โ† IaC/Terraform Management

ISMS-P 2.9.2 ์„ฑ๋Šฅ ๋ฐ ์žฅ์• ๊ด€๋ฆฌ High Risk

์„ฑ๋Šฅ ๋ฐ ์žฅ์• ๊ด€๋ฆฌ๊ฐ€ ์ ์ ˆํžˆ ์ˆ˜ํ–‰๋˜๊ณ  ์žˆ๋Š”๊ฐ€?

ISMS-P 2.9.2๋Š” ์ •๋ณด์‹œ์Šคํ…œ ๊ฐ€์šฉ์„ฑ ๋ณด์žฅ์„ ์œ„ํ•ด ์„ฑ๋Šฅ ๋ฐ ์šฉ๋Ÿ‰์„ ๋ชจ๋‹ˆํ„ฐ๋งํ•˜๊ณ  ์žฅ์• ์— ํšจ๊ณผ์ ์œผ๋กœ ๋Œ€์‘ํ•˜๋„๋ก ์š”๊ตฌํ•ฉ๋‹ˆ๋‹ค. ํด๋ผ์šฐ๋“œ ํ™˜๊ฒฝ์—์„œ๋Š” CloudWatch ๋ชจ๋‹ˆํ„ฐ๋ง๊ณผ State ๋ฒ„์ „ ๊ด€๋ฆฌ ๊ธฐ๋ฐ˜ Rollback ์ฒด๊ณ„๋ฅผ ๊ตฌ์ถ•ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

๐Ÿ“‹

ISMS-P ์ธ์ฆ ๊ธฐ์ค€

ISMS-P 2.9.2 ์„ฑ๋Šฅ ๋ฐ ์žฅ์• ๊ด€๋ฆฌ ์š”๊ตฌ์‚ฌํ•ญ

2.9.2

์„ฑ๋Šฅ ๋ฐ ์žฅ์• ๊ด€๋ฆฌ

์ธ์ฆ ๊ธฐ์ค€ ์ •์˜

"์ •๋ณด์‹œ์Šคํ…œ์˜ ๊ฐ€์šฉ์„ฑ ๋ณด์žฅ์„ ์œ„ํ•˜์—ฌ ์„ฑ๋Šฅ ๋ฐ ์šฉ๋Ÿ‰ ์š”๊ตฌ์‚ฌํ•ญ์„ ์ •์˜ํ•˜๊ณ  ํ˜„ํ™ฉ์„ ์ง€์†์ ์œผ๋กœ ๋ชจ๋‹ˆํ„ฐ๋งํ•˜์—ฌ์•ผ ํ•˜๋ฉฐ, ์žฅ์•  ๋ฐœ์ƒ ์‹œ ํšจ๊ณผ์ ์œผ๋กœ ๋Œ€์‘ํ•˜๊ธฐ ์œ„ํ•œ ํƒ์ง€ยท๊ธฐ๋กยท๋ถ„์„ยท๋ณต๊ตฌยท๋ณด๊ณ  ๋“ฑ์˜ ์ ˆ์ฐจ๋ฅผ ์ˆ˜๋ฆฝยท๊ด€๋ฆฌํ•˜์—ฌ์•ผ ํ•œ๋‹ค."

๐Ÿ“Œ ํด๋ผ์šฐ๋“œ ํ™˜๊ฒฝ ์ ์šฉ ํฌ์ธํŠธ

  • CloudWatch๋กœ CPU, ๋ฉ”๋ชจ๋ฆฌ, ๋””์Šคํฌ ๋“ฑ ์ž„๊ณ„์น˜ ๋ชจ๋‹ˆํ„ฐ๋ง
  • CloudWatch Alarms๋กœ ์ž๋™ ์•Œ๋ฆผ ๋ฐ Auto Scaling ์—ฐ๋™
  • Terraform State ๋ฒ„์ „ ๊ด€๋ฆฌ๋กœ ์žฅ์•  ์‹œ Rollback ๊ฐ€๋Šฅ
  • CloudWatch Dashboards๋กœ ์‹ค์‹œ๊ฐ„ ํ˜„ํ™ฉ ํŒŒ์•…
  • EventBridge๋กœ ์žฅ์•  ์ด๋ฒคํŠธ ์ž๋™ ํƒ์ง€ ๋ฐ ๋Œ€์‘

โš ๏ธ ๋ฏธ์ค€์ˆ˜ ์‹œ ์‹ฌ์‚ฌ ์˜ํ–ฅ

  • ๊ฒฐํ•จ: ์„ฑ๋Šฅ ๋ฐ ์šฉ๋Ÿ‰ ์ž„๊ณ„์น˜ ๋ฏธ์ •์˜
  • ๊ฒฐํ•จ: ๋ชจ๋‹ˆํ„ฐ๋ง ์ฒด๊ณ„ ๋ฏธ๊ตฌ์ถ•
  • ๊ฒฐํ•จ: ์žฅ์•  ๋Œ€์‘ ์ ˆ์ฐจ ๋ฏธ์ˆ˜๋ฆฝ
  • ๊ฒฐํ•จ: ์žฅ์•  ์กฐ์น˜ ๋ณด๊ณ ์„œ ๋ฏธ์ž‘์„ฑ
  • ๊ฒฐํ•จ: Rollback ์ฒด๊ณ„ ๋ถ€์žฌ
๐Ÿ“„ KISA ISMS-P ์ธ์ฆ๊ธฐ์ค€ ์•ˆ๋‚ด์„œ โ†— โ˜๏ธ AWS CloudWatch Best Practices โ†—
๐Ÿ“ฐ

์‹ค์ œ ๋ณด์•ˆ ์‚ฌ๊ณ  ์‚ฌ๋ก€

์„ฑ๋Šฅ/์žฅ์• ๊ด€๋ฆฌ ๋ฏธํก์œผ๋กœ ๋ฐœ์ƒํ•œ ์‹ค์ œ ์‚ฌ๊ณ 

2024.07 Global

ํฌ๋ผ์šฐ๋“œ์ŠคํŠธ๋ผ์ดํฌ ์—…๋ฐ์ดํŠธ ์žฅ์• 

ํฌ๋ผ์šฐ๋“œ์ŠคํŠธ๋ผ์ดํฌ ์†Œํ”„ํŠธ์›จ์–ด ์—…๋ฐ์ดํŠธ ๊ฒฐํ•จ์œผ๋กœ ์ „ ์„ธ๊ณ„ 850๋งŒ ๋Œ€ Windows ์‹œ์Šคํ…œ BSOD ๋ฐœ์ƒ. ํ•ญ๊ณต, ๊ธˆ์œต, ์˜๋ฃŒ ๋“ฑ ๊ธ€๋กœ๋ฒŒ ์„œ๋น„์Šค ์ค‘๋‹จ. Rollback ์ฒด๊ณ„ ๋ฏธํก์œผ๋กœ ๋ณต๊ตฌ๊ฐ€ ์ง€์—ฐ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

๐Ÿ’ก ๊ตํ›ˆ: ๋ฐฐํฌ ์ „ ํ…Œ์ŠคํŠธ ๊ฐ•ํ™”, ๋‹จ๊ณ„์  ๋กค์•„์›ƒ, ์ฆ‰์‹œ ๋กค๋ฐฑ ์ฒด๊ณ„ ํ•„์ˆ˜

์ถœ์ฒ˜: CrowdStrike โ†—
2017 AWS us-east-1

AWS S3 ์žฅ์• ๋กœ ๊ธ€๋กœ๋ฒŒ ์„œ๋น„์Šค ์ค‘๋‹จ

AWS S3 us-east-1 ๋ฆฌ์ „ ์žฅ์• ๋กœ Slack, Trello, IFTTT ๋“ฑ ์ˆ˜์ฒœ ๊ฐœ ์„œ๋น„์Šค ๋™์‹œ ์ค‘๋‹จ. ๋‹จ์ผ ๋ฆฌ์ „ ์˜์กด์„ฑ๊ณผ DR ์ฒด๊ณ„ ๋ถ€์žฌ๊ฐ€ ์›์ธ์ด์—ˆ์Šต๋‹ˆ๋‹ค.

๐Ÿ’ก ๊ตํ›ˆ: ๋ฉ€ํ‹ฐ ๋ฆฌ์ „ ๊ตฌ์„ฑ, ์žฅ์•  ํƒ์ง€ ์ž๋™ํ™”, DR ๊ณ„ํš ์ˆ˜๋ฆฝ ํ•„์ˆ˜

์ถœ์ฒ˜: AWS Summary โ†—
โšก

ํด๋ผ์šฐ๋“œ ํ™˜๊ฒฝ์˜ ์œ„ํ—˜

๋ชจ๋‹ˆํ„ฐ๋ง ๋ฏธ๊ตฌ์ถ• ๋ฐ Rollback ๋ถˆ๊ฐ€ ์ƒํ™ฉ

โŒ AS-IS: ๋ชจ๋‹ˆํ„ฐ๋ง ๋ฏธ๊ตฌ์ถ•, Rollback ๋ถˆ๊ฐ€

# ๋ชจ๋‹ˆํ„ฐ๋ง ์—†๋Š” EC2 ์ธ์Šคํ„ด์Šค
resource "aws_instance" "web" {
  ami           = "ami-12345678"
  instance_type = "t3.large"
  # monitoring = false (๊ธฐ๋ณธ๊ฐ’)
}

# CloudWatch Alarm ์—†์Œ
# โ†’ CPU 100%๊ฐ€ ๋˜์–ด๋„ ์•Œ ์ˆ˜ ์—†์Œ
# โ†’ ์žฅ์•  ๋ฐœ์ƒ ํ›„์—์•ผ ์ธ์ง€

# Terraform State - ๋ฒ„์ „ ๊ด€๋ฆฌ ์—†์Œ
terraform {
  backend "s3" {
    bucket = "my-state-bucket"
    key    = "terraform.tfstate"
    # ๋ฒ„์ „ ๊ด€๋ฆฌ ๋ฏธํ™œ์„ฑํ™” โ†’ Rollback ๋ถˆ๊ฐ€!
  }
}

์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ๋ฏธํ™œ์„ฑํ™”, ์ž„๊ณ„์น˜ ์•Œ๋žŒ ์—†์Œ, State ๋ฒ„์ „ ๊ด€๋ฆฌ ์—†์–ด ์žฅ์•  ๋ณต๊ตฌ ๋ถˆ๊ฐ€

โœ“ TO-BE: CloudWatch + ๋ฒ„์ „ ๊ด€๋ฆฌ ํ™œ์„ฑํ™”

# ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ํ™œ์„ฑํ™”
resource "aws_instance" "web" {
  ami           = data.aws_ami.amazon_linux.id
  instance_type = var.instance_type

  monitoring = true  # 1๋ถ„ ๊ฐ„๊ฒฉ ๋ฉ”ํŠธ๋ฆญ
}

# CloudWatch Alarm ์„ค์ •
resource "aws_cloudwatch_metric_alarm" "cpu" {
  alarm_name  = "cpu-high"
  metric_name = "CPUUtilization"
  threshold   = 80  # ์ž„๊ณ„์น˜ ์ •์˜
  alarm_actions = [aws_sns_topic.alerts.arn]
}

# S3 ๋ฒ„์ „ ๊ด€๋ฆฌ ํ™œ์„ฑํ™”
resource "aws_s3_bucket_versioning" "state" {
  versioning_configuration {
    status = "Enabled"  # Rollback ์ง€์›
  }
}

1๋ถ„ ๊ฐ„๊ฒฉ ๋ฉ”ํŠธ๋ฆญ, ์ž„๊ณ„์น˜ ์•Œ๋žŒ, State ๋ฒ„์ „ ๊ด€๋ฆฌ๋กœ ์žฅ์•  ํƒ์ง€ ๋ฐ ๋ณต๊ตฌ ๊ฐ€๋Šฅ

ISMS-P 2.9.2 ์œ„๋ฐ˜ ์‚ฌํ•ญ

โ—

์„ฑ๋Šฅ ์ž„๊ณ„์น˜ ๋ฏธ์ •์˜ - CPU, ๋ฉ”๋ชจ๋ฆฌ, ๋””์Šคํฌ ์ž„๊ณ„์น˜ ์„ค์ • ์—†์Œ

โ—

๋ชจ๋‹ˆํ„ฐ๋ง ์ฒด๊ณ„ ๋ถ€์žฌ - ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ๋ฏธํ™œ์„ฑํ™”

โ—

์žฅ์•  ์•Œ๋ฆผ ๋ถˆ๊ฐ€ - CloudWatch Alarm ๋ฏธ๊ตฌ์„ฑ

โ—

Rollback ๋ถˆ๊ฐ€ - State ๋ฒ„์ „ ๊ด€๋ฆฌ ๋ฏธํ™œ์„ฑํ™”

๐Ÿ”

์‚ฌ์ „ ํƒ์ง€ ๋ฐฉ์•ˆ

Terraform Plan ๋‹จ๊ณ„์—์„œ OPA/Rego ์ •์ฑ…์œผ๋กœ ์„ฑ๋Šฅ ๋ชจ๋‹ˆํ„ฐ๋ง ์„ค์ • ๊ฒ€์ฆ

์„ฑ๋Šฅ/์žฅ์• ๊ด€๋ฆฌ ์„ค์ • ํƒ์ง€ ๋กœ์ง

๋ฆฌ์†Œ์Šค ์œ ํ˜• ํŒ๋‹จ ์กฐ๊ฑด ๊ฒฐ๊ณผ
EC2 Instance monitoring = false Medium - ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ๊ถŒ๊ณ 
EC2 Instance monitoring = true โœ“ Pass - ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ํ™œ์„ฑํ™”
CloudWatch Alarm CPU/๋ฉ”๋ชจ๋ฆฌ/๋””์Šคํฌ ์•Œ๋žŒ ๋ฏธ์„ค์ • High - ํ•„์ˆ˜ ์•Œ๋žŒ ๋ˆ„๋ฝ
CloudWatch Alarm ํ•ต์‹ฌ ๋ฉ”ํŠธ๋ฆญ ์•Œ๋žŒ ์„ค์ • โœ“ Pass - ์•Œ๋žŒ ์ฒด๊ณ„ ๊ตฌ์ถ•
S3 Backend ๋ฒ„์ „ ๊ด€๋ฆฌ ๋ฏธํ™œ์„ฑํ™” High - Rollback ๋ถˆ๊ฐ€
S3 Backend versioning.status = Enabled โœ“ Pass - Rollback ๊ฐ€๋Šฅ
๐Ÿ””

์‚ฌํ›„ ๋Œ€์‘ ๋ฐฉ์•ˆ

CloudWatch ์‹ค์‹œ๊ฐ„ ๋ฉ”ํŠธ๋ฆญ ๊ธฐ๋ฐ˜ ์„ฑ๋Šฅ ์ด์ƒ ๋ฐ ์žฅ์•  ํƒ์ง€

CloudWatch Runtime ์ด๋ฒคํŠธ ๋Œ€์‘ ๋กœ์ง

๋ชจ๋‹ˆํ„ฐ๋ง ๋Œ€์ƒ ํƒ์ง€ ์กฐ๊ฑด ๋Œ€์‘ ์กฐ์น˜
CloudWatch CPUUtilization > 80% High - SNS ์•Œ๋ฆผ ๋ฐœ์†ก Auto
CloudWatch CPUUtilization > 90% (์ง€์†) Critical - Auto Scaling ํŠธ๋ฆฌ๊ฑฐ Auto
CloudWatch MemoryUtilization > 85% High - SNS ์•Œ๋ฆผ ๋ฐœ์†ก Auto
CloudWatch DiskSpaceUtilization > 90% Critical - ๊ธด๊ธ‰ ์•Œ๋ฆผ ๋ฐœ์†ก Auto
Health Check HealthStatus = Unhealthy Critical - EC2 ์ž๋™ ๋ณต๊ตฌ Auto
โœ“

์กฐ์น˜ ๊ฐ€์ด๋“œ

CloudWatch + Auto Scaling + State Versioning ๊ตฌ์„ฑ

๊ถŒ์žฅ ์„ค์ • - CloudWatch + Auto Scaling + State Versioning
monitoring.tf
# EC2 - ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ํ™œ์„ฑํ™”
resource "aws_instance" "web" {
  ami           = data.aws_ami.amazon_linux.id
  instance_type = var.instance_type

  monitoring = true  # ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง (1๋ถ„ ๊ฐ„๊ฒฉ)

  tags = {
    Name   = "web-server"
    ISMS-P = "2.9.2"
  }
}

# CloudWatch Alarm - CPU ์‚ฌ์šฉ๋ฅ  ๋ชจ๋‹ˆํ„ฐ๋ง
resource "aws_cloudwatch_metric_alarm" "cpu_high" {
  alarm_name          = "cpu-utilization-high"
  comparison_operator = "GreaterThanThreshold"
  evaluation_periods  = 2
  metric_name         = "CPUUtilization"
  namespace           = "AWS/EC2"
  period              = 300  # 5๋ถ„
  statistic           = "Average"
  threshold           = 80   # ์ž„๊ณ„์น˜ 80%
  alarm_description   = "CPU ์‚ฌ์šฉ๋ฅ  80% ์ดˆ๊ณผ ์‹œ ์•Œ๋ฆผ"

  alarm_actions = [
    aws_sns_topic.alerts.arn,
    aws_autoscaling_policy.scale_up.arn  # Auto Scaling ์—ฐ๋™
  ]
}

# Auto Scaling - ์„ฑ๋Šฅ ์ž„๊ณ„์น˜ ์ดˆ๊ณผ ์‹œ ์ž๋™ ํ™•์žฅ
resource "aws_autoscaling_policy" "scale_up" {
  name                   = "scale-up"
  scaling_adjustment     = 1
  adjustment_type        = "ChangeInCapacity"
  cooldown               = 300
  autoscaling_group_name = aws_autoscaling_group.web.name
}

# State ์ €์žฅ์šฉ S3 - ๋ฒ„์ „ ๊ด€๋ฆฌ ํ™œ์„ฑํ™” (Rollback ์ง€์›)
resource "aws_s3_bucket_versioning" "terraform_state" {
  bucket = aws_s3_bucket.terraform_state.id
  versioning_configuration {
    status = "Enabled"  # Rollback์„ ์œ„ํ•œ ๋ฒ„์ „ ๊ด€๋ฆฌ ํ•„์ˆ˜
  }
}

# EventBridge - EC2 ์ƒํƒœ ๋ณ€๊ฒฝ ์ด๋ฒคํŠธ ํƒ์ง€
resource "aws_cloudwatch_event_rule" "ec2_state_change" {
  name        = "ec2-state-change"
  description = "EC2 ์ธ์Šคํ„ด์Šค ์ƒํƒœ ๋ณ€๊ฒฝ ํƒ์ง€"

  event_pattern = jsonencode({
    source      = ["aws.ec2"]
    detail-type = ["EC2 Instance State-change Notification"]
    detail = {
      state = ["stopped", "terminated"]
    }
  })
}

๐Ÿ’ก ํ•ต์‹ฌ ํฌ์ธํŠธ

  • CloudWatch ์ƒ์„ธ ๋ชจ๋‹ˆํ„ฐ๋ง ํ™œ์„ฑํ™”๋กœ 1๋ถ„ ๋‹จ์œ„ ๋ฉ”ํŠธ๋ฆญ ์ˆ˜์ง‘
  • CloudWatch Alarms๋กœ ์ž„๊ณ„์น˜ ์ •์˜ (CPU 80%, ๋””์Šคํฌ 85%)
  • Auto Scaling ์—ฐ๋™์œผ๋กœ ์„ฑ๋Šฅ ์ž„๊ณ„์น˜ ์ดˆ๊ณผ ์‹œ ์ž๋™ ํ™•์žฅ
  • S3 ๋ฒ„์ „ ๊ด€๋ฆฌ ํ™œ์„ฑํ™”๋กœ State Rollback ๊ฐ€๋Šฅ
  • EventBridge๋กœ EC2 ์ƒํƒœ ๋ณ€๊ฒฝ ์ž๋™ ํƒ์ง€ ๋ฐ ์•Œ๋ฆผ
  • ์žฅ์•  ํƒ์ง€ยท๊ธฐ๋กยท๋ถ„์„ยท๋ณต๊ตฌยท๋ณด๊ณ  ์ „ ๊ณผ์ • ์ž๋™ํ™”

๐Ÿ“š ์ฐธ๊ณ  ์ž๋ฃŒ

โ˜๏ธ AWS CloudWatch Best Practices โ†— ๐Ÿ“˜ Terraform State Management โ†— ๐Ÿ”ง AWS Auto Scaling ๊ฐ€์ด๋“œ โ†—
๐Ÿ“Š

๋ฆฌํฌํŠธ ๋ฐฉ์•ˆ

ISMS-P ์‹ฌ์‚ฌ ์ฆ์  ๋ฐ ์ •๊ธฐ ๋ณด๊ณ 

๐Ÿ“‹ ์ ๊ฒ€ ํ•ญ๋ชฉ๋ณ„ ์ฆ์ 

์ ๊ฒ€ ํ•ญ๋ชฉ ์ฆ์  ์ž๋ฃŒ
์ž„๊ณ„์น˜ ์ •์˜ CloudWatch Alarm ์„ค์ • ์Šคํฌ๋ฆฐ์ƒท, ์ž„๊ณ„์น˜ ๋ฌธ์„œ
๋ชจ๋‹ˆํ„ฐ๋ง ์ฒด๊ณ„ CloudWatch Dashboard, ์•Œ๋žŒ ๋ชฉ๋ก
์žฅ์•  ๋Œ€์‘ EventBridge ๊ทœ์น™, Auto Scaling ์ •์ฑ…
Rollback ์ฒด๊ณ„ S3 ๋ฒ„์ „ ๊ด€๋ฆฌ ์„ค์ •, State ๋ฒ„์ „ ์ด๋ ฅ
์žฅ์•  ๊ธฐ๋ก CloudWatch Logs, ์žฅ์• ์กฐ์น˜๋ณด๊ณ ์„œ

๐Ÿ”ง ์ž๋™ํ™” ์ฆ์  ์ˆ˜์ง‘

# CloudWatch Alarm ๋ชฉ๋ก
aws cloudwatch describe-alarms \
  --alarm-name-prefix "cpu-" \
  --output table

# State ๋ฒ„์ „ ์ด๋ ฅ ํ™•์ธ (Rollback ๊ฐ€๋Šฅ ์—ฌ๋ถ€)
aws s3api list-object-versions \
  --bucket terraform-state \
  --prefix production/terraform.tfstate

# EC2 ๋ชจ๋‹ˆํ„ฐ๋ง ์ƒํƒœ ํ™•์ธ
aws ec2 describe-instances \
  --query 'Reservations[*].Instances[*].\
[InstanceId,Monitoring.State]'
โšก

BSG ์ฐจ๋ณ„์ 

๊ธฐ์กด ๋„๊ตฌ๊ฐ€ ๋†“์น˜๋Š” ์ ๊ฒ€ ์˜์—ญ

๊ธฐ์กด ๋„๊ตฌ ๋ฐฉ์‹

  • ํƒ์ง€ ๋ฐฉ์‹: CloudWatch ๋ฉ”ํŠธ๋ฆญ ๋‹จ์ˆœ ์กฐํšŒ
  • ํƒ์ง€ ๋กœ์ง: ๊ฐœ๋ณ„ ์•Œ๋žŒ ์„ค์ • ์—ฌ๋ถ€ ํ™•์ธ
  • ํ•œ๊ณ„: ์ž„๊ณ„์น˜ ์ ์ •์„ฑ ๊ฒ€์ฆ ๋ถˆ๊ฐ€
  • ํ•œ๊ณ„: Rollback ์ฒด๊ณ„ ํ†ตํ•ฉ ๊ฒ€์ฆ ๋ถˆ๊ฐ€
  • ํ•œ๊ณ„: ์žฅ์•  ๋Œ€์‘ ์ ˆ์ฐจ ์ž๋™ํ™” ๋ถˆ๊ฐ€

ํ•œ๊ณ„: ๊ฐœ๋ณ„ ๋ฆฌ์†Œ์Šค ์ ๊ฒ€๋งŒ ๊ฐ€๋Šฅ, ISMS-P ๊ด€์  ํ†ตํ•ฉ ๊ฒ€์ฆ ๋ถˆ๊ฐ€

BSG ์ ‘๊ทผ ๋ฐฉ์‹

  • ํƒ์ง€ ๋ฐฉ์‹: IaC + CloudWatch + State ๋ฒ„์ „ ํ†ตํ•ฉ ๊ฒ€์ฆ
  • ์‚ฌ์ „ ํƒ์ง€: ๋ชจ๋‹ˆํ„ฐ๋ง ์„ค์ •, ์ž„๊ณ„์น˜ ์ •์˜, Rollback ์ฒด๊ณ„ ๊ฒ€์ฆ
  • ์‚ฌํ›„ ๋Œ€์‘: ์„ฑ๋Šฅ ์ด์ƒ ํƒ์ง€, ์žฅ์•  ์ž๋™ ์•Œ๋ฆผ, ๋ณต๊ตฌ ๊ฐ€์ด๋“œ
  • ํ†ตํ•ฉ ์ ๊ฒ€: ๋ชจ๋‹ˆํ„ฐ๋ง + ์•Œ๋žŒ + Auto Scaling + Rollback ์ผ๊ด„
  • ์ฐจ๋ณ„์ : ์žฅ์•  ๋Œ€์‘ ์ž๋™ํ™” + State ๋ณต๊ตฌ ์ฒด๊ณ„ + ์‹ฌ์‚ฌ ์ฆ์ 

์ฐจ๋ณ„์ : ์ธ์ฆ ๊ธฐ์ค€ ๊ด€์ ์—์„œ ํƒ์ง€ โ†’ ์กฐ์น˜ โ†’ ์ฆ์  ์ „ ๊ณผ์ • ์ž๋™ํ™”

โ† ISMS-P ๋งคํ•‘ ๋ชฉ๋ก์œผ๋กœ ๋Œ์•„๊ฐ€๊ธฐ