์‹œํ๋ฆฌํ‹ฐ์ง€ํ˜ธ 2025. 5. 8. 16:09

 

๊ตฌ๋ถ„ On-Premise Public Cloud
AWS Azure GCP ์„ค๋ช…
์ปดํ“จํŒ… ์„œ๋ฒ„ EC2 VM Compute Engine ์‚ฌ์šฉ์ž๊ฐ€ OS ๋ฐ ์„œ๋ฒ„ ์†Œํ”„ํŠธ์›จ์–ด๋ฅผ ๋ฐฐํฌ, ๊ด€๋ฆฌ ๋ฐ ์œ ์ง€ ๊ด€๋ฆฌ
N/A Auto Scailing VM Scale Sets N/A ์ธ์Šคํ„ด์Šค๋ฅผ ์ž๋™์œผ๋กœ ์กฐ์ •
N/A Lambda Function Cloud Functions ์„œ๋ฒ„๋ฆฌ์Šค ์ฝ”๋“œ ์‹คํ–‰ ์„œ๋น„์Šค
๋„คํŠธ์›Œํฌ ๋ง, Zone VPC Virtual Network Virtual Private
Cloud
ํด๋ผ์šฐ๋“œ์—์„œ ๊ฒฉ๋ฆฌ๋œ ํ”„๋ผ์ด๋น— ํ™˜๊ฒฝ, ๊ฐ€์ƒ ๋„คํŠธ์›Œํ‚น ํ™˜๊ฒฝ์„ ์ œ๊ณต
VPN VPN VPN Gateway Cloud VPN ๊ฐ€์ƒ๋„คํŠธ์›Œํฌ ๋˜๋Š” ์˜จํ”„๋ ˆ๋ฏธ์Šค ๋„คํŠธ์›Œํฌ 
DNS Route 53 DNS Cloud DNS DNS ๋ ˆ์ฝ”๋“œ ๊ด€๋ฆฌ
์ „์šฉ์„  Direct Connect ExpressRoute Cloud
Interconnect
ํด๋ผ์šฐ๋“œ ๊ณต๊ธ‰์ž๋กœ ์ „์šฉ ํ”„๋ผ์ด๋น—๋ง ์—ฐ๊ฒฐ
L4 Switch NLB Load Balancer Cloud Load Balancing ๊ณ„์ธต 4 Load Balancer (TCP ๋˜๋Š” UDP) ์—์„œ ํŠธ๋ž˜ํ”ฝ ๋ถ€ํ•˜๋ฅผ ๋ถ„์‚ฐ
L7 Switch ALB Application
Gateway
  ๊ณ„์ธต 7 Load Balancer, SSL ์ข…๋ฃŒ ํ›„ ์ฟ ํ‚ค ๊ธฐ๋ฐ˜ ์„ธ์…˜ ์„ ํ˜ธ๋„ ๋ฐ ๋ถ€ํ•˜ ๋ถ„์‚ฐ ํŠธ๋ž˜ํ”ฝ์— ๋Œ€ํ•œ ๋ผ์šด๋“œ ๋กœ๋นˆ


์Šคํ† ๋ฆฌ์ง€

Local Disk EBS Disk Storage Persistent Disk I/O ์ง‘์•ฝ์  ์ฝ๊ธฐ/์“ฐ๊ธฐ ์ž‘์—…์„ ์œ„ํ•ด ์ตœ์ ํ™”๋œ ์Šคํ† ๋ฆฌ์ง€
NAS EFS File Storage Filestore ํŒŒ์ผ ์‹œ์Šคํ…œ ์Šคํ† ๋ฆฌ์ง€
๊ฐ์ฒด ์ €์žฅ์†Œ S3 Blob Storage Cloud Storage ๊ฐ์ฒด ์Šคํ† ๋ฆฌ์ง€
์•„์นด์ด๋ธŒ ์ €์žฅ์†Œ S3 Glacier ๋ณด๊ด€ ์•ก์„ธ์Šค ๊ณ„์ธต Cloud Storage
Archive
๋ณด๊ด€ ์Šคํ† ๋ฆฌ์ง€ (์ž˜ ์‚ฌ์šฉํ•˜์ง€ ์•Š์ง€๋งŒ ์˜ค๋žซ๋™์•ˆ ๋ณด๊ด€ํ•ด์•ผ ํ•˜๋Š” ๋ฐ์ดํ„ฐ๋ฅผ ์ €๋ ดํ•œ ๋น„์šฉ์œผ๋กœ ์ €์žฅํ•˜๊ธฐ ์œ„ํ•ด ์ œ๊ณต๋˜๋Š” ์ €์žฅ์†Œ ์œ ํ˜•์„ ๋งํ•จ)
๋„คํŠธ์›Œํฌ RDBMS Amazno RDS SQL Database Cloud SQL ๊ด€๊ณ„ํ˜• ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค
Database for MySQL
Database for PostgreSQL
NoSQL DB (ํ‚ค - ๊ฐ’) DynamoDB Cosmos DB Firestore Cloud ํ‚ค - ๊ฐ’ ๋ฌธ์„œ NoSQL, ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค
NoSQL DB (์ƒ‰์ธ) DocumentDB Filestore ๋ฌธ์„œ NoSQL ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค



๋ณด์•ˆ / ๊ฐ์‹œ




Anti-DDoS Shield DDoS Protection Google Cloud
Armor
DDoS (๋ถ„์‚ฐํ˜• ์„œ๋น„์Šค ๊ฑฐ๋ถ€) ๊ณต๊ฒฉ ๋ณดํ˜ธ
WAF WAF WAF   ์›น ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ฐฉํ™”๋ฒฝ
๊ฐ์‚ฌ๋„๊ตฌ Artifact Service Trust
Portal
N/A  
App ์ง„๋‹จ Amazon
Inspector
Security Center Web Security Scanner ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์˜ ๋ณด์•ˆ ์ทจ์•ฝ์„ฑ ํ‰๊ฐ€ ์„œ๋น„์Šค
IDS ์ด์ƒํ–‰์œ„ Amazon
GuardDuty
Advanced Threat Protection
(Defender for IoT)
Event Threat Detection ๋ณด์•ˆ ๋ชจ๋‹ˆํ„ฐ๋ง ์„œ๋น„์Šค
์„œ๋ฒ„ ๋ฐ App ์ƒํƒœ ๊ฐ์‹œ Amazon
CloudWatch
Application
Insights
Azure Sentinel
Cloud
Monitoring
๋ฆฌ์†Œ์Šค ๋ฐ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ชจ๋‹ˆํ„ฐ๋ง ์„œ๋น„์Šค
์ž‘์—… ๊ฐ์‹œ CloudTrail Monitor Cloud Audit Logs API ํ˜ธ์ถœ ๋กœ๊น… ์„œ๋น„์Šค
Flow Log VPC Flow Log NSG Flow Log N/A ๊ฐ€์ƒ๋„คํŠธ์›Œํฌ
Flow Log 
(VPC ๋„คํŠธ์›Œํฌ ํŠธ๋ž˜ํ”ฝ์˜ ํ๋ฆ„์„ ๊ธฐ๋กํ•˜๋Š” ๊ธฐ๋Šฅ ์ฆ‰, VPC ๋‚ด ๋ฆฌ์†Œ์Šค๋“ค ๊ฐ„์˜ ๋„คํŠธ์›Œํฌ ํ†ต์‹  ์ •๋ณด(IP, ํฌํŠธ, ํ”„๋กœํ† ์ฝœ, ํ—ˆ์šฉ/๊ฑฐ๋ถ€ ๋“ฑ)๋ฅผ ๋กœ๊ทธ ํ˜•ํƒœ๋กœ ์ˆ˜์ง‘ํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ค€๋‹ค.)

์ž๊ฒฉ์ฆ๋ช… / ์•”ํ˜ธํ™”


๊ตฌ์„ฑ ์ •๋ณด ํ™•์ธ Config Azure Portal
(Audit Logs)
Cloud ID AWS ๋“ฑ ๋ฆฌ์†Œ์Šค์˜ ๊ตฌ์„ฑ ์ƒํƒœ๋ฅผ ์ง€์†์ ์œผ๋กœ ์ถ”์ ํ•˜๊ณ  ๊ธฐ๋กํ•˜๋ฉฐ, ๊ตฌ์„ฑ ๋ณ€๊ฒฝ ์‚ฌํ•ญ์„ ๊ฐ์ง€ํ•˜๊ณ  ํ‰๊ฐ€ํ•  ์ˆ˜ ์žˆ๋„๋ก ํ•ด์ฃผ๋Š” ์„œ๋น„์Šค์ด๋‹ค. ์ฆ‰, ๋ฌด์—‡์ด ์–ธ์ œ ์–ด๋–ป๊ฒŒ ๋ฐ”๋€Œ์—ˆ๋Š”๊ฐ€? ๋ฅผ ์•Œ๋ ค์ฃผ๋Š” ๊ฐ์‚ฌ ๋ฐ ๊ทœ์ • ์ค€์ˆ˜ ๋„๊ตฌ์ด๋‹ค.
๊ณ„์ • ๋ฐ ๊ถŒํ•œ ๊ด€๋ฆฌ IAM Active Directory
Role based
Access Control
N/A ์ธ์ฆ์„œ๋ฅผ ์›ํ• ํ•˜๊ฒŒ ๋งŒ๋“ค๊ณ  ๊ด€๋ฆฌ
์ธ์ฆ์„œ ๊ด€๋ฆฌ ACM Internal of App
Service
Certificate
N/A ์ธ์ฆ์„œ๋ฅผ ์›ํ• ํ•˜๊ฒŒ ๋งŒ๋“ค๊ณ  ๊ด€๋ฆฌ
์•”ํ˜ธํ‚ค ๊ด€๋ฆฌ KMS
(Key Management Service)
N/A Cloud Key
Management
Service
์•”ํ˜ธํ™” ํ‚ค๋ฅผ ์•ˆ์ „ํ•˜๊ฒŒ ์ƒ์„ฑ, ์ €์žฅ, ๊ด€๋ฆฌ, ์‚ฌ์šฉํ•˜๋Š” ๊ด€๋ฆฌํ˜• ํ‚ค ๊ด€๋ฆฌ ์„œ๋น„์Šค์ด๋‹ค.