Home > Àüü±â»ç

[2009Á¤º¸º¸È£¼Ö·ç¼Ç º£½ºÆ®50]À×Ä«ÀÎÅͳÝ-nProtect WebFirewall

ÀÔ·Â : 2008-12-17 18:42
ÆäÀ̽ººÏ º¸³»±â Æ®À§ÅÍ º¸³»±â ³×À̹ö ¹êµå º¸³»±â īī¿À ½ºÅ丮 º¸³»±â ³×À̹ö ºí·Î±× º¸³»±â
[À¥¹æÈ­º®](ÁÖ)À×Ä«ÀÎÅͳÝ(http://www.inca.co.kr) - nProtect WebFirewall 


1. °³¿ä

nProtect WebFirewallÀº ¾ÇÀÇÀûÀÎ ÇØÅ· ½Ãµµ ¹× À¥À» ÅëÇÑ ¼Õ½¬¿î Á¢±ÙÀ» ÅëÇØ ÀǵµÇÏÁö ¾Ê¾Ò´ø Áß¿ä Á¤º¸°¡ ³ëÃâµÇ´Â À§Çè µîÀ» ¿øÃµ Â÷´Ü ÇÒ ¼ö ÀÖ´Â Á¦Ç°À¸·Î ¹æÈ­º®(N/F), ħÀÔŽÁö½Ã½ºÅÛ(IDS), ħÀÔ¹æÁö½Ã½ºÅÛ(IPS)µî ±âÁ¸ÀÇ  ³×Æ®¿öÅ© ±â¹ÝÀÇ º¸¾È ¼Ö·ç¼ÇÀ¸·Î´Â ¹æ¾î¿¡ ÇѰ谡 ÀÖ´Â HTTP/HTTPS ±âŸ Web service ÇÁ·ÎÅäÄݵ ´ëÇÑ À¥ ÇØÅ· °ø°ÝÀ» Â÷´Ü ÇÒ ¼ö ÀÖ´Â ±¹³»CCÀÎÁõ(EAL4)À» ȹµæÇÑ Appliance ±â¹ÝÀÇ À¥ ¾ÖÇø®ÄÉÀÌ¼Ç ¹æÈ­º®ÀÔ´Ï´Ù.


2. Á¦Ç° Àû¿ë°¡´ÉºÐ¾ß

- À¥»çÀÌÆ® º¸¾È : ºñÁî´Ï½º »çÀÌÆ®, E-Commerce, °ø°ø/±ÝÀ¶/Åë½Å ¹× ¿£ÅÍÇÁ¶óÀÌÁî

- À¥°èÁ¤ ¹× ÄÁÅÙÃ÷ º¸¾È : Identity Access, ÄÁÅÙÃ÷ ¸ð´ÏÅ͸µ, ÀÎÅÍ³Ý °Ô½ÃÆÇ, ÀÎÅÍ³Ý ºí·Î±×, HTML ȣȯ ÄÁÅÙÃ÷

- ÀüÀÚ°áÁ¦ ½Ã½ºÅÛ º¸¾È : ÀÎÅÍ³Ý Áõ¸í¼­ ¹ß±Þ, ÀÎÅÍ³Ý ¹ðÅ·, Ȩ¼îÇÎ ¹× ¼îÇθô, °¢Á¾ ÀüÀÚ»ó°Å·¡ ¹× ºô¸µ ½Ã½ºÅÛ µî

- ÀÎÆ®¶ó³Ý º¸¾È : ±×·ì¿þ¾î ¹× ERP µîÀ¥ ¾ÖÇø®ÄÉÀ̼Ç


3. Á¦Ç° Ư¡

3-1. Web Application Ãë¾àÁ¡ Â÷´Ü

- Positive Rule Àû¿ë ¸ðµ¨À» ÅëÇÑ OWASP 10´ë À¥ ÇØÅ· ´ëÀÀ

- ¼­¹ö Á¤º¸ º¯Á¶ ¹æÁö ±â´É

- SSLÀ» ÅëÇÑ ¼­¹ö / URLº° ÄÁÅÙÃ÷ ¾Ïȣȭ Áö¿ø

- Áß¿ä URL Á¢±Ù Çã¿ë IP List °ü¸®

- DDoS °ø°Ý ¹æ¾î ±â´É

- ¼­¹ö Á¤º¸ °¨Ã߱⠱â´É (Server: X-Powered-by: Çì´õ, ¿¡·¯ÄÚµå)

- ´Ù¾çÇÑ Alarm ±â´É ( µå·Ó / Log / Mail / Redirect / Warning)

3-2. Positive Rule(º¸¾È Rule ±¸¼º)

- OWASP¿¡¼­´Â À¥ ¾îÇø®ÄÉÀÌ¼Ç º¸¾ÈÀ» À§Çؼ­ Positive ¸ðµ¨À» ±ÇÀå

- À¥ ¼­¹ö/URL/Äõ¸® º°·Î Çã¿ëÇÒ ¼ö ÀÖ´Â ·êÀ» °¡Áö°í À¥ Æ®¸® ±¸¼º

- ÇØÄ¿ÀÇ À¥ ¼­¹ö ºÐ¼® ½Ãµµ ¹× °ø°ÝÀ» ¿øÃµÀûÀ¸·Î Â÷´Ü

3-3. °³ÀÎÁ¤º¸º¸È£

- Áֹεî·Ï¹øÈ£/½Å¿ëÄ«µå ¹øÈ£ À¯Ãâ Â÷´Ü

- ÄíŰ ¾Ïȣȭ ¹× ¼¼¼Ç º¯Á¶¹æ¾î·Î ¼¼¼Ç ÇÏÀÌÀçÅ· Â÷´Ü

- ±ÝÄ¢¾î °ü¸®¸¦ ÅëÇÑ ºÒ¹ý °Ô½Ã±Û ÀÚµ¿ Â÷´Ü

- Hidden Form º¯Á¶¹æ¾î¸¦ ÅëÇØ °³ÀÎ ¼¼¼Ç Á¤º¸ º¸¾È


4. ƯÀåÁ¡

CCÀÎÁõ(EAL4) ȹµæ, ±¹Á¤¿ø º¸¾ÈÀûÇÕ¼º °ËÁõÇÊ, Good Software(GS)ÀÎÁõ ȹµæ

 

[Á¤º¸º¸È£21c (info@boannews.com)]


<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>

  •  
  • 1
  • ÆäÀ̽ººÏ º¸³»±â Æ®À§ÅÍ º¸³»±â ³×À̹ö ¹êµå º¸³»±â īī¿À ½ºÅ丮 º¸³»±â ³×À̹ö ºí·Î±× º¸³»±â

  • ¡°
  •  SNS¿¡¼­µµ º¸¾È´º½º¸¦ ¹Þ¾Æº¸¼¼¿ä!! 
  • ¡±
2025 º¸¾È½ÃÀå ¹é¼­ À§Áîµð¿£¿¡½º 2018
¼³¹®Á¶»ç
SKÅÚ·¹ÄÞ ÇØÅ· »çÅ·ΠÃÖ±Ù ÀÕ½´°¡ µÇ°í ÀÖ´Â ¡®BPFµµ¾î¡¯ °ü·Ã, ¾î¶² ¼Ö·ç¼ÇÀ» »ç¿ëÁßÀΰ¡¿ä?
¾È·¦ V3 Net for Linux
¼Ò¸¸»ç Server-i
ÆÄÀÌ¿À¸µÅ© Á¡°Ë µµ±¸
À×Ä«ÀÎÅÍ³Ý Àü¿ë ¹é½Å
Æ®·»µå ¸¶ÀÌÅ©·Î ¹é½Å
±âŸ ±¹»ê(¼Ö·ç¼Ç¸íÀº ´ñ±Û·Î)
±âŸ ¿Ü»ê(¼Ö·ç¼Ç¸íÀº ´ñ±Û·Î)
»ç¿ëÇÏÁö ¾Ê´Â´Ù