{"id":3663,"date":"2025-08-14T17:23:04","date_gmt":"2025-08-14T09:23:04","guid":{"rendered":"https:\/\/aws-oncloudai.com\/?p=3663"},"modified":"2025-08-14T17:23:04","modified_gmt":"2025-08-14T09:23:04","slug":"gain-an-in-depth-understanding-of-aws-guardduty","status":"publish","type":"post","link":"https:\/\/aws-oncloudai.com\/ko\/aws-guardduty\uc5d0-\ub300\ud55c-\uc2ec\uce35\uc801\uc778-\uc774\ud574\ub97c-\uc5bb\uc73c\uc138\uc694\/","title":{"rendered":"AWS GuardDuty\uc5d0 \ub300\ud574 \uc790\uc138\ud788 \uc54c\uc544\ubcf4\uc138\uc694"},"content":{"rendered":"<p>\uc624\ub298\ub0a0 \ud074\ub77c\uc6b0\ub4dc \ucef4\ud4e8\ud305\uc774 \uae09\uc18d\ub3c4\ub85c \ubc1c\uc804\ud558\ub294 \uc2dc\ub300\uc5d0 \uae30\uc5c5\ub4e4\uc740 \ud0c4\ub825\uc801\uc778 \ucef4\ud4e8\ud305, \uc800\ub834\ud55c \ud655\uc7a5\uc131, \uadf8\ub9ac\uace0 \uae00\ub85c\ubc8c \uad6c\ucd95\uc774\ub77c\ub294 \uc774\uc810\uc744 \ub204\ub9ac\uba74\uc11c\ub3c4 \uc810\uc810 \ub354 \ubcf5\uc7a1\ud574\uc9c0\ub294 \ubcf4\uc548 \uc704\ud611\uc5d0 \uc9c1\uba74\ud558\uace0 \uc788\uc2b5\ub2c8\ub2e4. \uace0\uac1d\uc774 \uc7a0\uc7ac\uc801 \uc704\ud5d8\uc744 \uc0ac\uc804\uc5d0 \ud30c\uc545\ud558\uace0 \ud074\ub77c\uc6b0\ub4dc \ub9ac\uc18c\uc2a4\uc758 \ubcf4\uc548\uc744 \ud655\ubcf4\ud560 \uc218 \uc788\ub3c4\ub85d Amazon\uc740 \ub2e4\uc74c\uacfc \uac19\uc740 \uc11c\ube44\uc2a4\ub97c \ucd9c\uc2dc\ud588\uc2b5\ub2c8\ub2e4. <strong>AWS \uac00\ub4dc\ub4c0\ud2f0<\/strong> Amazon S3\uc5d0 \uc800\uc7a5\ub41c AWS \uacc4\uc815, \uc6cc\ud06c\ub85c\ub4dc \ubc0f \uc911\uc694 \ub370\uc774\ud130\ub97c \ubcf4\ud638\ud558\uae30 \uc704\ud574 \uc545\uc131 \ud65c\ub3d9\uacfc \ubb34\ub2e8 \uc561\uc138\uc2a4\ub97c \uc9c0\uc18d\uc801\uc73c\ub85c \ubaa8\ub2c8\ud130\ub9c1\ud558\ub294 \uad00\ub9ac\ud615 \uc704\ud611 \ud0d0\uc9c0 \uc11c\ube44\uc2a4\uc785\ub2c8\ub2e4.<\/p>\n<p>AWS \uad00\ub9ac \ucf58\uc194\uc5d0\uc11c \ud074\ub9ad \ud55c \ubc88\uc73c\ub85c GuardDuty\uac00 \ud074\ub77c\uc6b0\ub4dc \ud658\uacbd\uc5d0\uc11c \uc989\uc2dc \uc2e4\ud589\ub418\uba70, \uba38\uc2e0\ub7ec\ub2dd\uacfc \uc704\ud611 \uc778\ud154\ub9ac\uc804\uc2a4\ub97c \ud65c\uc6a9\ud558\uc5ec \uc7a0\uc7ac\uc801 \ubcf4\uc548 \ubb38\uc81c\ub97c \uc790\ub3d9\uc73c\ub85c \ubd84\uc11d\ud569\ub2c8\ub2e4. AWS \uacf5\uc2dd \ub9ac\uc140\ub7ec\ub85c\uc11c, \uc800\ud76c\ub294 \uae30\uc5c5 \ubcf4\uc548\uc5d0 \uc788\uc5b4 \uc774 \uc11c\ube44\uc2a4\uc758 \uc911\uc694\uc131\uc744 \uc798 \uc54c\uace0 \uc788\uc73c\uba70, \uc218\ub9ce\uc740 \uace0\uac1d \ud504\ub85c\uc81d\ud2b8\uac00 \ubc30\ud3ec\ubd80\ud130 \uad6c\ud604\uae4c\uc9c0 \uc5d4\ub4dc \ud22c \uc5d4\ub4dc \ubcf4\uc548\uc744 \ud655\ubcf4\ud558\ub3c4\ub85d \uc9c0\uc6d0\ud574 \uc654\uc2b5\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4>AWS GuardDuty\ub780 \ubb34\uc5c7\uc778\uac00\uc694?<\/h4>\n<p>AWS GuardDuty\ub294 <strong>\uad00\ub9ac\ud615 \uc704\ud611 \ud0d0\uc9c0 \uc11c\ube44\uc2a4<\/strong>, \uba38\uc2e0 \ub7ec\ub2dd, \ub9ec\uc6e8\uc5b4 \ud0d0\uc9c0, AWS \uc790\uccb4 \ubc0f \ud0c0\uc0ac \uc704\ud611 \uc778\ud154\ub9ac\uc804\uc2a4 \ub77c\uc774\ube0c\ub7ec\ub9ac\ub97c \uc0ac\uc6a9\ud558\uc5ec AWS \ud658\uacbd\uc5d0 \ub300\ud55c \ubcf4\uc548 \ubd84\uc11d\uc744 \uc218\ud589\ud558\uace0 \uc7a0\uc7ac\uc801 \uc704\ud5d8\uc744 \uc2dd\ubcc4\ud558\uc5ec \uc6b0\uc120\uc21c\uc704\ub97c \uc9c0\uc815\ud569\ub2c8\ub2e4.<\/p>\n<p>\ube44\uc988\ub2c8\uc2a4 \uc544\ud0a4\ud14d\ucc98\uac00 \uc804\uc801\uc73c\ub85c \ud074\ub77c\uc6b0\ub4dc \uae30\ubc18\uc774\ub4e0 \uc628\ud504\ub808\ubbf8\uc2a4\uc640 \ud074\ub77c\uc6b0\ub4dc\uc758 \ud558\uc774\ube0c\ub9ac\ub4dc \ud658\uacbd\uc5d0 \uad6c\ucd95\ub418\uc5c8\ub4e0 GuardDuty\ub294 \ud6a8\uc728\uc801\uc774\uace0 \uce68\uc785 \uac00\ub2a5\uc131\uc774 \ub0ae\uc740 \ubcf4\uc548 \ud0d0\uc9c0 \uae30\ub2a5\uc744 \uc81c\uacf5\ud558\uc5ec \uae30\uc5c5\uc774 \ucd94\uac00 \ud558\ub4dc\uc6e8\uc5b4 \ubc0f \uc6b4\uc601 \ube44\uc6a9\uc744 \ub4e4\uc774\uc9c0 \uc54a\uace0\ub3c4 \uc804\ubc18\uc801\uc778 \ubcf4\uc548 \ubcf4\ud638 \uae30\ub2a5\uc744 \uac1c\uc120\ud560 \uc218 \uc788\ub3c4\ub85d \uc9c0\uc6d0\ud569\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4>\ud575\uc2ec \uae30\ub2a5 \ud558\uc774\ub77c\uc774\ud2b8<\/h4>\n<h5>1. \uace0\uc815\ubc00 \uc704\ud611 \uc2dd\ubcc4<\/h5>\n<p>GuardDuty\ub294 \uae30\uc874 \ubc29\uc2dd\uc73c\ub85c\ub294 \ud0d0\uc9c0\ud558\uae30 \uc5b4\ub824\uc6b4 \uc704\ud5d8 \uc9c0\ud45c(\uc608: \ube44\uc815\uc0c1\uc801\uc778 \uc2dc\uac04\uc774\ub098 \uc7a5\uc18c\uc758 \uc811\uadfc, \uc54c\ub824\uc9c4 \uc545\uc131 IP \uc8fc\uc18c\uc640\uc758 \uc0c1\ud638\uc791\uc6a9, \ube44\uc815\uc0c1\uc801\uc778 \ub370\uc774\ud130 \uc804\uc1a1 \ud328\ud134)\ub97c \uac10\uc9c0\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4. \uc2dc\uc2a4\ud15c\uc744 24\uc2dc\uac04 \uc5f0\uc911\ubb34\ud734 \ubaa8\ub2c8\ud130\ub9c1\ud560 \uc218 \uc5c6\ub354\ub77c\ub3c4 GuardDuty\ub294 \uc0ac\uc6a9\uc790\ub97c \ub300\uc2e0\ud558\uc5ec \uc9c0\uc18d\uc801\uc73c\ub85c \ubaa8\ub2c8\ud130\ub9c1\ud558\uace0 \uc911\uc694\ud55c \uc54c\ub9bc\uc744 \ud478\uc2dc\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<h5>2. \uc9c0\uc18d\uc801\uc778 \ubaa8\ub2c8\ud130\ub9c1 \ubc0f \uc911\uc559 \uad00\ub9ac<\/h5>\n<p>AWS CloudTrail, VPC \ud50c\ub85c\uc6b0 \ub85c\uadf8, DNS \ub85c\uadf8\uc758 \ub370\uc774\ud130\ub97c \uc9c0\uc18d\uc801\uc73c\ub85c \ubd84\uc11d\ud558\uace0 \uc5ec\ub7ec \uacc4\uc815\uc5d0 \uac78\uce5c \uc704\ud611 \ud0d0\uc9c0 \uacb0\uacfc\ub97c \uc911\uc559\uc5d0\uc11c \uad00\ub9ac\ud560 \uc218 \uc788\ub3c4\ub85d \uc9c0\uc6d0\ud558\ubbc0\ub85c, \uc5ec\ub7ec \uacc4\uc815\uacfc \uc5ec\ub7ec \uc0ac\uc5c5 \ubd80\ubb38\uc744 \ubcf4\uc720\ud55c \ub300\uaddc\ubaa8 \uc5d4\ud130\ud504\ub77c\uc774\uc988 \ud658\uacbd\uc5d0 \ud2b9\ud788 \uc801\ud569\ud569\ub2c8\ub2e4. \uc774\ub97c \ud1b5\ud574 \uc218\ub3d9 \ub85c\uadf8 \uc218\uc9d1 \ubc0f \uc0c1\uad00\uad00\uacc4 \ubd84\uc11d\uc758 \ud544\uc694\uc131\uc774 \uc5c6\uc5b4\uc838 \ubcf4\uc548 \ubd84\uc11d\uc758 \ubcf5\uc7a1\uc131\uc774 \ud06c\uac8c \uc904\uc5b4\ub4ed\ub2c8\ub2e4.<\/p>\n<h5>3. \uc704\ud611 \uc2ec\uac01\ub3c4 \ub4f1\uae09<\/h5>\n<p>GuardDuty\ub294 \uc704\ud611\uc744 \ub2e4\uc74c\uacfc \uac19\uc774 \ubd84\ub958\ud569\ub2c8\ub2e4. <strong>\ub0ae\uc74c, \uc911\uac04, \ub192\uc74c<\/strong> \uc138 \uac00\uc9c0 \uc218\uc900:<\/p>\n<ul>\n<li><strong>\ub0ae\uc740<\/strong>: \uc758\uc2ec\uc2a4\ub7ec\uc6b4 \ud65c\ub3d9\uc744 \uac10\uc9c0\ud558\uace0 \ucc28\ub2e8 \uc870\uce58\ub97c \ucde8\ud574 \uc704\ud5d8\uc774 \ud655\ub300\ub418\ub294 \uac83\uc744 \ubc29\uc9c0\ud569\ub2c8\ub2e4.<\/li>\n<li><strong>\uac00\uc6b4\ub370<\/strong>: \uc774\uc0c1 \uc9d5\ud6c4\uac00 \ub69c\ub837\ud558\uba70 \uac00\ub2a5\ud55c \ud55c \ube68\ub9ac \uc870\uc0ac\uac00 \ud544\uc694\ud569\ub2c8\ub2e4.<\/li>\n<li><strong>\ub192\uc740<\/strong>: \uc545\uc131 \ud65c\ub3d9\uc774 \ubc1c\uc0dd\ud558\uace0 \uc788\ub294\uc9c0 \ud655\uc778\ud558\uace0 \uc989\uc2dc \ub300\uc751\ud558\uc138\uc694.<\/li>\n<\/ul>\n<p>\uc774\ub7ec\ud55c \ub4f1\uae09 \ub9e4\uae30\uae30 \uba54\ucee4\ub2c8\uc998\uc744 \ud1b5\ud574 \ubcf4\uc548 \ud300\uc740 \uc6b0\uc120\uc21c\uc704\ub97c \ube60\ub974\uac8c \uacb0\uc815\ud558\uace0 \uc5d0\ub108\uc9c0\uc640 \ub9ac\uc18c\uc2a4\ub97c \uc801\uc808\ud558\uac8c \ud560\ub2f9\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<h5>4. \ub192\uc740 \uac00\uc6a9\uc131\uacfc \ud0c4\ub825\uc801\uc778 \ud655\uc7a5\uc131<\/h5>\n<p>GuardDuty\ub294 \ud0d0\uc9c0 \uc218\uc694\uc5d0 \ub530\ub77c \ubd84\uc11d \uc6a9\ub7c9\uc744 \ub3d9\uc801\uc73c\ub85c \uc870\uc815\ud558\uc5ec \uc218\ub3d9 \uac1c\uc785 \uc5c6\uc774\ub3c4 \ud2b8\ub798\ud53d\uc774 \uae09\uc99d\ud558\ub354\ub77c\ub3c4 \uc548\uc815\uc801\uc778 \ud0d0\uc9c0 \uc131\ub2a5\uc744 \ubcf4\uc7a5\ud569\ub2c8\ub2e4.<\/p>\n<h5>5. \uc2e0\uc18d\ud55c \ubc30\ud3ec<\/h5>\n<p>\ub2e8\uc77c \ub610\ub294 \ub2e4\uc911 \uacc4\uc815 \ud658\uacbd\uc5d0\uc11c GuardDuty\ub294 \ucf58\uc194\uc5d0\uc11c \ud55c \ubc88\uc758 \ud074\ub9ad\uc73c\ub85c \ub610\ub294 API \ud638\ucd9c\uc744 \ud1b5\ud574 \ud65c\uc131\ud654\ud560 \uc218 \uc788\uc73c\uba70 \uae30\ubcf8\uc801\uc73c\ub85c \uc9c0\uc6d0\ud569\ub2c8\ub2e4. <strong>AWS \uc870\uc9c1<\/strong> \ud1b5\ud569\uc73c\ub85c \ub300\uaddc\ubaa8 \ubc30\ud3ec\uac00 \uc6a9\uc774\ud574\uc9d1\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4>\uc7a5\uc810\uacfc \ub2e8\uc810<\/h4>\n<h5><strong>\uc7a5\uc810<\/strong><\/h5>\n<ul>\n<li>\uc5ec\ub7ec \uacc4\uc815\uc758 \uc911\uc559 \uc9d1\uc911\uc2dd \ubcf4\uc548 \uad00\ub9ac<\/li>\n<li>\uc778\uac04\uc758 \uac1c\uc785 \uc5c6\uc774 \uc644\uc804 \uc790\ub3d9\uc73c\ub85c \uc9c0\uc18d\uc801\uc778 \ubaa8\ub2c8\ud130\ub9c1<\/li>\n<li>\uc720\ud734 \ub9ac\uc18c\uc2a4 \ub0ad\ube44\ub97c \ubc29\uc9c0\ud558\uae30 \uc704\ud574 \uc8fc\ubb38\ud615 \uacb0\uc81c\ub97c \uc774\uc6a9\ud558\uc138\uc694<\/li>\n<li>\ud56d\uc0c1 \uc5c5\ub370\uc774\ud2b8\ub418\ub294 \uc704\ud611 \uc778\ud154\ub9ac\uc804\uc2a4 \ub77c\uc774\ube0c\ub7ec\ub9ac<\/li>\n<li>AWS \uc11c\ube44\uc2a4\uc640 \uae30\ubcf8\uc801\uc73c\ub85c \ud1b5\ud569\ub418\uc5b4 2\ucc28 \uac1c\ubc1c \ubc0f \uc790\ub3d9\ud654\uac00 \uc6a9\uc774\ud569\ub2c8\ub2e4.<\/li>\n<\/ul>\n<h5><strong>\ubd88\ucda9\ubd84\ud558\ub2e4<\/strong><\/h5>\n<ul>\n<li>\uac00\uaca9 \ubaa8\ub378\uc740 \ub370\uc774\ud130 \uc591\uc5d0 \ub530\ub77c \uacb0\uc815\ub418\ub294\ub370, \uc774\ub294 \uace0\uc815\ub418\uc5b4 \uc788\uc9c0 \uc54a\uace0 \uc720\uc5f0\ud55c \uc608\uc0b0 \uacc4\ud68d\uc774 \ud544\uc694\ud569\ub2c8\ub2e4.<\/li>\n<li>AWS \ud658\uacbd\uc5d0\uc11c\ub9cc \uc791\ub3d9\ud558\uba70 AWS\uac00 \uc544\ub2cc \ub9ac\uc18c\uc2a4\ub97c \uc9c1\uc811 \ubaa8\ub2c8\ud130\ub9c1\ud560 \uc218 \uc5c6\uc2b5\ub2c8\ub2e4.<\/li>\n<li>\uc790\ub3d9 \uc751\ub2f5 \ub3c4\uad6c\uc640\uc758 \ud1b5\ud569\uc774 \ud544\uc694\ud55c \uc54c\ub9bc \ud53c\ub85c\uc758 \uc7a0\uc7ac\uc801 \uc704\ud5d8<\/li>\n<li>\ud0d0\uc9c0 \uaddc\uce59\uc744 \uc0ac\uc6a9\uc790 \uc815\uc758\ud558\ub294 \uae30\ub2a5\uc774 \uc81c\ud55c\ub428<\/li>\n<li>\ud0d0\uc9c0\ub9cc \uac00\ub2a5\ud558\uba70 \uc9c1\uc811\uc801\uc778 \ucc28\ub2e8\uc740 \ubd88\uac00<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h4>\uc791\ub3d9 \uc6d0\ub9ac<\/h4>\n<p>GuardDuty\ub294 \ub2e4\uc74c\uc744 \ud3ec\ud568\ud55c \uc5ec\ub7ec AWS \ub370\uc774\ud130 \uc18c\uc2a4\uc5d0\uc11c \uc2e4\uc2dc\uac04\uc73c\ub85c \uc5c4\uccad\ub09c \uc591\uc758 \uc774\ubca4\ud2b8\ub97c \ubd84\uc11d\ud569\ub2c8\ub2e4.<\/p>\n<ul>\n<li><strong>CloudTrail \uc774\ubca4\ud2b8 \ub85c\uadf8<\/strong><\/li>\n<li><strong>Amazon VPC \ud750\ub984 \ub85c\uadf8<\/strong><\/li>\n<li><strong>DNS \ucffc\ub9ac \ub85c\uadf8<\/strong><\/li>\n<\/ul>\n<p>\uc704\ud611\uc740 \ud06c\uac8c \uc138 \uac00\uc9c0 \ubc94\uc8fc\ub85c \ub098\ub20c \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<ol>\n<li><strong>\uc778\uc2a4\ud134\uc2a4 \uc190\uc0c1<\/strong><\/li>\n<li>\ube44\uc815\uc0c1\uc801\uc778 \ub124\ud2b8\uc6cc\ud06c \ud2b8\ub798\ud53d, \uc704\ud5d8\ub3c4\uac00 \ub192\uc740 \uc678\ubd80 IP \uc5f0\uacb0, \ud558\uc774\uc7ac\ud0b9\ub41c EC2 \uc778\uc2a4\ud134\uc2a4 \ub4f1\uc744 \uac10\uc9c0\ud569\ub2c8\ub2e4.<\/li>\n<li><strong>\uc815\ucc30<\/strong><\/li>\n<li>\uc5ec\uae30\uc5d0\ub294 \uc545\uc131 IP\uc758 \ud3ec\ud2b8 \uc2a4\uce90\ub2dd, VPC \ub124\ud2b8\uc6cc\ud06c \uac10\uc9c0, \ube44\uc815\uc0c1\uc801\uc778 API \ud638\ucd9c\uacfc \uac19\uc740 \ud65c\ub3d9\uc774 \ud3ec\ud568\ub429\ub2c8\ub2e4.<\/li>\n<li><strong>\uacc4\uc815 \uc790\uaca9 \uc99d\uba85\uc774 \ub3c4\ub09c\ub2f9\ud588\uc2b5\ub2c8\ub2e4.<\/strong><\/li>\n<li>\ud2b9\uc774\ud55c \uc9c0\ub9ac\uc801 \uc704\uce58\uc5d0\uc11c \ubc1c\uc0dd\ud558\ub294 API \ud638\ucd9c, \uacc4\uc815 \ubcf4\uc548 \uc815\ucc45\uc744 \uc57d\ud654\uc2dc\ud0a4\ub294 \ub3d9\uc791, \uc54c\ub824\uc9c4 \uc545\uc131 \ucd9c\ucc98\uc5d0\uc11c\uc758 \uc561\uc138\uc2a4 \uc2dc\ub3c4 \ub4f1\uc744 \uc2dd\ubcc4\ud569\ub2c8\ub2e4.<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<h4>GuardDuty\ub97c \uc0ac\uc6a9\ud574\uc57c \ud558\ub294 \uc774\uc720\ub294?<\/h4>\n<p>\ubaa8\ub4e0 \ud074\ub77c\uc6b0\ub4dc \ud658\uacbd\uc5d0\uc11c \ud37c\ube14\ub9ad \ub124\ud2b8\uc6cc\ud06c\uc5d0 \ub178\ucd9c\ub41c \ub9ac\uc18c\uc2a4\ub294 \uacf5\uaca9 \ub300\uc0c1\uc774 \ub420 \uc218 \uc788\uc2b5\ub2c8\ub2e4. GuardDuty\ub294 AWS \ubcf4\uc548\ud300, \ud0c0\uc0ac \uc778\ud154\ub9ac\uc804\uc2a4 \uc18c\uc2a4, \uadf8\ub9ac\uace0 \uba38\uc2e0\ub7ec\ub2dd \uc54c\uace0\ub9ac\uc998\uc744 \ud1b5\ud574 \uc9c0\uc18d\uc801\uc73c\ub85c \ucd5c\uc801\ud654\ub418\ub294 \ud0d0\uc9c0 \uaddc\uce59\uc744 \ud1b5\ud574 \uae30\uc5c5\uc774 \uc758\uc2ec\uc2a4\ub7ec\uc6b4 \ud589\ub3d9\uc744 \uc0ac\uc804\uc5d0 \uc2dd\ubcc4\ud560 \uc218 \uc788\ub3c4\ub85d \uc9c0\uc6d0\ud569\ub2c8\ub2e4. <strong>AWS \ub78c\ub2e4<\/strong>,<strong>\ubcf4\uc548 \ud5c8\ube0c<\/strong> Kubernetes \ubc0f Azure\uc640 \uac19\uc740 \uc11c\ube44\uc2a4\ub294 \uc790\ub3d9\ud654\ub41c \ubcf5\uad6c \ubc0f \ub300\uc751\uc744 \ub2ec\uc131\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<p>\ub354 \uc911\uc694\ud55c \uac83\uc740 GuardDuty\uc785\ub2c8\ub2e4. <strong>\ucd94\uac00 \uc778\ud504\ub77c \uad6c\ucd95\uc774 \ud544\uc694\ud558\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4.<\/strong>\ube44\uc6a9 \ud1b5\uc81c\uac00 \uac00\ub2a5\ud558\uace0 \ubc30\ud3ec\uac00 \uac04\ud3b8\ud558\ubbc0\ub85c \ub9ac\uc18c\uc2a4\uac00 \uc81c\ud55c\uc801\uc774\uac70\ub098 \ubcf4\uc548 \ud300\uc774 \uc791\uc740 \uae30\uc5c5\uc5d0 \ud2b9\ud788 \uc720\uc6a9\ud569\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4>\uc77c\ubc18\uc801\uc778 \uc751\uc6a9 \ud504\ub85c\uadf8\ub7a8 \uc2dc\ub098\ub9ac\uc624<\/h4>\n<ol>\n<li><strong>\uc6cc\ud06c\ub85c\ub4dc \ubcf4\uc548 \ubcf4\ud638<\/strong><\/li>\n<li>EC2 \uc778\uc2a4\ud134\uc2a4\uac00 \ub9c8\uc774\ub2dd, DDoS \uacf5\uaca9 \ub610\ub294 \uace0\uc704\ud5d8 \ub3c4\uba54\uc778\uacfc\uc758 \ud1b5\uc2e0\uc5d0 \uc0ac\uc6a9\ub418\ub294\uc9c0 \uac10\uc9c0\ud569\ub2c8\ub2e4.<\/li>\n<li><strong>AWS \uc790\uaca9 \uc99d\uba85 \ubcf4\ud638<\/strong><\/li>\n<li>\uc704\ud5d8\ub3c4\uac00 \ub192\uc740 IP \uc8fc\uc18c\uc5d0\uc11c \uc911\uc694\ud55c API\ub97c \ud638\ucd9c\ud558\ub294 \ub4f1 \ube44\uc815\uc0c1\uc801\uc778 API \uc0ac\uc6a9 \ud328\ud134\uc744 \ubc1c\uacac\ud569\ub2c8\ub2e4.<\/li>\n<li><strong>S3 \ub370\uc774\ud130 \uc561\uc138\uc2a4 \ubaa8\ub2c8\ud130\ub9c1<\/strong><\/li>\n<li>\uc545\uc758\uc801\uc778 \ud589\uc704\uc790\uac00 \ube44\uc815\uc0c1\uc801\uc73c\ub85c \ud070 \ub2e4\uc6b4\ub85c\ub4dc, \uc608\uc0c1\uce58 \ubabb\ud55c \ucd9c\ucc98\uc5d0\uc11c\uc758 \uc561\uc138\uc2a4 \ub610\ub294 S3 \ubc84\ud0b7\uc5d0 \uc561\uc138\uc2a4\ud558\ub294 \uac83\uc744 \uac10\uc9c0\ud569\ub2c8\ub2e4.<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<h4>AWS \uc5d0\uc774\uc804\ud2b8\ub85c\uc11c<\/h4>\n<p>\uace0\uac1d\uacfc \uc2e4\uc81c\ub85c \ud611\ub825\ud55c \uacb0\uacfc, \ub9ce\uc740 \ud68c\uc0ac\uac00 GuardDuty\ub97c \ud65c\uc131\ud654\ud55c \ud6c4\uc5d0\ub3c4 \uc790\ub3d9 \uc751\ub2f5, \uaddc\uc815 \uc900\uc218 \uac10\uc0ac, \uacc4\uc815 \uac04 \uc911\uc559 \uad00\ub9ac \ub4f1\uacfc \uacb0\ud569\ud558\ub294 \ub4f1 GuardDuty\uc758 \uae30\ub2a5\uc744 \ucda9\ubd84\ud788 \ud65c\uc6a9\ud558\uc9c0 \uc54a\ub294\ub2e4\ub294 \uc0ac\uc2e4\uc744 \ubc1c\uacac\ud588\uc2b5\ub2c8\ub2e4. <strong>AWS \uacf5\uc2dd \ub9ac\uc140\ub7ec<\/strong>, \uc6b0\ub9ac\ub294 \uace0\uac1d\uc774 GuardDuty\ub97c \uc2e0\uc18d\ud558\uac8c \ud65c\uc131\ud654\ud560 \uc218 \uc788\ub3c4\ub85d \ub3c4\uc6b8 \ubfd0\ub9cc \uc544\ub2c8\ub77c \ub2e4\uc74c\uacfc \uac19\uc740 \uc791\uc5c5\ub3c4 \uc218\ud589\ud569\ub2c8\ub2e4.<\/p>\n<ul>\n<li>\uace0\uac1d \ub9de\ucda4\ud615 <strong>\uc704\ud611 \ud0d0\uc9c0 \ubc0f \ub300\uc751 \uc194\ub8e8\uc158<\/strong><\/li>\n<li>\uae30\uc874 SIEM \ubc0f SOAR \uc2dc\uc2a4\ud15c\uacfc \ud1b5\ud569<\/li>\n<li>\uc9c0\uc18d\uc801\uc778 \uc704\ud611 \uc778\ud154\ub9ac\uc804\uc2a4 \ucd5c\uc801\ud654 \ubc0f \ubcf4\uc548 \uc6b4\uc601 \ubc0f \uc720\uc9c0 \uad00\ub9ac \uc11c\ube44\uc2a4 \uc81c\uacf5<\/li>\n<li>\uae30\uc5c5 \ub3d5\uae30 <strong>\ube44\uc6a9 \ucd5c\uc801\ud654<\/strong> \uadf8\ub9ac\uace0 <strong>\ub85c\uadf8 \uac70\ubc84\ub10c\uc2a4<\/strong><\/li>\n<li>\uaddc\uc815 \uc900\uc218 \uc694\uad6c \uc0ac\ud56d\uc5d0 \ub530\ub77c \uac10\uc0ac \ubc0f \ubcf4\uace0 \uc9c0\uc6d0 \uc81c\uacf5<\/li>\n<\/ul>\n<p>\uc774\ub7ec\ud55c \uc804\ubb38\uc801\uc778 \uc11c\ube44\uc2a4\ub97c \ud1b5\ud574 \uc6b0\ub9ac\ub294 GuardDuty\ub97c \ub2e8\uc21c\ud55c &quot;\ub3c4\uad6c&quot;\uc5d0\uc11c \uace0\uac1d \ubcf4\uc548 \uc2dc\uc2a4\ud15c\uc758 &quot;\uc911\ucd94 \uc2e0\uacbd\uacc4&quot;\ub85c \ubcc0\ubaa8\uc2dc\ucf30\uc2b5\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4>\uc694\uc57d\ud558\ub2e4<\/h4>\n<p>AWS GuardDuty\ub294 \ud074\ub77c\uc6b0\ub4dc \uc704\ud611 \ud0d0\uc9c0\uc758 \ud575\uc2ec \uad6c\uc131 \uc694\uc18c\ub85c, \uae30\uc5c5\uc774 \uc7a0\uc7ac\uc801 \uc704\ud5d8\uc744 \uc2e0\uc18d\ud558\uac8c \ud30c\uc545\ud558\uace0 \ud6a8\uacfc\uc801\uc73c\ub85c \ub300\uc751\ud560 \uc218 \uc788\ub3c4\ub85d \uc9c0\uc6d0\ud569\ub2c8\ub2e4. \uc0ac\uc6a9 \ud3b8\uc758\uc131, \uc9c0\uc18d\uc801\uc778 \ubaa8\ub2c8\ud130\ub9c1 \uae30\ub2a5, \uadf8\ub9ac\uace0 \uc704\ud611 \uc778\ud154\ub9ac\uc804\uc2a4 \uc9c0\uc6d0\uc744 \ud1b5\ud574 AWS \ud658\uacbd\uc5d0\uc11c \uae30\uc5c5\uc5d0 \ud544\uc218\uc801\uc778 \ubcf4\uc548 \ubcf4\ud638\ub9c9\uc744 \uc81c\uacf5\ud569\ub2c8\ub2e4.<\/p>\n<p>GuardDuty\ub97c \ube60\ub974\uace0 \uc548\uc804\ud558\uac8c \uad6c\ud604\ud558\uace0 \ud68c\uc0ac\uc758 \uae30\uc874 \ubcf4\uc548 \uc2dc\uc2a4\ud15c\uacfc \uae34\ubc00\ud558\uac8c \ud1b5\ud569\ud558\uace0 \uc2f6\uc73c\uc2dc\ub2e4\uba74 \uc800\ud76c\uc5d0\uac8c \uc5f0\ub77d\ud574 \uc8fc\uc138\uc694.<strong>\uc800\ud76c\ub294 AWS \uacf5\uc2dd \uc5d0\uc774\uc804\ud2b8\uc785\ub2c8\ub2e4<\/strong>\ud3c9\uac00 \ubc0f \ubc30\ud3ec\ubd80\ud130 \uc9c0\uc18d\uc801\uc778 \ucd5c\uc801\ud654\uae4c\uc9c0 \uc804\uccb4 \ud504\ub85c\uc138\uc2a4 \uc11c\ube44\uc2a4\ub97c \uc81c\uacf5\ud558\uc5ec AWS \ud658\uacbd\uc774 \uc548\uc804\ud558\uace0 \ud6a8\uc728\uc801\uc73c\ub85c \uc2e4\ud589\ub418\ub3c4\ub85d \ubcf4\uc7a5\ud558\uace0, \ubcf4\uc548 \ubcf4\ud638\uac00 \ube44\uc988\ub2c8\uc2a4 \uc131\uc7a5\uc744 \uc704\ud55c \uc9c4\uc815\ud55c \uc6d0\ub3d9\ub825\uc774 \ub418\ub3c4\ub85d \ud569\ub2c8\ub2e4.<\/p>","protected":false},"excerpt":{"rendered":"<p>\uc624\ub298\ub0a0 \ube60\ub974\uac8c \ubc1c\uc804\ud558\ub294 \ud074\ub77c\uc6b0\ub4dc \ucef4\ud4e8\ud305 \uc2dc\ub300\uc5d0\uc11c \uae30\uc5c5\uc740 \ud0c4\ub825\uc801\uc778 \ucef4\ud4e8\ud305, \uc800\ub834\ud55c \ud655\uc7a5\uc131, \uadf8\ub9ac\uace0 \uae00\ub85c\ubc8c \ubc30\ud3ec\ub97c \ub204\ub9ac\ub294 \ub3d9\uc2dc\uc5d0 \uc810\uc810 \ub354 \ubcf5\uc7a1\ud574\uc9c0\ub294 \ubcf4\uc548 \uc704\ud611\uc5d0 \uc9c1\uba74\ud558\uace0 \uc788\uc2b5\ub2c8\ub2e4. \uace0\uac1d\uc774 \uc7a0\uc7ac\uc801 \uc704\ud5d8\uc744 \uc0ac\uc804\uc5d0 \uc2dd\ubcc4\ud558\uace0 \ud074\ub77c\uc6b0\ub4dc \ub9ac\uc18c\uc2a4\uc758 \ubcf4\uc548\uc744 \uac15\ud654\ud560 \uc218 \uc788\ub3c4\ub85d Amazon\uc740 AWS GuardDuty\ub97c \ucd9c\uc2dc\ud588\uc2b5\ub2c8\ub2e4. AWS GuardDuty\ub294 \uc545\uc131 \ud65c\ub3d9\uacfc \ubb34\ub2e8 \uc561\uc138\uc2a4\ub97c \uc9c0\uc18d\uc801\uc73c\ub85c \ubaa8\ub2c8\ud130\ub9c1\ud558\uc5ec Amazon S3\uc5d0 \uc800\uc7a5\ub41c AWS \uacc4\uc815, \uc6cc\ud06c\ub85c\ub4dc \ubc0f \uc911\uc694 \ub370\uc774\ud130\ub97c \ubcf4\ud638\ud558\ub294 \uad00\ub9ac\ud615 \uc704\ud611 \ud0d0\uc9c0 \uc11c\ube44\uc2a4\uc785\ub2c8\ub2e4.<\/p>","protected":false},"author":1,"featured_media":3664,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[65],"tags":[],"class_list":["post-3663","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technical-sharing"],"_links":{"self":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts\/3663","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/comments?post=3663"}],"version-history":[{"count":2,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts\/3663\/revisions"}],"predecessor-version":[{"id":3666,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts\/3663\/revisions\/3666"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/media\/3664"}],"wp:attachment":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/media?parent=3663"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/categories?post=3663"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/tags?post=3663"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}