{"id":4098,"date":"2025-11-14T17:55:29","date_gmt":"2025-11-14T09:55:29","guid":{"rendered":"https:\/\/aws-oncloudai.com\/?p=4098"},"modified":"2025-11-17T17:55:02","modified_gmt":"2025-11-17T09:55:02","slug":"comprehensive-analysis-of-aws-cloud-hsm-enterprise-level-key-management","status":"publish","type":"post","link":"https:\/\/aws-oncloudai.com\/ko\/aws-\ud074\ub77c\uc6b0\ub4dc-hsm-\uc5d4\ud130\ud504\ub77c\uc774\uc988-\ub808\ubca8-\ud0a4-\uad00\ub9ac\uc5d0-\ub300\ud55c-\uc885\ud569\/","title":{"rendered":"AWS CloudHHSM\uc5d0 \ub300\ud55c \uc885\ud569 \ubd84\uc11d: \uc5d4\ud130\ud504\ub77c\uc774\uc988\uae09 \ud0a4 \uad00\ub9ac"},"content":{"rendered":"<p>\ub370\uc774\ud130 \ubcf4\uc548, \uac1c\uc778\uc815\ubcf4 \ubcf4\ud638 \ubc0f \uaddc\uc815 \uc900\uc218\uc5d0 \ub300\ud55c \uc694\uad6c \uc0ac\ud56d\uc774 \uc810\uc810 \ub354 \uc5c4\uaca9\ud574\uc9d0\uc5d0 \ub530\ub77c, \uc810\uc810 \ub354 \ub9ce\uc740 \uae30\uc5c5\uc774 \ud0a4 \uad00\ub9ac \uc778\ud504\ub77c(KMI)\ub97c \uc6b0\uc120\uc2dc\ud558\uace0 \uc788\uc2b5\ub2c8\ub2e4. \uae08\uc735, \uc815\ubd80 \ubc0f \uae30\uc5c5, \uc778\ud130\ub137 \ud50c\ub7ab\ud3fc, \ub610\ub294 \ub192\uc740 \uc218\uc900\uc758 \uc554\ud638\ud654 \ubcf4\ud638\uac00 \ud544\uc694\ud55c \ube44\uc988\ub2c8\uc2a4 \uc2dc\ub098\ub9ac\uc624 \ub4f1 \uc5b4\ub5a4 \ubd84\uc57c\uc5d0\uc11c\ub4e0 \uae30\uc5c5\uc740 \ud0a4 \uc218\uba85 \uc8fc\uae30\uc758 \ubaa8\ub4e0 \ub2e8\uacc4\uc5d0\uc11c \ud0a4\ub97c \uc5c4\uaca9\ud558\uac8c \ubcf4\ud638\ud574\uc57c \ud569\ub2c8\ub2e4.<\/p>\n<p><strong>AWS \ud074\ub77c\uc6b0\ub4dcHSM<\/strong>\ud074\ub77c\uc6b0\ub4dc \ud558\ub4dc\uc6e8\uc5b4 \ubcf4\uc548 \ubaa8\ub4c8(HSM)\uc740 AWS\uc5d0\uc11c \uc81c\uacf5\ud558\ub294 \uc804\uc6a9 \ud558\ub4dc\uc6e8\uc5b4 \ubcf4\uc548 \ubaa8\ub4c8 \uc11c\ube44\uc2a4\ub85c, \uae30\uc5c5\uc774 \uc554\ud638\ud654 \ubc0f \ubcf5\ud638\ud654, \ud0a4 \uc0dd\uc131, \ud0a4 \uad00\ub9ac \ub4f1\uc758 \ubcf4\uc548 \uc791\uc5c5\uc744 \uc218\ud589\ud558\uae30 \uc704\ud574 FIPS 140-2 \ub808\ubca8 3 \ud45c\uc900\uc744 \uc900\uc218\ud558\ub294 \ud074\ub77c\uc6b0\ub4dc\uc5d0\uc11c \uc644\ubcbd\ud558\uac8c \uc81c\uc5b4 \uac00\ub2a5\ud55c HSM \uc7a5\uce58\ub97c \uac16\ucd9c \uc218 \uc788\ub3c4\ub85d \ud574\uc90d\ub2c8\ub2e4.<\/p>\n<p>\uc774 \ubb38\uc11c\uc5d0\uc11c\ub294 AWS CloudHSM\uc758 \uae30\ub2a5\uc801 \ud2b9\uc9d5, \uc560\ud50c\ub9ac\ucf00\uc774\uc158 \uc2dc\ub098\ub9ac\uc624, \uc544\ud0a4\ud14d\ucc98\uc801 \uc774\uc810, KMS\uc640\uc758 \ucc28\uc774\uc810, \ub9ac\uc140\ub7ec\uc5d0\uac8c \uc81c\uacf5\ud558\ub294 \uac00\uce58 \ub4f1 \ub2e4\uc591\ud55c \uce21\uba74\uc5d0\uc11c AWS CloudHSM\uc5d0 \ub300\ud55c \ud3ec\uad04\uc801\uc778 \ubd84\uc11d\uc744 \uc81c\uacf5\ud569\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4><strong>AWS CloudHSM\uc774\ub780 \ubb34\uc5c7\uc778\uac00\uc694?<\/strong><\/h4>\n<p>AWS CloudHSM\uc740 <strong>\ud558\ub4dc\uc6e8\uc5b4 \uae30\ubc18 \ud0a4 \uad00\ub9ac \uc11c\ube44\uc2a4<\/strong>\uc774 \uc194\ub8e8\uc158\uc740 \uc8fc\uc694 \ud5c8\uac00, \uaddc\uc815 \uc900\uc218 \ubc0f \ubb3c\ub9ac\uc801 \uaca9\ub9ac\uc5d0 \ub300\ud55c \uc5c4\uaca9\ud55c \uc694\uad6c \uc0ac\ud56d\uc744 \ucda9\uc871\ud558\ub3c4\ub85d \uc124\uacc4\ub418\uc5c8\uc2b5\ub2c8\ub2e4.<\/p>\n<p>\ud575\uc2ec\uc740 AWS\uc5d0\uc11c \ud638\uc2a4\ud305\ub418\uace0 \uc0ac\uc6a9\uc790\uac00 \uc644\uc804\ud788 \uc81c\uc5b4\ud558\ub294 HSM \ud074\ub7ec\uc2a4\ud130\ub85c, \ub2e4\uc74c\uc744 \uc81c\uacf5\ud569\ub2c8\ub2e4.<\/p>\n<ul>\n<li>\ud0a4 \uc0dd\uc131, \uc800\uc7a5 \ubc0f \uad00\ub9ac<\/li>\n<li>\uc554\ud638\ud654 \ubc0f \ubcf5\ud638\ud654 \uc791\uc5c5<\/li>\n<li>\ub514\uc9c0\ud138 \uc11c\uba85<\/li>\n<li>TLS\/SSL \ud130\ubbf8\ub110 \uac00\uc18d<\/li>\n<li>PKI \uc778\ud504\ub77c \uc9c0\uc6d0<\/li>\n<\/ul>\n<p>CloudHSM\uc758 \uc8fc\uc694 \uae30\ub2a5\uc740 \ub2e4\uc74c\uacfc \uac19\uc2b5\ub2c8\ub2e4.<\/p>\n<p><strong>AWS\ub294 HSM \uc7a5\uce58\uc758 \ubb3c\ub9ac\uc801 \uc720\uc9c0\uad00\ub9ac \ubc0f \uac00\uc6a9\uc131\uc5d0 \ub300\ud55c \ucc45\uc784\uc744 \uc9c0\uace0, \uc0ac\uc6a9\uc790\ub294 \ud0a4\uc5d0 \ub300\ud55c \ub2e8\ub3c5 \uc81c\uc5b4\uad8c\uc744 \uac16\uc2b5\ub2c8\ub2e4.<\/strong><\/p>\n<p>\ub530\ub77c\uc11c \uc7ac\ubb34\uc801 \uc218\uc900\uc758 \uaddc\uc815 \uc900\uc218 \uc694\uad6c \uc0ac\ud56d\uc744 \ucda9\uc871\ud574\uc57c \ud558\ub294 \ud68c\uc0ac\uc5d0 \uac00\uc7a5 \uc801\ud569\ud55c \uc194\ub8e8\uc158\uc785\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4><strong>AWS CloudHSM\uc758 \ud575\uc2ec \uc7a5\uc810<\/strong><\/h4>\n<h5><strong>1. \uc644\ubcbd\ud55c \ud0a4 \uc81c\uc5b4<\/strong><\/h5>\n<p>CloudHSM\uacfc AWS KMS\uc758 \uac00\uc7a5 \ud070 \ucc28\uc774\uc810\uc740 \ub2e4\uc74c\uacfc \uac19\uc2b5\ub2c8\ub2e4.<\/p>\n<ul>\n<li><strong>\ub2f9\uc2e0\uc740 HSM\uc758 \uad00\ub9ac\uc790\uc785\ub2c8\ub2e4<\/strong><\/li>\n<li><strong>AWS\uc5d0\uc11c \ud0a4\uc5d0 \uc561\uc138\uc2a4\ud560 \uc218 \uc5c6\uc2b5\ub2c8\ub2e4.<\/strong><\/li>\n<li>\ubaa8\ub4e0 \uc8fc\uc694 \uc791\uc5c5\uc740 \uad00\ub9ac \ub3c4\uba54\uc778 \ub0b4\uc5d0\uc11c \uc218\ud589\ub429\ub2c8\ub2e4.<\/li>\n<\/ul>\n<p>\uae08\uc735 \ub77c\uc774\uc120\uc2a4 \uc694\uad6c \uc0ac\ud56d\uc774\ub098 \uc815\ubd80 \uc2dc\uc2a4\ud15c \uc694\uad6c \uc0ac\ud56d \ub4f1 \ub9e4\uc6b0 \ub192\uc740 \uc8fc\uc694 \uc561\uc138\uc2a4 \uc694\uad6c \uc0ac\ud56d\uc774 \uc788\ub294 \uc2dc\ub098\ub9ac\uc624\uc5d0 \uc801\ud569\ud569\ub2c8\ub2e4.<\/p>\n<h5><strong>2. FIPS 140-2 \ub808\ubca8 3 \ud45c\uc900 \uc900\uc218<\/strong><\/h5>\n<p>CloudHSM\uc758 \ud558\ub4dc\uc6e8\uc5b4 \uc7a5\uce58\ub294 \ub2e4\uc74c \ud14c\uc2a4\ud2b8\ub97c \ud1b5\uacfc\ud588\uc2b5\ub2c8\ub2e4.<\/p>\n<ul>\n<li>FIPS 140-2 \ub808\ubca8 3 \ubcf4\uc548 \uc778\uc99d<\/li>\n<\/ul>\n<p>\uc774\ub294 \uc804 \uc138\uacc4\uc801\uc73c\ub85c \ub110\ub9ac \uc778\uc815\ubc1b\ub294 \ucd5c\uace0 \uc218\uc900\uc758 HSM \ubcf4\uc548 \uc778\uc99d \uc911 \ud558\ub098\uc785\ub2c8\ub2e4.<\/p>\n<p>\uc801\uc6a9 \ub300\uc0c1:<\/p>\n<ul>\n<li>\uae08\uc735 \uacb0\uc81c \uc2dc\uc2a4\ud15c<\/li>\n<li>\uc740\ud589 \ud575\uc2ec \uc2dc\uc2a4\ud15c<\/li>\n<li>\uc554\ud638\ud654\ub41c \uae30\uacc4 \uc218\uc900 \ubcf4\uc548 \uc2dc\uc2a4\ud15c<\/li>\n<li>\ud558\ub4dc\uc6e8\uc5b4 \uc554\ud638\ud654 \uc694\uad6c \uc0ac\ud56d\uc774 \ud3ec\ud568\ub41c \uc0b0\uc5c5 \uaddc\uc815<\/li>\n<\/ul>\n<h5><strong>3. \uace0\uac00\uc6a9\uc131 \ubc0f \uc790\ub3d9 \ud655\uc7a5<\/strong><\/h5>\n<p>CloudHSM\uc744 \uc0ac\uc6a9\ud558\uba74 \uae30\uc5c5\uc774 \ubc30\ud3ec\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4. <strong>\ub2e4\uc911 \ub178\ub4dc HSM \ud074\ub7ec\uc2a4\ud130<\/strong>,\uac00\uc9c0\ub2e4:<\/p>\n<ul>\n<li>\ub2e4\uc911 AZ \ubc30\ud3ec<\/li>\n<li>\uc790\ub3d9 \uc7a5\uc560 \uc870\uce58<\/li>\n<li>\ubd80\ud558 \ubd84\uc0b0<\/li>\n<li>\uc218\ud3c9\uc801 \ud655\uc7a5\uc131<\/li>\n<\/ul>\n<p>\ub192\uc740 \ub3d9\uc2dc\uc131 \uc11c\uba85 \ubc0f \ubcf5\ud638\ud654\uc640 \uac19\uc740 \ub300\uaddc\ubaa8 \uc554\ud638\ud654 \uc791\uc5c5\uc5d0 \uc801\ud569\ud569\ub2c8\ub2e4.<\/p>\n<h5><strong>4. \ud45c\uc900 \uc554\ud638\ud654 \uc778\ud130\ud398\uc774\uc2a4 \uc9c0\uc6d0<\/strong><\/h5>\n<p>CloudHSM\uc740 \uc5c5\uacc4\uc5d0\uc11c \ub110\ub9ac \uc0ac\uc6a9\ub418\ub294 \uc554\ud638\ud654 \uc778\ud130\ud398\uc774\uc2a4\ub97c \uc9c0\uc6d0\ud569\ub2c8\ub2e4.<\/p>\n<ul>\n<li>PKCS#11<\/li>\n<li>\uc790\ubc14 JCE<\/li>\n<li>\ub9c8\uc774\ud06c\ub85c\uc18c\ud504\ud2b8 CNG<\/li>\n<\/ul>\n<p>\ub192\uc740 \ud638\ud658\uc131\uc73c\ub85c \ub2e4\uc74c\uacfc \uac19\uc740 \uae30\uc874 \ube44\uc988\ub2c8\uc2a4 \uc2dc\uc2a4\ud15c\uc5d0 \uc27d\uac8c \ud1b5\ud569\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<ul>\n<li>\uc99d\uba85\uc11c \ubc1c\uae09 \uc2dc\uc2a4\ud15c<\/li>\n<li>\ubcf4\uc548 \uac8c\uc774\ud2b8\uc6e8\uc774<\/li>\n<li>\ub0b4\ubd80 \uc554\ud638\ud654 \ud50c\ub7ab\ud3fc<\/li>\n<li>\uc7ac\ubb34 \uc704\ud5d8 \uad00\ub9ac \uc2dc\uc2a4\ud15c<\/li>\n<\/ul>\n<h5><strong>5. \uc720\uc5f0\ud55c \ubc30\ud3ec \uc635\uc158<\/strong><\/h5>\n<p>\uae30\uc5c5\uc740 \ucd94\uac00\uc801\uc778 \ub85c\uceec \ud558\ub4dc\uc6e8\uc5b4\ub97c \ubc30\ud3ec\ud558\uac70\ub098 \ud558\ub4dc\uc6e8\uc5b4 \uc870\ub2ec \ubc0f \ubc30\uc1a1 \uc8fc\uae30\ub97c \uac00\uc9c8 \ud544\uc694 \uc5c6\uc774 VPC \ub0b4\uc758 HSM \uc7a5\uce58\ub97c \ud1b5\ud574 \ub2e4\uc591\ud55c \uc554\ud638\ud654 \uc791\uc5c5\uc744 \uc218\ud589\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<p>\uae30\uc874 HSM \uc7a5\uce58\uc640 \ub2ec\ub9ac:<\/p>\n<ul>\n<li>\uc11c\ubc84\uc2e4 \uacf5\uac04\uc774 \ud544\uc694\ud558\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4<\/li>\n<li>\ud558\ub4dc\uc6e8\uc5b4 \uc720\uc9c0 \uad00\ub9ac\uac00 \ud544\uc694\ud558\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4<\/li>\n<li>\ucd94\uac00 \uc554\ud638\ud654 \uc7a5\ube44 \uad6c\ub9e4 \ubd88\ud544\uc694<\/li>\n<li>\ubc30\ud3ec \uc2dc\uac04\uc774 \uba87 \uac1c\uc6d4\uc5d0\uc11c \uba87 \uc2dc\uac04\uc73c\ub85c \ub2e8\ucd95\ub418\uc5c8\uc2b5\ub2c8\ub2e4.<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h4><strong>AWS CloudHSM\uc758 \uc77c\ubc18\uc801\uc778 \ube44\uc988\ub2c8\uc2a4 \uc2dc\ub098\ub9ac\uc624<\/strong><\/h4>\n<h5><strong>1. \uae08\uc735\uc5c5\uacc4\uc758 \uace0\ub3c4 \ubcf4\uc548 \uc554\ud638\ud654 \ud544\uc694\uc131<\/strong><\/h5>\n<p>\ub2e4\uc74c\uc744 \ud3ec\ud568\ud558\ub418 \uc774\uc5d0 \uad6d\ud55c\ub418\uc9c0 \uc54a\uc74c:<\/p>\n<ul>\n<li>\uc740\ud589 \uacb0\uc81c \uc2dc\uc2a4\ud15c<\/li>\n<li>\uc81c3\uc790 \uacb0\uc81c \ud50c\ub7ab\ud3fc<\/li>\n<li>\uac70\ub798 \uc554\ud638\ud654 \uc11c\ube44\uc2a4<\/li>\n<li>\uae08\uc735 \ub77c\uc774\uc120\uc2a4\uc5d0 \ud0a4 \uc5d0\uc2a4\ud06c\ub85c\uac00 \ud544\uc694\ud569\ub2c8\ub2e4.<\/li>\n<\/ul>\n<p>\uae08\uc735 \uc0b0\uc5c5\uc5d0\uc11c\ub294 FIPS 140-2 \ub808\ubca8 3\uc758 \ud558\ub4dc\uc6e8\uc5b4 \uc554\ud638\ud654\uac00 \ud544\uc694\ud55c \uacbd\uc6b0\uac00 \ub9ce\uc740\ub370, CloudHSM\uc740 \uc774\ub97c \uc644\ubcbd\ud558\uac8c \ucda9\uc871\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<h5><strong>2. \uacf5\uacf5 \uc11c\ube44\uc2a4 \ubc0f \uc815\ubd80 \ud074\ub77c\uc6b0\ub4dc \ud504\ub85c\uc81d\ud2b8<\/strong><\/h5>\n<p>\ub2e4\uc74c\uacfc \uac19\uc774 \uc5c4\uaca9\ud55c \ub370\uc774\ud130 \ubcf4\uc548 \ubc0f \uaddc\uc815 \uc900\uc218\uac00 \ud544\uc694\ud55c \uc2dc\ub098\ub9ac\uc624:<\/p>\n<ul>\n<li>\uc815\ubd80 \ud50c\ub7ab\ud3fc<\/li>\n<li>\uacf5\uacf5 \uc548\uc804 \uc2dc\uc2a4\ud15c<\/li>\n<li>\uad6d\uac00 \uc554\ud638 \uc2dc\uc2a4\ud15c \uc804\ud658 \ub2e8\uacc4\uc758 \uc554\ud638\ud654 \uacc4\ud68d<\/li>\n<\/ul>\n<p>CloudHSM\uc740 \ubbfc\uac10\ud55c \ub370\uc774\ud130 \ud0a4\uac00 \uae30\uc5c5 \uad00\ub9ac \ub3c4\uba54\uc778\uc744 \ubc97\uc5b4\ub098\uc9c0 \uc54a\ub3c4\ub85d \ubcf4\uc7a5\ud569\ub2c8\ub2e4.<\/p>\n<h5><strong>3. SSL\/TLS \ud0a4 \ubcf4\ud638 \ubc0f \uc131\ub2a5 \uac00\uc18d\ud654<\/strong><\/h5>\n<p>\ub9ce\uc740 \ub192\uc740 \ub3d9\uc2dc\uc131 \uc6f9 \uc11c\ube44\uc2a4\uc5d0\ub294 \ub2e4\uc74c\uc774 \ud544\uc694\ud569\ub2c8\ub2e4.<\/p>\n<ul>\n<li>\ub300\uaddc\ubaa8 TLS \ud578\ub4dc\uc170\uc774\ud06c<\/li>\n<li>\uace0\uc131\ub2a5 SSL \ud130\ubbf8\ub110<\/li>\n<li>\uc554\ud638\ud654 \uc131\ub2a5 \uac00\uc18d<\/li>\n<\/ul>\n<p>CloudHSM\uc740 \uc77c\ubd80 \ucef4\ud4e8\ud305 \ubd80\ud558\ub97c \ucc98\ub9ac\ud558\uace0 \uc804\ubc18\uc801\uc778 \uc2dc\uc2a4\ud15c \uc131\ub2a5\uc744 \uac1c\uc120\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<h5><strong>4. PKI(\uacf5\uac1c\ud0a4\uae30\ubc18\uad6c\uc870) \uc2dc\uc2a4\ud15c \uad6c\ucd95<\/strong><\/h5>\n<p>CloudHSM\uc740 \ub2e4\uc74c\uacfc \uac19\uc740 \uc6a9\ub3c4\ub85c \uc0ac\uc6a9\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<ul>\n<li>CA(\uc778\uc99d \uae30\uad00)<\/li>\n<li>RA(\ub4f1\ub85d \uae30\uad00)<\/li>\n<li>\ub0b4\ubd80 \uc778\uc99d \uc2dc\uc2a4\ud15c<\/li>\n<\/ul>\n<p>\ub8e8\ud2b8 \uc778\uc99d\uc11c\uc640 \uc911\uc694\ud55c \uac1c\uc778 \ud0a4\uac00 \uac00\uc7a5 \ub192\uc740 \uc218\uc900\uc758 \ud558\ub4dc\uc6e8\uc5b4\uc5d0\uc11c \ubcf4\ud638\ub418\ub294\uc9c0 \ud655\uc778\ud558\uc138\uc694.<\/p>\n<p>&nbsp;<\/p>\n<h4><strong>CloudHSM\uacfc AWS KMS\uc758 \ucc28\uc774\uc810<\/strong><\/h4>\n<p>\uc774 \ud504\ub85c\uc81d\ud2b8\ub294 AWS CloudHSM\uacfc AWS KMS \ud0a4 \uc81c\uc5b4\ub97c \ud65c\uc6a9\ud558\uc5ec \uc644\ubcbd\ud55c \uc0ac\uc6a9\uc790 \uc81c\uc5b4\ub97c \uc81c\uacf5\ud569\ub2c8\ub2e4. AWS \uad00\ub9ac\ud615 \ud0a4 \uc778\ud504\ub77c \uaca9\ub9ac \uae30\ub2a5, \ud558\ub4dc\uc6e8\uc5b4 \uaca9\ub9ac, FIPS 140-2 L3 \ud558\ub4dc\uc6e8\uc5b4 \ubc0f \uc18c\ud504\ud2b8\uc6e8\uc5b4 \ud1b5\ud569\uc744 \ud2b9\uc9d5\uc73c\ub85c \ud558\uba70, FIPS 140-2 L2\uc758 \ub192\uc740 \ube44\uc6a9 \ubb38\uc81c\ub97c \ud574\uacb0\ud569\ub2c8\ub2e4. \ub610\ud55c \uae08\uc735, \uc815\ubd80, \uc5c4\uaca9\ud55c \uaddc\uc815 \uc900\uc218\uac00 \uc694\uad6c\ub418\ub294 \uc77c\ubc18 \uc560\ud50c\ub9ac\ucf00\uc774\uc158, \uadf8\ub9ac\uace0 \ubcf5\uc7a1\uc131\uc774 \ub192\uace0 \uc720\uc9c0 \uad00\ub9ac \uc694\uad6c \uc0ac\ud56d\uc774 \ub0ae\uc740 \uc77c\uc0c1\uc801\uc778 \uc554\ud638\ud654\uc640 \uac19\uc740 \uc0ac\uc6a9 \uc2dc\ub098\ub9ac\uc624\uc5d0 \ub530\ub77c \uacfc\uae08\uc5d0 \ud544\uc694\ud55c HSM \uc778\uc2a4\ud134\uc2a4 \uc218\ub97c \uc904\uc774\ub294 \ubb38\uc81c\ub3c4 \ud574\uacb0\ud569\ub2c8\ub2e4. HSM \ub178\ub4dc\ub97c \ucd94\uac00\ud558\uc5ec \uc790\ub3d9 \ud655\uc7a5\uc744 \ud1b5\ud574 \uc131\ub2a5 \ud655\uc7a5\uc744 \uc989\uc2dc \uad6c\ud604\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<p>\uac04\ub2e8\ud788 \ub9d0\ud574\uc11c:<\/p>\n<p><strong>\uac00\uc7a5 \ub192\uc740 \uc218\uc900\uc758 \ud0a4 \uc81c\uc5b4\uc640 FIPS 140-2 \ub808\ubca8 3\uc774 \ud544\uc694\ud55c \uacbd\uc6b0 CloudHSM\uc744 \uc0ac\uc6a9\ud558\uc138\uc694. \uadf8\ub807\uc9c0 \uc54a\uc740 \uacbd\uc6b0 \uc77c\ubc18\uc801\uc73c\ub85c KMS\ub85c \ucda9\ubd84\ud569\ub2c8\ub2e4.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<h4><strong>AWS CloudHSM\uc758 \ube44\uc6a9 \uad6c\uc870<\/strong><\/h4>\n<p>CloudHSM\uc758 \uc8fc\uc694 \ube44\uc6a9\uc740 \ub2e4\uc74c\uacfc \uac19\uc2b5\ub2c8\ub2e4.<\/p>\n<ol>\n<li><strong>HSM \uc778\uc2a4\ud134\uc2a4 \uc2dc\uac04\ub2f9 \uc694\uae08<\/strong>(\uc218\ub7c9\uc5d0 \ub530\ub77c \uccad\uad6c)<\/li>\n<li><strong>\ub370\uc774\ud130 \uc804\uc1a1 \uc694\uae08<\/strong>(\uc8fc\ub85c VPC \ub0b4\uc5d0\uc11c, \uc77c\ubc18\uc801\uc73c\ub85c \ub354 \ub0ae\uc740 \uc218\uc900\uc5d0\uc11c)<\/li>\n<li><strong>\ucd94\uac00 \uc6b4\uc601 \ube44\uc6a9 \ubc1c\uc0dd \uac00\ub2a5<\/strong>(\ub85c\uadf8, \ubaa8\ub2c8\ud130\ub9c1 \ub4f1)<\/li>\n<\/ol>\n<p>CloudHSM\uc740 \ub3c5\ub9bd\ud615 \ud558\ub4dc\uc6e8\uc5b4 \ub9ac\uc18c\uc2a4\uc774\ubbc0\ub85c \uc804\ubc18\uc801\uc778 \uac00\uaca9\uc774 KMS\ubcf4\ub2e4 \ub192\uc544 \ub192\uc740 \ubcf4\uc548 \uc2dc\ub098\ub9ac\uc624\uc5d0 \uc801\ud569\ud569\ub2c8\ub2e4.<\/p>\n<p>\ud544\uc694\ud558\uc2dc\uba74 AWS CloudHSM \uac00\uaca9\uc5d0 \ub300\ud55c \uc804\ubb38 \uae30\uc0ac\ub97c \uc791\uc131\ud574 \ub4dc\ub9ac\uaca0\uc2b5\ub2c8\ub2e4.<\/p>\n<p>&nbsp;<\/p>\n<h4><strong>\ud074\ub77c\uc6b0\ub4dc\uc5d0\uc11c<\/strong><\/h4>\n<p>AWS \uacf5\uc778 \ub9ac\uc140\ub7ec\ub85c\uc11c \uc6b0\ub9ac\ub294 \uae30\uc5c5\uc5d0 \ub2e4\uc74c\uc744 \ud3ec\ud568\ud55c \uc5d4\ub4dc\ud22c\uc5d4\ub4dc CloudHSM \uc194\ub8e8\uc158\uc744 \uc81c\uacf5\ud569\ub2c8\ub2e4.<\/p>\n<h5><strong>1. \ubcf4\uc548 \uc194\ub8e8\uc158 \ucee8\uc124\ud305 \ubc0f \uc544\ud0a4\ud14d\ucc98 \uc124\uacc4<\/strong><\/h5>\n<p>\uadc0\ud558\ub97c \uc704\ud55c \ub9de\ucda4\ud615 \uc11c\ube44\uc2a4:<\/p>\n<ul>\n<li>\ud0a4 \uad00\ub9ac \uc544\ud0a4\ud14d\ucc98<\/li>\n<li>HSM \ud074\ub7ec\uc2a4\ud130 \uc124\uacc4<\/li>\n<li>\uaddc\uc815 \uc900\uc218 \ubc0f \uac10\uc0ac \uc194\ub8e8\uc158<\/li>\n<\/ul>\n<p>\uc2dc\uc2a4\ud15c\uc774 \uc5c5\uacc4 \uc694\uad6c \uc0ac\ud56d\uc744 \ucda9\uc871\ud558\ub294\uc9c0 \ud655\uc778\ud558\uc138\uc694.<\/p>\n<h5><strong>2. CloudHSM \uc778\uc2a4\ud134\uc2a4 \ubc30\ud3ec \ubc0f \ud1b5\ud569 \uc9c0\uc6d0<\/strong><\/h5>\n<p>\ud3ec\ud568\ud558\ub2e4:<\/p>\n<ul>\n<li>\ube44\uc988\ub2c8\uc2a4 \uc2dc\uc2a4\ud15c\uacfc\uc758 \ud1b5\ud569<\/li>\n<li>PKCS#11, JCE, CNG \ub4dc\ub77c\uc774\ubc84 \uad6c\uc131<\/li>\n<li>\ud074\ub7ec\uc2a4\ud130 \ud655\uc7a5 \ubc0f \uc131\ub2a5 \ucd5c\uc801\ud654<\/li>\n<\/ul>\n<p>\uae30\uc5c5\uc758 \ud074\ub77c\uc6b0\ub4dc \ub9c8\uc774\uadf8\ub808\uc774\uc158 \ud504\ub85c\uc138\uc2a4\uc758 \ubcf5\uc7a1\uc131\uc744 \uc904\uc785\ub2c8\ub2e4.<\/p>\n<h5><strong>3. \ube44\uc6a9 \ucd5c\uc801\ud654 \ubc0f \uc0ac\uc6a9 \uacc4\ud68d<\/strong><\/h5>\n<p>\uc791\uc5c5 \ubd80\ud558\uc5d0 \ub530\ub77c \uac00\uc7a5 \uacbd\uc81c\uc801\uc778 HSM \ub178\ub4dc \uc218\ub97c \uacc4\ud68d\ud569\ub2c8\ub2e4.<\/p>\n<h5><strong>4. AWS \ubc14\uc6b0\ucc98 \ubc0f \ud560\uc778 \uc815\ucc45 \uc2e0\uccad \uc9c0\uc6d0<\/strong><\/h5>\n<p>\uae30\uc5c5\uc758 \ud074\ub77c\uc6b0\ub4dc \ub3c4\uc785 \ube44\uc6a9\uc744 \uc904\uc774\uace0 \uc608\uc0b0 \ud65c\uc6a9\ub3c4\ub97c \uac1c\uc120\ud558\uc138\uc694.<\/p>\n<h5><strong>5. \uae30\uc5c5 \uc548\uc804 \uad50\uc721<\/strong><\/h5>\n<p>\ub0b4\ubd80 \ud300\uc774 CloudHSM\uc758 \uc0ac\uc6a9\ubc95, \ubaa8\ubc94 \uc0ac\ub840 \ubc0f \ubcf4\uc548 \uc0ac\uc591\uc744 \uc644\ubcbd\ud558\uac8c \uc775\ud790 \uc218 \uc788\ub3c4\ub85d \ub3c4\uc640\uc8fc\uc138\uc694.<\/p>\n<p>&nbsp;<\/p>\n<h4><strong>\uacb0\ub860<\/strong><\/h4>\n<p>AWS CloudHSM\uc740 \uae30\uc5c5\uc5d0 \uc9c4\uc815\ud55c \ud558\ub4dc\uc6e8\uc5b4 \uc218\uc900\uc758 \ud0a4 \ubcf4\ud638 \uae30\ub2a5\uc744 \uc81c\uacf5\ud558\uba70, \uace0\ub3c4\uc758 \ubcf4\uc548 \uc554\ud638\ud654 \uc2dc\uc2a4\ud15c\uc744 \uad6c\ucd95\ud558\uace0 \uae08\uc735 \ubc0f \uc815\ubd80 \uaddc\uc81c \uc694\uad6c \uc0ac\ud56d\uc744 \ucda9\uc871\ud558\ub294 \ub370 \uc911\uc694\ud55c \uc778\ud504\ub77c\uc785\ub2c8\ub2e4.<\/p>\n<p>\ud68c\uc0ac\uac00 \ud0a4 \ubcf4\uc548, PKI \uc124\uc815, \uc554\ud638\ud654 \uc131\ub2a5 \ubcd1\ubaa9 \ud604\uc0c1 \ub610\ub294 \uc5c5\uacc4 \uaddc\uc815 \uc900\uc218 \uc555\ubc15\uacfc \uac19\uc740 \ubb38\uc81c\uc5d0 \uc9c1\uba74\ud574 \uc788\ub2e4\uba74 CloudHSM\uc740 \uace0\ub824\ud560 \ub9cc\ud55c \uc194\ub8e8\uc158\uc785\ub2c8\ub2e4.<\/p>","protected":false},"excerpt":{"rendered":"<p>\ub370\uc774\ud130 \ubcf4\uc548, \uac1c\uc778 \uc815\ubcf4 \ubcf4\ud638 \ubc0f \uaddc\uc815 \uc900\uc218\uc5d0 \ub300\ud55c \uc694\uad6c \uc0ac\ud56d\uc774 \uc810\uc810 \ub354 \uc5c4\uaca9\ud574\uc9d0\uc5d0 \ub530\ub77c \uc810\uc810 \ub354 \ub9ce\uc740 \uae30\uc5c5\uc774 \ud575\uc2ec \uad00\ub9ac \uc778\ud504\ub77c\ub97c \uc6b0\uc120\uc2dc\ud558\uae30 \uc2dc\uc791\ud588\uc2b5\ub2c8\ub2e4.<\/p>","protected":false},"author":1,"featured_media":4100,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[65],"tags":[],"class_list":["post-4098","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technical-sharing"],"_links":{"self":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts\/4098","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/comments?post=4098"}],"version-history":[{"count":1,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts\/4098\/revisions"}],"predecessor-version":[{"id":4104,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/posts\/4098\/revisions\/4104"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/media\/4100"}],"wp:attachment":[{"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/media?parent=4098"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/categories?post=4098"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/aws-oncloudai.com\/ko\/wp-json\/wp\/v2\/tags?post=4098"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}