2025-10-09 16:34:25
๋ฐ˜์‘ํ˜•

๐Ÿ“˜ Q68. EC2 ์žฌํ•ด ๋ณต๊ตฌ ์†”๋ฃจ์…˜ (Disaster Recovery for EC2)

โ“ ๋ฌธ์ œ ์š”์•ฝ

Amazon EC2 ์ธ์Šคํ„ด์Šค์— ๋Œ€ํ•ด ์žฌํ•ด ๋ณต๊ตฌ(Disaster Recovery) ๊ธฐ๋Šฅ์„ ์ œ๊ณตํ•˜๋Š” AWS ์„œ๋น„์Šค ๋˜๋Š” ๊ธฐ๋Šฅ์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?
(2๊ฐœ ์„ ํƒ)


โœ… ์ •๋‹ต

B. EC2 Amazon Machine Images (AMIs)
C. Amazon Elastic Block Store (EBS) snapshots


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

์„ ํƒ์ง€ ์„ค๋ช…
B. EC2 Amazon Machine Images (AMIs) EC2 ์ธ์Šคํ„ด์Šค ๊ตฌ์„ฑ์„ ์ด๋ฏธ์ง€๋กœ ์ €์žฅํ•˜๋Š” ๊ธฐ๋Šฅ. OS, ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜, ์„ค์ • ๋“ฑ์„ ํฌํ•จํ•˜์—ฌ ์–ธ์ œ๋“  ๋™์ผํ•œ ์ธ์Šคํ„ด์Šค๋ฅผ ๋ณต์› ๊ฐ€๋Šฅ.
C. Amazon Elastic Block Store (EBS) snapshots EC2์— ์—ฐ๊ฒฐ๋œ EBS ๋ณผ๋ฅจ์„ ๋ฐฑ์—…ํ•˜๋Š” ๊ธฐ๋Šฅ. ์Šค๋ƒ…์ƒท์„ S3์— ์ €์žฅํ•˜์—ฌ ๋ฐ์ดํ„ฐ ์†์‹ค ์‹œ ๋ณต์› ๊ฐ€๋Šฅ.

๐Ÿง  ์ฆ‰, AMI๋Š” ์ธ์Šคํ„ด์Šค ์ž์ฒด๋ฅผ ๋ณต์ œํ•ด ๋ณต๊ตฌํ•˜๊ณ ,
EBS Snapshot์€ ๋ฐ์ดํ„ฐ ๋””์Šคํฌ๋ฅผ ๋ฐฑ์—…ํ•ด ๋ณต๊ตฌํ•ฉ๋‹ˆ๋‹ค.


โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
A. EC2 Reserved Instances ์žฅ๊ธฐ ์˜ˆ์•ฝ ์ธ์Šคํ„ด์Šค๋กœ ๋น„์šฉ ์ ˆ๊ฐ์šฉ ๋ณต๊ตฌ ๊ธฐ๋Šฅ ์•„๋‹˜ โŒ
D. AWS Shield DDoS ๊ณต๊ฒฉ ๋ฐฉ์–ด์šฉ ์„œ๋น„์Šค ๋ณต๊ตฌ(backup/restore)์™€ ๋ฌด๊ด€ โŒ
E. Amazon GuardDuty ์œ„ํ˜‘ ํƒ์ง€ ์„œ๋น„์Šค ๋ณต์› ๊ธฐ๋Šฅ ์—†์Œ โŒ

๐Ÿงฉ ๊ตฌ์กฐ ์‹œ๊ฐํ™” (Mermaid)

```mermaid
flowchart TD
    A[๐Ÿ’ป EC2 Instance] --> B[๐Ÿ–ผ๏ธ Create AMI Image]
    A --> C[๐Ÿ“ฆ EBS Volume]
    C --> D[๐Ÿ“ธ Take EBS Snapshot]
    B --> E[โ˜๏ธ Backup stored in S3]
    D --> E
    E --> F[๐Ÿ”„ Restore to new EC2 instance when needed]
```

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

๊ธฐ๋Šฅ ๋ชฉ์  ์ฃผ์š” ์‚ฌ์šฉ ์‹œ์ 
AMI (Amazon Machine Image) ์ธ์Šคํ„ด์Šค ์ „์ฒด ๋ณต์ œ/์žฌ์ƒ์„ฑ ์‹œ์Šคํ…œ ์žฅ์• , ์ƒˆ ๋ฆฌ์ „ ๋ณต๊ตฌ
EBS Snapshot ๋ฐ์ดํ„ฐ ๋ณผ๋ฅจ ๋ฐฑ์—… ์ฃผ๊ธฐ์  ๋ฐฑ์—…, DR ๋ณต์›
S3 Cross-Region Copy ์ง€์—ญ ๊ฐ„ ๋ฐฑ์—… ๋ณต์ œ ๋‹ค์ค‘ ๋ฆฌ์ „ DR ๊ตฌ์„ฑ

๐Ÿ“— ํ•œ ์ค„ ์ •๋ฆฌ

EC2 ์žฌํ•ด ๋ณต๊ตฌ์˜ ๊ธฐ๋ณธ์€ AMI + EBS Snapshot
→ ์‹œ์Šคํ…œ ์ด๋ฏธ์ง€ ๋ณต์› + ๋ฐ์ดํ„ฐ ๋ณต์› ์กฐํ•ฉ์ด ์™„๋ฒฝํ•œ DR ์ „๋žต! ๐Ÿ’ช


๐Ÿ“˜ Q82. Consolidated Billing — ํ†ตํ•ฉ ๊ฒฐ์ œ์˜ ์ด์ 

โ“ ๋ฌธ์ œ ์š”์•ฝ

AWS ํด๋ผ์šฐ๋“œ ์„œ๋น„์Šค์— ๋Œ€ํ•œ ํ†ตํ•ฉ ๊ฒฐ์ œ(Consolidated Billing) ์˜ ์žฅ์ ์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?
(2๊ฐœ ์„ ํƒ)


โœ… ์ •๋‹ต

A. Volume discounts
C. One bill for multiple accounts


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

์„ ํƒ์ง€ ์„ค๋ช…
A. Volume discounts (๋ณผ๋ฅจ ํ• ์ธ) ์—ฌ๋Ÿฌ ๊ณ„์ •์˜ ์‚ฌ์šฉ๋Ÿ‰์„ ํ•ฉ์‚ฐํ•ด ๊ณ„์‚ฐํ•˜๊ธฐ ๋•Œ๋ฌธ์—, ์ด ์‚ฌ์šฉ๋Ÿ‰์ด ์ปค์งˆ์ˆ˜๋ก ๋” ๋†’์€ ํ• ์ธ ํ˜œํƒ์„ ๋ฐ›์Œ (์˜ˆ: S3, EC2, ๋ฐ์ดํ„ฐ ์ „์†ก ๋“ฑ)
C. One bill for multiple accounts (์—ฌ๋Ÿฌ ๊ณ„์ •์— ๋Œ€ํ•œ ๋‹จ์ผ ์ฒญ๊ตฌ์„œ) ์—ฌ๋Ÿฌ AWS ๊ณ„์ •์„ ํ•œ ์กฐ์ง์œผ๋กœ ๋ฌถ์–ด ํ•˜๋‚˜์˜ ์ฒญ๊ตฌ์„œ๋กœ ๋น„์šฉ์„ ๊ด€๋ฆฌ ๊ฐ€๋Šฅ — ํšŒ๊ณ„ ๋ฐ ๊ฒฐ์ œ ๊ด€๋ฆฌ ๊ฐ„์†Œํ™”

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
B. A minimal additional fee for use ํ†ตํ•ฉ ๊ฒฐ์ œ๋Š” ๋ฌด๋ฃŒ ๊ธฐ๋Šฅ ์ถ”๊ฐ€ ์š”๊ธˆ ์—†์Œ โŒ
D. Installment payment options AWS๋Š” ํ• ๋ถ€ ๊ฒฐ์ œ ์˜ต์…˜ ์—†์Œ โŒ
E. Custom cost and usage budget creation ์ด๋Š” AWS Budgets ๊ธฐ๋Šฅ์— ํ•ด๋‹น ํ†ตํ•ฉ ๊ฒฐ์ œ์™€ ๋ณ„๊ฐœ โŒ

๐Ÿงฉ ๊ตฌ์กฐ ์‹œ๊ฐํ™” (Mermaid)

```mermaid
flowchart TD
    A1[๐Ÿ‘ฅ ์—ฌ๋Ÿฌ AWS ๊ณ„์ •] --> B1[๐Ÿข AWS Organizations]
    B1 --> C1[๐Ÿ’ณ Consolidated Billing]
    C1 --> D1[๐Ÿงพ ํ•˜๋‚˜์˜ ์ฒญ๊ตฌ์„œ๋กœ ํ†ตํ•ฉ ๊ด€๋ฆฌ]
    C1 --> E1[๐Ÿ’ฐ ํ•ฉ์‚ฐ ์‚ฌ์šฉ๋Ÿ‰ ๊ธฐ์ค€์œผ๋กœ Volume Discount ์ ์šฉ]
```

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

ํ•ญ๋ชฉ ์„ค๋ช…
๐Ÿ”น ์„œ๋น„์Šค AWS Organizations → Consolidated Billing ๊ธฐ๋Šฅ
๐Ÿ”น ์ฃผ์š” ์žฅ์  โ‘  ๋‹จ์ผ ์ฒญ๊ตฌ์„œ ๊ด€๋ฆฌ
โ‘ก ๋ณผ๋ฅจ ํ• ์ธ ๊ณต์œ 
๐Ÿ”น ์ถ”๊ฐ€ ๋น„์šฉ ์—†์Œ (Free Feature)
๐Ÿ”น ์—ฐ๊ณ„ ๊ธฐ๋Šฅ AWS Budgets, Cost Explorer, Cost Anomaly Detection

๐Ÿ“— ํ•œ ์ค„ ์ •๋ฆฌ

“ํ†ตํ•ฉ ๊ฒฐ์ œ(Consolidated Billing)”์€
์—ฌ๋Ÿฌ ๊ณ„์ •์„ ๋ฌถ์–ด ํ•œ ๋ฒˆ์— ๊ฒฐ์ œํ•˜๊ณ ,
์ „์ฒด ์‚ฌ์šฉ๋Ÿ‰ ๊ธฐ์ค€์œผ๋กœ ๋ณผ๋ฅจ ํ• ์ธ ํ˜œํƒ์„ ๋ฐ›๋Š” ๋ฌด๋ฃŒ ๊ธฐ๋Šฅ์ž…๋‹ˆ๋‹ค. ๐Ÿ’ณ๐Ÿ’ฐ


๐Ÿ“˜ Q89. Advantages of Moving to AWS Cloud

โ“ ๋ฌธ์ œ ์š”์•ฝ

AWS ํด๋ผ์šฐ๋“œ๋กœ ์ด์ „ํ–ˆ์„ ๋•Œ ์–ป์„ ์ˆ˜ ์žˆ๋Š” ์ด์ (advantages) ์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?
(2๊ฐœ ์„ ํƒ)


โœ… ์ •๋‹ต

B. The ability to use the pay-as-you-go model.
D. No longer having to guess what capacity will be required.


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

์„ ํƒ์ง€ ์„ค๋ช…
B. The ability to use the pay-as-you-go model AWS์˜ ํ•ต์‹ฌ ๊ฒฐ์ œ ๋ฐฉ์‹์œผ๋กœ, ์‚ฌ์šฉํ•œ ๋งŒํผ๋งŒ ๋น„์šฉ์„ ์ง€๋ถˆ(pay-as-you-go) ํ•ฉ๋‹ˆ๋‹ค. ์ดˆ๊ธฐ ํ•˜๋“œ์›จ์–ด ํˆฌ์ž๋น„์šฉ(CAPEX)์ด ํ•„์š” ์—†์Šต๋‹ˆ๋‹ค. ๐Ÿ’ฐ
D. No longer having to guess what capacity will be required AWS๋Š” Auto Scaling ๋ฐ On-Demand ๋ชจ๋ธ์„ ํ†ตํ•ด ์ˆ˜์š”์— ๋งž์ถฐ ์ž๋™์œผ๋กœ ์šฉ๋Ÿ‰ ์กฐ์ •์ด ๊ฐ€๋Šฅํ•˜๋ฏ€๋กœ, ๊ธฐ์กด์ฒ˜๋Ÿผ ์ธํ”„๋ผ ์šฉ๋Ÿ‰์„ ๋ฏธ๋ฆฌ ์˜ˆ์ธกํ•  ํ•„์š”๊ฐ€ ์—†์Šต๋‹ˆ๋‹ค. โš™๏ธ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์™œ ํ‹€๋ ธ๋Š”๊ฐ€ ์„ค๋ช…
A. Turn over all security responsibility to AWS โŒ AWS๋Š” ๊ณต์œ  ์ฑ…์ž„ ๋ชจ๋ธ(Shared Responsibility Model) ์— ๋”ฐ๋ผ ๋ณด์•ˆ ์ฑ…์ž„์„ ๊ณ ๊ฐ๊ณผ ๋ถ„๋‹ดํ•ฉ๋‹ˆ๋‹ค. AWS๊ฐ€ ์ „๋ถ€ ๋งก์ง€ ์•Š์Œ.
C. Full control over physical infrastructure โŒ ํด๋ผ์šฐ๋“œ ์‚ฌ์šฉ์ž๋Š” ๋ฌผ๋ฆฌ์  ์ธํ”„๋ผ์— ์ ‘๊ทผํ•  ์ˆ˜ ์—†์Œ. AWS๊ฐ€ ๊ด€๋ฆฌํ•ฉ๋‹ˆ๋‹ค.
E. No longer worrying about users access controls โŒ IAM ๋“ฑ ์‚ฌ์šฉ์ž ์ ‘๊ทผ ๊ถŒํ•œ ๊ด€๋ฆฌ๋Š” ์—ฌ์ „ํžˆ ๊ณ ๊ฐ์˜ ์ฑ…์ž„์ž…๋‹ˆ๋‹ค.

๐Ÿงฉ ๊ฐœ๋… ์‹œ๊ฐํ™” (Mermaid)

 
```mermaid
flowchart TD
    A["๐Ÿข On-Premise ํ™˜๊ฒฝ"] -->|๐Ÿšš Migration| B["โ˜๏ธ AWS Cloud"]
    B --> C1["๐Ÿ’ณ Pay-as-you-go<br>์š”๊ธˆ์ œ ๋ชจ๋ธ"]
    B --> C2["โš™๏ธ Elastic Capacity<br>ํƒ„๋ ฅ์  ์šฉ๋Ÿ‰"]
    C1 --> D1["๐Ÿ’ฐ ๋น„์šฉ ํšจ์œจ์„ฑ<br>(Cost Optimization)"]
    C2 --> D2["๐Ÿ“ˆ ํƒ„๋ ฅ์  ํ™•์žฅ<br>(Scalability)"]
```

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

ํ•ญ๋ชฉ ๋‚ด์šฉ
๐Ÿ’ฐ ๋น„์šฉ ํšจ์œจ์„ฑ ์‚ฌ์šฉ๋Ÿ‰ ๊ธฐ๋ฐ˜ ๊ณผ๊ธˆ(pay-as-you-go), ์ดˆ๊ธฐ ํˆฌ์ž๋น„์šฉ ์—†์Œ
โš™๏ธ ์œ ์—ฐ์„ฑ & ํ™•์žฅ์„ฑ ์ž๋™ ํ™•์žฅ, ์ˆ˜์š” ๊ธฐ๋ฐ˜ ์ž์› ์กฐ์ •
๐Ÿš€ ๋ฏผ์ฒฉ์„ฑ(Agility) ๋น ๋ฅธ ๋ฐฐํฌ ๋ฐ ํ”„๋กœ๋น„์ €๋‹
๐Ÿ”’ ๋ณด์•ˆ AWS์™€ ๊ณ ๊ฐ์˜ ๊ณต์œ  ์ฑ…์ž„ ๋ชจ๋ธ์— ๋”ฐ๋ผ ๋ถ„๋‹ด

๐Ÿ“— ํ•œ ์ค„ ์ •๋ฆฌ

AWS ํด๋ผ์šฐ๋“œ์˜ ๊ฐ€์žฅ ํฐ ์žฅ์ ์€
“๋น„์šฉ ํšจ์œจ์„ฑ(Pay-as-you-go)” + “์œ ์—ฐํ•œ ํ™•์žฅ์„ฑ(Elastic Capacity)” ์ž…๋‹ˆ๋‹ค. ๐ŸŒฉ๏ธ


๐Ÿ“˜ Q97. How does AWS Cloud computing help businesses reduce costs?

โ“ ๋ฌธ์ œ ์š”์•ฝ

AWS ํด๋ผ์šฐ๋“œ ์ปดํ“จํŒ…์€ ๊ธฐ์—…์ด ๋น„์šฉ์„ ์ ˆ๊ฐํ•˜๋Š” ๋ฐ ์–ด๋–ป๊ฒŒ ๋„์›€์„ ์ฃผ๋‚˜์š”?
(2๊ฐœ ์„ ํƒ)


โœ… ์ •๋‹ต

B. AWS enables capacity to be adjusted on demand
E. AWS eliminates many of the costs of building and maintaining on-premises data centers


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

์„ ํƒ์ง€ ์„ค๋ช…
B. AWS enables capacity to be adjusted on demand ํด๋ผ์šฐ๋“œ๋Š” ์ˆ˜์š”์— ๋งž์ถฐ ์ž์›์„ ์ฆ‰์‹œ ํ™•์žฅ/์ถ•์†Œ(Elasticity) ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ฆ‰, ๋ถˆํ•„์š”ํ•œ ๋ฆฌ์†Œ์Šค๋ฅผ ์œ ์ง€ํ•˜์ง€ ์•Š์•„ ๋‚ญ๋น„๋˜๋Š” ๋น„์šฉ์„ ์ ˆ์•ฝํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. โš™๏ธ
E. AWS eliminates many of the costs of building and maintaining on-premises data centers ๊ธฐ์—…์€ ๋ฌผ๋ฆฌ์  ์„œ๋ฒ„, ๋ƒ‰๊ฐ ์žฅ์น˜, ๋ณด์•ˆ, ์ „๋ ฅ, ์ธํ”„๋ผ ์œ ์ง€๋ณด์ˆ˜ ๋“ฑ์— ๋Œ€ํ•œ CapEx(์ž๋ณธ์  ์ง€์ถœ) ์„ ์ œ๊ฑฐํ•˜๊ณ , OpEx(์šด์˜๋น„์šฉ) ๊ตฌ์กฐ๋กœ ์ „ํ™˜ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๐Ÿ’ฐ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์™œ ํ‹€๋ ธ๋Š”๊ฐ€ ์„ค๋ช… 
A. Same prices in every Region โŒ AWS๋Š” ์ง€์—ญ(Region)์— ๋”ฐ๋ผ ์„œ๋น„์Šค ๋น„์šฉ์ด ๋‹ค๋ฆ„. (์˜ˆ: ์„œ์šธ ๋ฆฌ์ „ vs ๋ฒ„์ง€๋‹ˆ์•„ ๋ฆฌ์ „)
C. Discounts for idle EC2s โŒ EC2 ์ธ์Šคํ„ด์Šค๊ฐ€ ์œ ํœด ์ƒํƒœ์ผ ๋•Œ๋Š” ํ• ์ธ ์—†์Œ. ์˜คํžˆ๋ ค ๊ณ„์† ๋น„์šฉ ๋ฐœ์ƒ.
D. No data transfer cost to the Internet โŒ AWS → Internet์œผ๋กœ ๋‚˜๊ฐ€๋Š” ์•„์›ƒ๋ฐ”์šด๋“œ ํŠธ๋ž˜ํ”ฝ์€ ์š”๊ธˆ ๋ถ€๊ณผ๋จ. (๋‹จ, AWS ๋‚ด ์ „์†ก์€ ์ผ๋ถ€ ๋ฌด๋ฃŒ)

๐Ÿงฉ ๊ฐœ๋… ์‹œ๊ฐํ™” (Mermaid)

```mermaid
flowchart TD
    A[๐Ÿข On-Premises Data Center] -->|๐Ÿšš Migration| B[โ˜๏ธ AWS Cloud]
    B --> C1[โš™๏ธ On-Demand Capacity Scaling]
    B --> C2[๐Ÿ’ฐ No Upfront Hardware Costs]
    C1 --> D1[๐Ÿ“‰ Pay only for what you use]
    C2 --> D2[๐Ÿ—๏ธ Remove CapEx, use OpEx]
```

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

ํ•ญ๋ชฉ ๋‚ด์šฉ
๐Ÿ’ก ๋น„์šฉ ๊ตฌ์กฐ ๋ณ€ํ™” CAPEX → OPEX (์„ ํˆฌ์ž → ์‚ฌ์šฉ๋Ÿ‰ ๊ธฐ๋ฐ˜ ์ง€์ถœ)
โš™๏ธ ํƒ„๋ ฅ์  ํ™•์žฅ(Elasticity) ํ•„์š”ํ•œ ๋งŒํผ๋งŒ ์‚ฌ์šฉ, ๋ถˆํ•„์š”ํ•œ ๋ฆฌ์†Œ์Šค ์ œ๊ฑฐ
๐Ÿ’ณ ์š”๊ธˆ์ œ ๋ชจ๋ธ Pay-as-you-go (์‚ฌ์šฉํ•œ ๋งŒํผ ์ง€๋ถˆ)
๐Ÿ—๏ธ ์˜จํ”„๋ ˆ๋ฏธ์Šค ์ œ๊ฑฐ ํšจ๊ณผ ๋ฐ์ดํ„ฐ์„ผํ„ฐ ๊ตฌ์ถ•·์œ ์ง€๋ณด์ˆ˜ ๋น„์šฉ ์ ˆ๊ฐ

๐Ÿ“— ํ•œ ์ค„ ์ •๋ฆฌ

AWS๋Š” ํƒ„๋ ฅ์  ํ™•์žฅ(On-Demand Capacity) ๊ณผ
์˜จํ”„๋ ˆ๋ฏธ์Šค ์ œ๊ฑฐ(CapEx ์ ˆ๊ฐ) ๋ฅผ ํ†ตํ•ด
๊ธฐ์—…์˜ ๋น„์šฉ ํšจ์œจ์„ฑ(Cost Efficiency) ์„ ๊ทน๋Œ€ํ™”ํ•ฉ๋‹ˆ๋‹ค. ๐Ÿš€


๐Ÿ“˜ Q99. Responsibility of AWS when using AWS services

โ“ ๋ฌธ์ œ ์š”์•ฝ

AWS ์„œ๋น„์Šค๋ฅผ ์‚ฌ์šฉํ•  ๋•Œ, AWS๊ฐ€ ์ฑ…์ž„์ง€๋Š” ์˜์—ญ์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: C. Maintenance of physical and environmental controls


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

AWS์™€ ๊ณ ๊ฐ์€ ๋ณด์•ˆ ์ฑ…์ž„์„ ๊ณต์œ (Shared Responsibility) ํ•ฉ๋‹ˆ๋‹ค.
AWS๋Š” ํด๋ผ์šฐ๋“œ “์•ˆ์˜” ๋ณด์•ˆ(Security of the Cloud) ์„,
๊ณ ๊ฐ์€ ํด๋ผ์šฐ๋“œ “๋‚ด์˜” ๋ณด์•ˆ(Security in the Cloud) ์„ ๋‹ด๋‹นํ•ฉ๋‹ˆ๋‹ค.


โœ… AWS์˜ ์ฑ…์ž„ (Security of the Cloud)

์˜์—ญ ์„ค๋ช…
๐Ÿ—๏ธ ๋ฌผ๋ฆฌ์  ๋ณด์•ˆ (Physical Security) ๋ฐ์ดํ„ฐ์„ผํ„ฐ ์ถœ์ž… ํ†ต์ œ, ๊ฐ์‹œ ์‹œ์Šคํ…œ, ์ „๋ ฅ ๊ณต๊ธ‰, ๋ƒ‰๊ฐ ๋“ฑ
๐ŸŒŽ ํ™˜๊ฒฝ์  ์ œ์–ด (Environmental Controls) ํ™”์žฌ ๊ฐ์ง€, ๋ƒ‰๊ฐ, ์ „๋ ฅ ์ด์ค‘ํ™” ๋“ฑ ์ธํ”„๋ผ ์œ ์ง€
๐Ÿงฑ ํ•˜๋“œ์›จ์–ด ๋ฐ ๋„คํŠธ์›Œํฌ ์ธํ”„๋ผ ๊ด€๋ฆฌ ์„œ๋ฒ„, ์Šคํ† ๋ฆฌ์ง€, ๋„คํŠธ์›Œํฌ ์žฅ๋น„ ์œ ์ง€ ๋ฐ ๋ณด์•ˆ
๐Ÿงฉ ํ•˜์ดํผ๋ฐ”์ด์ € ๋ฐ ๋ฌผ๋ฆฌ์  ํ˜ธ์ŠคํŠธ ๊ด€๋ฆฌ EC2, EBS, RDS ๋“ฑ์„ ๊ตฌ๋™ํ•˜๋Š” ์ธํ”„๋ผ ๊ณ„์ธต ์šด์˜

โœ… ๊ณ ๊ฐ์˜ ์ฑ…์ž„ (Security in the Cloud)

์˜์—ญ ์„ค๋ช…
๐Ÿ‘ค IAM ์‚ฌ์šฉ์ž ๋ฐ ๊ถŒํ•œ ๊ด€๋ฆฌ ์‚ฌ์šฉ์ž, ๊ทธ๋ฃน, ์—ญํ• , ์ •์ฑ… ์ƒ์„ฑ ๋ฐ MFA ์„ค์ •
๐Ÿ”’ ๋ณด์•ˆ ๊ทธ๋ฃน / ๋„คํŠธ์›Œํฌ ACL ์„ค์ • ์ธ๋ฐ”์šด๋“œ·์•„์›ƒ๋ฐ”์šด๋“œ ํŠธ๋ž˜ํ”ฝ ์ œ์–ด
๐Ÿ’ป OS ๋ฐ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ํŒจ์น˜ ์ ์šฉ EC2 ์ธ์Šคํ„ด์Šค์˜ OS, DB, ๋ฏธ๋“ค์›จ์–ด ์—…๋ฐ์ดํŠธ
๐Ÿ“ฆ ๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™” ๋ฐ ๋ฐฑ์—… S3, RDS, DynamoDB ๋“ฑ ๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™” ๊ด€๋ฆฌ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์ด์œ 
A. Management of IAM user permissions IAM์€ ๊ณ ๊ฐ์ด ์ง์ ‘ ๊ด€๋ฆฌ โŒ ๊ณ ๊ฐ ์ฑ…์ž„
B. Creation of security group rules ๋„คํŠธ์›Œํฌ ์ ‘๊ทผ ์ œ์–ด๋„ ๊ณ ๊ฐ ์„ค์ • โŒ ๊ณ ๊ฐ ์ฑ…์ž„
D. Application of EC2 OS patches OS๋Š” EC2 ์‚ฌ์šฉ์ž ์˜์—ญ โŒ ๊ณ ๊ฐ ์ฑ…์ž„

๐Ÿงฉ ์‹œ๊ฐํ™” ์š”์•ฝ (Mermaid)

 
```mermaid
flowchart TD
    A["โ˜๏ธ AWS Responsibility<br>(Security of the Cloud)"] -->|๐Ÿ—๏ธ ๋ฐ์ดํ„ฐ์„ผํ„ฐ, ํ•˜๋“œ์›จ์–ด, ๋„คํŠธ์›Œํฌ| B["๐Ÿข ๋ฌผ๋ฆฌ์  & ํ™˜๊ฒฝ์  ์ œ์–ด"]
    A -->|๐Ÿงฑ ์ธํ”„๋ผ ๊ณ„์ธต| C["โš™๏ธ ํ•˜์ดํผ๋ฐ”์ด์ € ๋ฐ ์ธํ”„๋ผ ์œ ์ง€"]

    D["๐Ÿ‘ค Customer Responsibility<br>(Security in the Cloud)"] -->|๐Ÿ”’ ๋ฆฌ์†Œ์Šค ๋ณด์•ˆ| E["๐Ÿงฐ IAM, ๋ณด์•ˆ ๊ทธ๋ฃน, ํŒจ์น˜ ๊ด€๋ฆฌ"]
    D -->|๐Ÿ’พ ๋ฐ์ดํ„ฐ ๊ด€๋ฆฌ| F["๐Ÿ—„๏ธ ์•”ํ˜ธํ™” ๋ฐ ๋ฐฑ์—…"]
```

๐Ÿ“— ํ•œ ์ค„ ์ •๋ฆฌ

AWS๋Š” “ํด๋ผ์šฐ๋“œ ์ž์ฒด์˜ ๋ณด์•ˆ(Security of the Cloud)” ์„ ๋‹ด๋‹นํ•˜๊ณ ,
์‚ฌ์šฉ์ž๋Š” “ํด๋ผ์šฐ๋“œ ๋‚ด๋ถ€์˜ ๋ณด์•ˆ(Security in the Cloud)” ์„ ๊ด€๋ฆฌํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. ๐Ÿ”’


๋ฐ˜์‘ํ˜•