HOME > Ä¿¹Â´ÏƼ > °øÁö»çÇ×
±ä±Þ] Çѱ¹ÀÎÅͳÝÁøÈï¿ø ȨÆäÀÌÁö º¯Á¶ Å뺸
ÀÌž¼ÒÇÁÆ®  etopsoft@naver.com 2010-08-14 17079
¾È³çÇϼ¼¿ä. E-TOPSOFT ÀÔ´Ï´Ù.




Çѱ¹ÀÎÅͳÝÁøÈï¿øÀ¸·ÎºÎÅÍ È¨ÆäÀÌÁö º¯Á¶ °ü·ÃÇÏ¿© Å뺸°¡ ¿Ô½À´Ï´Ù.




ÇØ´ç ÆäÀÌÁö¸¦ Á¶¼ÓÈ÷ º¹±¸ ¶Ç´Â »ðÀÔµÈ ÆäÀÌÁö¸¦ »èÁ¦ÇØ Áֽñ⠹ٶó¸ç, ±¸¹öÀüÀÇ Á¦·Îº¸µå ¹× PHP¸¦ »ç¿ëÇϰí ÀÖ´Â

À¥¼­¹öÀÇ °æ¿ì¿¡´Â ÇØ´ç ÇÁ·Î±×·¥À» ¾÷±×·¹À̵åÇÏ½Ã°í ¾Æ·¡ÀÇ ±Ç°í»çÇ׿¡ µû¶ó Á¶Ä¡¸¦ ÃëÇØÁֽñ⠹ٶø´Ï´Ù.





< ȨÆäÀÌÁö º¯Á¶¹æÁö¸¦ À§ÇÑ ±Ç°í »çÇ× >


¡Ø ȨÆäÀÌÁö º¸¾È °­È­ ÇÁ·Î±×·¥
o ȨÆäÀÌÁö °³¹ßÀÚ / °ü¸®ÀÚ¸¦ À§ÇÑ º¸¾È µµ±¸ »çÀÌÆ®
- http://toolbox.krcert.or.kr
o ȨÆäÀÌÁö ÇØÅ· ¹æÁöµµ±¸(CASTLE) ½Åû(ASP, PHP, JSP Áö¿ø)
- http://toolbox.krcert.or.kr/MMVF/MMVFView_V.aspx?MENU_CODE=55&PAGE_NUMBER=16
o À¥½©(¹éµµ¾î) ŽÁö ÇÁ·Î±×·¥(WHISTL) ½Åû
- http://toolbox.krcert.or.kr/MMVF/MMVFView_V.aspx?MENU_CODE=14&PAGE_NUMBER=15
o °ø°³À¥¹æÈ­º®(WebKnight, Mod-Security) ¼Ò°³
- http://toolbox.krcert.or.kr/MMVF/MMVFView_V.aspx?MENU_CODE=8&PAGE_NUMBER=13


¡Ø À¥ Ãë¾àÁ¡ Á¡°Ë ¼­ºñ½º ¾È³»
o ¹«·á À¥Ãë¾àÁ¡ Á¡°Ë ½Åû(Á¤º¸º¸È£ ÀηÂÀÌ ºÎÁ·ÇÑ Áß¼Ò±â¾÷ ¶Ç´Â ¼Ò±Ô¸ð ºñ¿µ¸® ´Üü ´ë»ó)
- http://toolbox.krcert.or.kr/MMVF/MMVFView_V.aspx?MENU_CODE=2&PAGE_NUMBER=17


¡Ø ȨÆäÀÌÁö º¸¾È°ü·Ã ¾È³»¼­ ¹× ÇØ¼³¼­
http://www.kisa.or.kr/jsp/public/laws/laws3.jsp
- Ä§ÇØ»ç°í ºÐ¼® ÀýÂ÷ ¾È³»¼­
- À¥¼­¹ö ±¸Ãà º¸¾ÈÁ¡°Ë ¾È³»¼­
- À¥¾îÇø®ÄÉÀÌ¼Ç º¸¾È ¾È³»¼­
- ȨÆäÀÌÁö °³¹ßº¸¾È ¾È³»¼­
- WebKnight¸¦ ÀÌ¿ëÇÑ IIS À¥¼­¹ö º¸¾È °­È­ ¾È³»¼­ (À©µµ¿ì IIS ¹æÈ­º®)
- ModSecurity¸¦ Ȱ¿ëÇÑ ¾ÆÆÄÄ¡ À¥¼­¹ö º¸¾È °­È­ ¾È³»¼­(¸®´ª½º Apache ¹æÈ­º®)



µÁ¼¶ -10¿ù ½Ã¹Î°ø¿øÀ¸·Î ¿­¸®´Â °ÍÀ» ȯ¿µÇÕ´Ï´Ù.
À¥ÇØÅ· ¹æ¾î¸¦ À§ÇÑ KrCERT/CC ±Ç°í »çÇ×
      


¿À´ÃÁ¢¼ÓÀÚ 20 ÀüüÁ¢¼ÓÀÚ 114857