํฌ ์ˆ˜์ •

SSL์ธ์ฆ์„œ์˜ ์ ์šฉ์€ ์•„๋ž˜์™€ ๊ฐ™์ด โ€œhttp://โ€๋กœ ํ˜ธ์ถœํ•˜๋Š” ๋ถ€๋ถ„์„ โ€œhttps://โ€๋กœ ๋ณ€๊ฒฝํ•˜์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

โ€ป ๋งŒ์ผ, SSL์„ ์ ์šฉํ•œ ํฌํŠธ๊ฐ€ dafaultํฌํŠธ์ธ 443 ํฌํŠธ์ผ ๊ฒฝ์šฐ, ์œ„์™€ ๊ฐ™์ด โ€œhttps://โ€๋งŒ ๋ณ€๊ฒฝํ•˜์ง€๋งŒ 443 ์ด์™ธ์˜ํฌํŠธ๋ฅผ ์ ์šฉํ•œ ๊ฒฝ์šฐ ์•„๋ž˜์™€ ๊ฐ™์ด ํฌํŠธ ๋ฒˆํ˜ธ๋ฅผ ๋ฐ˜๋“œ์‹œ ๋ช…์‹œํ•ด ์ฃผ์…”์•ผ ํ•ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 25 -

โ€ข โ€œ์ธ์ฆ์„œ์™€ ๊ฐœ์ธํ‚ค๊ฐ€ keypair(ํ‚ค ์Œ)์ด ์•ˆ ๋งž์œผ๋ฉด ์ธ์ฆ์„œ๊ฐ€ ์ •์ƒ ๋กœ๋“œ ๋˜์ง€ ์•Š์Œ.โ€

โ€ข ๋ฐœ๊ธ‰ ์‹ ์ฒญ ์‹œ ๊ธฐ์ž…ํ•œ CSR์„ ์ƒ์„ฑํ•œ ๊ฐœ์ธํ‚ค๋งŒ ๋ฐœ๊ธ‰๋œ ์ธ์ฆ์„œ์™€ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ์Œ

- ๊ฐœ์ธํ‚ค๋ฅผ ์—ฌ๋Ÿฌ ๋ฒˆ ์ƒ์„ฑํ•˜์˜€์œผ๋ฉด, ์ตœ์ข… ์‹ ์ฒญ ์‹œ ๊ธฐ์ž…ํ•œ CSR์„ ์ƒ์„ฑํ•œ ๊ฐœ์ธํ‚ค๋งŒ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

โ€ข โ€œ๊ฐœ์ธํ‚ค๊ฐ€ ๋ฐœ๊ธ‰ํ•œ SSL ์ธ์ฆ์„œ์™€ ๋งค์นญ ์˜ค๋ฅ˜ ์‹œ ํ‘œ์‹œ ๋ฉ”์„ธ์ง€/๋กœ๊ทธโ€

โ€ข โ€œํ‚ค์™€ ์ธ์ฆ์„œ๊ฐ€ ๋งค์นญ ๋˜์ง€ ์•Š์Šต๋‹ˆ๋‹คโ€ ๋“ฑ๊ณผ ๊ฐ™์€ ๋งค์นญ ์˜ค๋ฅ˜ ๋ฉ”์„ธ์ง€๊ฐ€ ๋กœ๊ทธ/ํ‘œ์‹œ๋จ. (ํ‚ค์›Œ๋“œ : matching)

> CSR ์ƒ์„ฑ ์‹œ ์‚ฌ์šฉํ•œ ๊ฐœ์ธํ‚ค ํŒŒ์ผ๋กœ ๋‹ค์‹œ ์„ค์ •ํ•˜์‹œ๊ฑฐ๋‚˜, ํ˜„์žฌ ์†Œ์œ ํ•œ ๊ฐœ์ธํ‚ค ํŒŒ์ผ๊ณผ ๋งž๋Š” ์ธ์ฆ์„œ๋กœ ์žฌ๋ฐœ๊ธ‰ ํ•˜์…”์•ผ ํ•ฉ๋‹ˆ๋‹ค.

โ€ข โ€œ์ค‘๊ฐœ(์ฒด์ธ)์„ ๊ฒ€์ฆ์„ ์‹คํŒจ ํ•˜์˜€์Šต๋‹ˆ๋‹คโ€ ๋“ฑ๊ณผ ๊ฐ™์€ ์ฒด์ธ ์˜ค๋ฅ˜ ๋ฉ”์„ธ์ง€๊ฐ€ ๋กœ๊ทธ/ํ‘œ์‹œ๋จ. (ํ‚ค์›Œ๋“œ : chain)

> ์ค‘๊ฐœ ์ธ์ฆ์„œ ๊ด€๋ จ ์„ค์ • ๋‚ด์šฉ์— ํ™•์ธ์ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค.

1) Keystore ๋“ฑ import๊ฐ€ ํ•„์š”ํ•œ ์›น ์„œ๋ฒ„๋Š” ์ค‘๊ฐœ์ธ์ฆ์„œ๋ฅผ import ์—ฌ๋ถ€ ํ™•์ธ

2) ์ค‘๊ฐœ์ธ์ฆ์„œ ๊ฒฝ๋กœ๋ฅผ ๋ณ„๋„๋กœ ์„ค์ •ํ•˜๋Š” ์›น ์„œ๋ฒ„๋Š” ์ค‘๊ฐœ์ธ์ฆ์„œ ๊ฒฝ๋กœ ๋ฐ ํŒŒ์ผ ์œ„์น˜ ํ™•์ธ

โ€ข โ€œ๊ฐœ์ธํ‚ค์˜ ๋น„๋ฐ€๋ฒˆํ˜ธ๊ฐ€ ๋งž์ง€ ์•Š์Šต๋‹ˆ๋‹ค.โ€ ๋“ฑ๊ณผ ๊ฐ™์€ ๋น„๋ฐ€๋ฒˆํ˜ธ ์˜ค๋ฅ˜ ๋ฉ”์„ธ์ง€๊ฐ€ ๋กœ๊ทธ/ํ‘œ์‹œ๋จ. (ํ‚ค์›Œ๋“œ : private key, password, passphrase)

> ์ž…๋ ฅํ•˜์‹  ๊ฐœ์ธํ‚ค ์•”ํ˜ธ๊ฐ€ ๋‹ค๋ฅด๋ฏ€๋กœ, ์žฌ๋ฐœ๊ธ‰์ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค. (ํŒŒ์ผ ์˜ค๋ฅ˜ ๋ฐ ๋น„๋ฐ€๋ฒˆํ˜ธ ์˜ค๋ฅ˜ ์‚ฌ์œ )

โ€ข โ€œ1๊ฐœ์˜ ์„œ๋ฒ„์—์„œ ์—ฌ๋Ÿฌ ๋„๋ฉ”์ธ(์ธ์ฆ์„œ) ์‚ฌ์šฉ์‹œ ์ฃผ์˜์‚ฌํ•ญโ€

โ€ข https(SSL)์„ ์‚ฌ์šฉํ•˜๋Š” ํฌํŠธ๋Š” ์„ค์น˜ํ•œ ์ธ์ฆ์„œ ์ˆ˜๋Ÿ‰๊ณผ ๊ฐ™์•„์•ผ ํ•ฉ๋‹ˆ๋‹ค.

โ€ข 2๊ฐœ์˜ ์ธ์ฆ์„œ๋ฅผ ์„ค์น˜ ์‹œ 2๊ฐœ์˜ ๊ฐ๊ฐ ๋‹ค๋ฅธ ํฌํŠธ๊ฐ€ ํ•„์š”ํ•จ

โ€ข ์™€์ผ๋“œ์นด๋“œ SSL์ธ์ฆ์„œ (*.kicassl.com), ๋ฉ€ํ‹ฐ๋„๋ฉ”์ธ SSL์ธ์ฆ์„œ๋Š” ๋™์ผํ•œ ํฌํŠธ ๊ณต์œ ๊ฐ€ ๊ฐ€๋Šฅํ•œ SSL ์ธ์ฆ์„œ ์ž…๋‹ˆ๋‹ค.

โ€ข ๋ฉ€ํ‹ฐ๋„๋ฉ”์ธ ์ธ์ฆ์„œ ์„ค์น˜ ํ›„ ์ธ์ฆ์„œ์— ๋„๋ฉ”์ธ์„ ์ถ”๊ฐ€ ์‹ ์ฒญ ์‹œ ์ธ์ฆ์„œ๋Š” ์žฌ์„ค์น˜ ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 26 -

โ€ข https ์‚ฌ์šฉ ํฌํŠธ๋ฅผ โ€œ443โ€์ด ์•„๋‹Œ ๋‹ค๋ฅธ ํฌํŠธ๋ฅผ ์ง€์ •ํ•˜๋ฉด URL ์ž…๋ ฅ ์‹œ ํฌํŠธ๊นŒ์ง€ ์ž…๋ ฅํ•ด์•ผ ํ•จ.

โ€ข [https://guide.kicassl.com:443] โ€œ443โ€™ํฌํŠธ๋Š” ๊ธฐ๋ณธ SSL ํฌํŠธ์ด๋ฏ€๋กœ ์ƒ๋žต์ด ๊ฐ€๋Šฅํ•จ

โ€ข [https://guide.kicassl.com:8443] โ€œ8443โ€™ํฌํŠธ๋กœ SSL ํฌํŠธ ์„ค์ • ์‹œ URL์— ํฌํŠธ๋ฒˆํ˜ธ ํ•„์ˆ˜ ๊ธฐ์ž…

- ๋ณธ ๋ฌธ์„œ ์žˆ๋Š” ํฌํŠธ๋Š” ์˜ˆ์ œ๋กœ ์ž…๋ ฅํ•œ ํฌํŠธ๋กœ ์‚ฌ์šฉํ•˜์‹œ๋ ค๋Š” ํฌํŠธ๋กœ ๋ณ€๊ฒฝํ•˜์‹œ๋ฉด ๋ฉ๋‹ˆ๋‹ค.

โ€ข https์ ‘์† ์‹œ SSL ์ธ์ฆ์„œ๊ฐ€ ์›น ์„œ๋ฒ„์— ์„ค์น˜ํ•œ SSL ์ธ์ฆ์„œ๊ฐ€ ์•„๋‹Œ ๋‹ค๋ฅธ SSL ์ธ์ฆ์„œ๊ฐ€ ๋กœ๋“œ ๋˜๋Š” ์˜ค๋ฅ˜

โ€ข ์„ค์น˜ํ•˜์‹  ์›น์„œ๋ฒ„๋กœ ์ง์ ‘ ์ ‘์†ํ•˜์—ฌ ์–ด๋–ค ์ธ์ฆ์„œ๋ฅผ ๋กœ๋“œ ํ–ˆ๋Š”์ง€ ํ™•์ธ ํ•„์š”

> ์›น ์„œ๋ฒ„ IP์ฃผ์†Œ๋กœ https://123.123.123.123:443 ์œผ๋กœ ์ ‘์† ํ›„ ํ‘œ์‹œ๋˜๋Š” ์ธ์ฆ์„œ ์˜ค๋ฅ˜ ํ™”๋ฉด์—์„œ โ€œ๊ณ„์† ํƒ์ƒ‰โ€ ํด๋ฆญ

์›น๋ธŒ๋ผ์šฐ์ €์— ๋กœ๋“œ๋œ SSL ์ธ์ฆ์„œ ์ •๋ณด๋ฅผ ํ™•์ธ ํ•ฉ๋‹ˆ๋‹ค. ์„ค์น˜๋œ ์ธ์ฆ์„œ๊ฐ€ ํ‘œ์‹œ๋œ๋‹ค๋ฉด

L4, ๋ฐฉํ™”๋ฒฝ ๋˜๋Š” ์›น ์„œ๋ฒ„ ์•ž ๋‹จ์— ์žฅ๋น„์—๋„ SSL ์ธ์ฆ์„œ ์„ค์น˜๊ฐ€ ํ•„์š”ํ•œ์ง€ ํ™•์ธ์ด ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค.

โ€ข ์•ˆ๋“œ๋กœ์ด๋“œ v5.0(๋กค๋ฆฌํŒ)+ ๋˜๋Š” ๊ตฌ๊ธ€ ํฌ๋กฌ ๋ธŒ๋ผ์šฐ์ €์—์„œ https ์ ‘์†์ด ์•ˆ๋  ์‹œ

โ€ข ์›น ์„œ๋ฒ„์— SSL Protocol ์ค‘ TLSv1.2์™€ TLSv1.1์„ ์‚ฌ์šฉ ๊ฐ€๋Šฅํ•˜๋„๋ก ์ˆ˜์ •ํ•˜๊ณ  ํ•ด๋‹น ์›น ์„œ๋ฒ„์˜ ์ตœ์‹  ๋ณด์•ˆํŒจ์น˜๋ฅผ ์„ค์น˜ ํ•„์š”

> 2014๋…„ ๋ง SSLv3 Protocol ๋ณด์•ˆ ์ทจ์•ฝ์„ฑ ๋ฐœ๊ฒฌ์œผ๋กœ TLSv1.1์ด์ƒ ์‚ฌ์šฉ์ด ๊ถŒ๊ณ ๋˜์–ด ํ•ด๋‹น ํ”„๋กœํ† ์ฝœ ๋ฏธ์ง€์›์‹œ ์ ‘์†์ด ์•ˆ๋  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค

โ€ข https ์ ‘์† ์‹œ ๋”œ๋ ˆ์ด๊ฐ€ ๊ธธ๊ฑฐ๋‚˜, ๊ฒฝ๊ณ  ๋ฉ”์‹œ์ง€(โ€œ์ธ์ฆ์„œ ํ•ด์ง€ ๋ชฉ๋ก์„ ํ™•์ธ ํ•  ์ˆ˜ ์—†์Šต๋‹ˆ๋‹ค.โ€) ํ‘œ์‹œ ์˜ค๋ฅ˜

โ€ข ์‚ฌ์šฉ์ž์˜ ํ™˜๊ฒฝ์ด ๊ณต์šฉ๋ง์ด ์•„๋‹Œ ๊ฒฝ์šฐ, ์™ธ๋ถ€ CRL ๋ฐ OCSP URL๋กœ ์ ‘์†์ด ์ œํ•œ๋˜์–ด ์žˆ๋‹ค๋ฉด ๋ธŒ๋ผ์šฐ์ €๊ฐ€ SSL ์ธ์ฆ์„œ ๊ด€๋ จ ์ •๋ณด ํƒ์ƒ‰์„ ํ•˜์ง€ ๋ชปํ•˜์—ฌ ๋ฐœ์ƒ

> ๋ฐฉํ™”๋ฒฝ ๋“ฑ ๋„คํŠธ์›Œํฌ ์žฅ๋น„์—์„œ ๊ด€๋ จ ์ ‘์† URL(๋˜๋Š” IP) ๋ฐ port ๋ฅผ open ํ•˜์—ฌ ์‚ฌ์šฉ์ž๊ฐ€ ์›ํ™œํžˆ ์ ‘์†ํ•˜์—ฌ ์‚ฌ์šฉ ํ•  ์ˆ˜ ์žˆ๋„๋ก ์ž‘์—… ํ•„์š”

(CRL, OCSP URL ์ •๋ณด๋Š” ์ธ์ฆ์„œ๋งˆ๋‹ค ๋‹ค๋ฅด๋ฏ€๋กœ ์ธ์ฆ์„œ ํŒŒ์ผ ์ƒ์„ธ ์ •๋ณด์—์„œ โ€œ์ž์„ธํžˆโ€ํƒญ ๋‚ด์šฉ ์ค‘ โ€œCRL ๋ฐฐํฌ ์ง€์ โ€, ๊ธฐ๊ด€ ์ •๋ณด ์•ก์„ธ์Šคโ€์—

๊ธฐ์ž…๋œ URL์„ ํ™•์ธํ•˜์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค)

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 27 -

โ€ข ํ•ด๋‹น ๋„๋ฉ”์ธ ์ ‘์† ์‹œ โ€œ์œ ํšจํ•˜์ง€ ์•Š์€ ์ธ์ฆ์„œโ€ ๋ผ๋Š” ํ‘œ์‹œ ๋ฐœ์ƒ ์‹œ

โ€ข ํ์‡„๋ง ๋“ฑ ํŠน์ • ํ™˜๊ฒฝ์˜ ์‚ฌ์šฉ์ž๋งŒ ๋ฐœ์ƒํ•  ์‹œ

> ์ค‘๊ฐœ์ธ์ฆ์„œ๊ฐ€ ์›น ์„œ๋ฒ„์— ์„ค์น˜์˜ ๋ฌธ์ œ๊ฐ€ ์žˆ์–ด์„œ ์‚ฌ์šฉ์ž(์ ‘์†์ž)์—๊ฒŒ ์ค‘๊ฐœ์ธ์ฆ์„œ๋ฅผ ์ „๋‹ฌํ•ด์ฃผ์ง€ ๋ชป ํ•  ๋•Œ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ์Œ

- ์ค‘๊ฐœ์ธ์ฆ์„œ ๋ณธ ๊ฐ€์ด๋“œ์˜ ์„ค์น˜ ๋ถ€๋ถ„์„ ํ™•์ธํ•ด ์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

โ€ข WIN XP, IE 8์ดํ•˜ ๋“ฑ ๋‚ฎ์€ ๋ฒ„์ „ ํ™˜๊ฒฝ ๋˜๋Š” ์œˆ๋„์šฐ ์—…๋ฐ์ดํŠธ๋ฅผ ํ•˜์ง€ ์•Š์€ ์‚ฌ์šฉ์ž

> ์‚ฌ์šฉ์ž(์ ‘์†์ž)์˜ ํ™˜๊ฒฝ์— ๋ฃจํŠธ์ธ์ฆ์„œ๊ฐ€ ์กด์žฌํ•˜์ง€ ์•Š์•„ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ์Œ

- ์œˆ๋„์šฐ์— ๋‚ด์žฅ๋œ ์œˆ๋„์šฐ ์—…๋ฐ์ดํŠธ๋ฅผ ํ†ตํ•ด ์œˆ๋„์šฐ ์—…๋ฐ์ดํŠธ๋ฅผ ํ•˜๊ฑฐ๋‚˜, ์ฒจ๋ถ€ํ•œ RootCA.crt ํŒŒ์ผ์„ ์ง์ ‘ ์‚ฌ์šฉ์žPC์— ์ˆ˜๋™ ์„ค์น˜ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

โ€ข ํ•ด๋‹น ๋„๋ฉ”์ธ ์ ‘์† ์‹œ โ€œ๋งŒ๋ฃŒ๋œ ์ธ์ฆ์„œโ€ ๋ผ๋Š” ํ‘œ์‹œ ๋ฐœ์ƒ ์‹œ

โ€ข ํ•ด๋‹น ๋„๋ฉ”์ธ์˜ ์ ‘์†ํ•œ ์‚ฌ์šฉ์ž PC์˜ ์‹œ๊ฐ„์ด ํ˜„์žฌ ์‹œ๊ฐ„์ธ์ง€ ํ™•์ธํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

โ€ข ํ•ด๋‹น ๋„๋ฉ”์ธ์— ์„ค์น˜๋œ ์ธ์ฆ์„œ ์ •๋ณด์ฐฝ์„ ๋„์›Œ ํ•ด๋‹น ์ธ์ฆ์„œ์˜ ๋งŒ๋ฃŒ์ผ์„ ํ™•์ธํ•ด์ฃผ์‹œ๊ธฐ ๋ฐ”๋ž๋‹ˆ๋‹ค.

> ๋„๋ฉ”์ธ ์ธ์ฆ์„œ ๊ฐฑ์‹ ์„ ํ–ˆ๋Š”๋ฐ๋„ ๋ฐœ์ƒํ•œ ๊ฒฝ์šฐ, ๋ฐฉํ™”๋ฒฝ ๋˜๋Š” L4 ๋“ฑ ๋‹ค๋ฅธ ์žฅ๋น„์— ์ธ์ฆ์„œ ์„ค์น˜๊ฐ€ ํ•„์š”ํ•œ์ง€ ํ™•์ธํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

โ€ข ํ•ด๋‹น ๋„๋ฉ”์ธ ์ ‘์† ์‹œ โ€œํ๊ธฐ๋œ ์ธ์ฆ์„œโ€ ๋ผ๋Š” ํ‘œ์‹œ ๋ฐœ์ƒ ์‹œ

โ€ข ์ธ์ฆ์„œ๊ฐ€ ํ๊ธฐ ๋˜๋Š” ํ•ด์ง€๋œ ๊ฒฝ์šฐ KICASSL์— ์ „ํ™” ๋ฌธ์˜ ํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค..

โ€ข ์ถ”๊ฐ€ ์งˆ๋ฌธ์‚ฌํ•ญ์€ ํ•œ๊ตญ์ •๋ณด์ธ์ฆ KICASSL ์›น์‚ฌ์ดํŠธ์˜ FAQ๋ฅผ ํ™•์ธํ•ด์ฃผ์‹œ๊ธธ ๋ฐ”๋ž๋‹ˆ๋‹ค.

โ€ข www.kicassl.com ๋งํฌ

Copyright 2015 By KICA. All Right Reserved.Copyright 2015 By KICA. All Right Reserved.

- 28 -

๊ฐ์‚ฌํ•ฉ๋‹ˆ๋‹ค

์‹ ๋ขฐ์„ธ์ƒA World of Trust

ํ•œ๊ตญ์ •๋ณด์ธ์ฆใˆœ SSL (Korea Information Certificate Authority, Inc.)

E-mail. [email protected]