Search

AWS Certificate Manager (ACM)

AWS Certificate Manager (ACM)

์ธ์ฆ์„œ๋ฅผ ์†์‰ฝ๊ฒŒ ๋ฐœ๊ธ‰, ๊ฐฑ์‹  ๋ฐ ๋ฐฐํฌํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ฃผ๋Š” AWS ์„œ๋น„์Šค

์ฃผ์š” ๊ธฐ๋Šฅ

โ€ข
์ธ์ฆ์„œ ๋ฐœ๊ธ‰:
โ—ฆ
ACM์€ ํผ๋ธ”๋ฆญ ๋ฐ ํ”„๋ผ์ด๋น— SSL/TLS ์ธ์ฆ์„œ๋ฅผ ๋ฌด๋ฃŒ๋กœ ๋ฐœ๊ธ‰ํ•ฉ๋‹ˆ๋‹ค.
โ—ฆ
ํผ๋ธ”๋ฆญ ์ธ์ฆ์„œ๋Š” ๋„๋ฉ”์ธ ๊ฒ€์ฆ(Domain Validation, DV) ์ธ์ฆ์„œ๋ฅผ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.
โ€ข
์ž๋™ ๊ฐฑ์‹ :
โ—ฆ
ACM์€ ์ธ์ฆ์„œ๋ฅผ ์ž๋™์œผ๋กœ ๊ฐฑ์‹ ํ•ฉ๋‹ˆ๋‹ค. ์ˆ˜๋™์œผ๋กœ ๊ฐฑ์‹ ํ•  ํ•„์š”๊ฐ€ ์—†์–ด ์šด์˜ ํšจ์œจ์„ฑ์ด ๋†’์•„์ง‘๋‹ˆ๋‹ค.
โ€ข
์‰ฌ์šด ํ†ตํ•ฉ:
โ—ฆ
ACM ์ธ์ฆ์„œ๋Š” Amazon CloudFront, Elastic Load Balancing (ELB), API Gateway, AWS CloudFormation ๋“ฑ ๋‹ค์–‘ํ•œ AWS ์„œ๋น„์Šค์™€ ์‰ฝ๊ฒŒ ํ†ตํ•ฉํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
โ€ข
๋ณด์•ˆ ๊ด€๋ฆฌ:
โ—ฆ
AWS Key Management Service (KMS)์™€ ํ†ตํ•ฉํ•˜์—ฌ ์ธ์ฆ์„œ๋ฅผ ์•ˆ์ „ํ•˜๊ฒŒ ์ €์žฅํ•˜๊ณ  ๊ด€๋ฆฌํ•ฉ๋‹ˆ๋‹ค.

์ฃผ์š” ์‚ฌ์šฉ ์˜ˆ์‹œ

1. CloudFront์— ์ธ์ฆ์„œ ์—ฐ๊ฒฐ

CloudFront ๋ฐฐํฌ ์ƒ์„ฑ:
โ€ข
CloudFront ์ฝ˜์†”์—์„œ ์ƒˆ๋กœ์šด ๋ฐฐํฌ๋ฅผ ์ƒ์„ฑํ•˜๊ฑฐ๋‚˜ ๊ธฐ์กด ๋ฐฐํฌ๋ฅผ ํŽธ์ง‘ํ•ฉ๋‹ˆ๋‹ค.
โ€ข
"Distribution Settings"์—์„œ "SSL Certificate" ์„น์…˜์„ ์ฐพ์Šต๋‹ˆ๋‹ค.
โ€ข
"Custom SSL Certificate" ์˜ต์…˜์„ ์„ ํƒํ•˜๊ณ , ACM์—์„œ ๋ฐœ๊ธ‰๋œ ์ธ์ฆ์„œ๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
โ€ข
์„ค์ •์„ ์ €์žฅํ•˜๊ณ  ๋ฐฐํฌ๋ฅผ ์™„๋ฃŒํ•ฉ๋‹ˆ๋‹ค.

2. ELB์— ์ธ์ฆ์„œ ์—ฐ๊ฒฐ

ELB ์„ค์ •:
โ€ข
EC2 ์ฝ˜์†”์—์„œ ๋กœ๋“œ ๋ฐธ๋Ÿฐ์„œ๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
โ€ข
๋กœ๋“œ ๋ฐธ๋Ÿฐ์„œ์˜ ๋ฆฌ์Šค๋„ˆ ์„ค์ •์—์„œ HTTPS ๋ฆฌ์Šค๋„ˆ๋ฅผ ์ถ”๊ฐ€ํ•˜๊ฑฐ๋‚˜ ๊ธฐ์กด HTTP ๋ฆฌ์Šค๋„ˆ๋ฅผ HTTPS๋กœ ๋ณ€๊ฒฝํ•ฉ๋‹ˆ๋‹ค.
โ€ข
"SSL Certificate" ์„น์…˜์—์„œ "Choose an ACM Certificate" ์˜ต์…˜์„ ์„ ํƒํ•˜๊ณ  ACM ์ธ์ฆ์„œ๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
โ€ข
์„ค์ •์„ ์ €์žฅํ•ฉ๋‹ˆ๋‹ค.

์ธ์ฆ์„œ ๋ฐœ๊ธ‰

1.
Certificate Manager
2.
์š”์ฒญ
3.
ํผ๋ธ”๋ฆญ ์ธ์ฆ์„œ ์š”์ฒญ
4.
์š”์ฒญ ์™„๋ฃŒ
5.
Route 53 ์—์„œ ๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ
6.
๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ ์™„๋ฃŒ

Certificate Manager

์š”์ฒญ

ํผ๋ธ”๋ฆญ ์ธ์ฆ์„œ ์š”์ฒญ

์™„์ „ํžˆ ์ •๊ตํ™”๋œ ๋„๋ฉ”์ธ ์ด๋ฆ„ : aloha-qr.com
[์ด ์ธ์ฆ์„œ์— ๋‹ค๋ฅธ ์ด๋ฆ„ ์ถ”๊ฐ€]
โ€ข
์ด๋ฆ„ : www.aloha-qr.com

์š”์ฒญ ์™„๋ฃŒ

์ด์ œ [Route 53 ์—์„œ ๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ] ๋ฒ„ํŠผ์„ ํด๋ฆญํ•˜์—ฌ ๋ ˆ์ฝ”์Šค ์ƒ์„ฑ ํ™”๋ฉด์œผ๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค.

Route 53 ์—์„œ ๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ

๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ ์™„๋ฃŒ

๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ์ด ์™„๋ฃŒ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ด์ œ ์ƒ์„ฑ๋œ ์ธ์ฆ์„œ๊ฐ€ ๋„๋ฉ”์ธ์— ์ ์šฉ๋ฉ๋‹ˆ๋‹ค. ์ต์ผ(1์ผ) ํ›„์— ์ ์šฉ๋œ๋‹ค๋Š” ์ •๋ณด๋„ ์žˆ๊ณ , ์ €๊ฐ™์€ ๊ฒฝ์šฐ์—๋Š” 1์‹œ๊ฐ„ ์ด๋‚ด์— ์ ์šฉ๋œ ๊ฒƒ๊ฐ™์Šต๋‹ˆ๋‹ค.

https ์ž๋ฌผ์‡  ์กฐ์•„์š”

์—ฐ๊ด€ ํŽ˜์ด์ง€

โ€ข
๋„๋ฉ”์ธ ๋“ฑ๋ก AWS Route53
โ€ข
https (SSL) ์ธ์ฆ์„œ ์„ค์ • AWS Certificate Manager (ACM)
โ€ข
์ •์  ์›น์‚ฌ์ดํŠธ ํ˜ธ์ŠคํŒ… AWS S3
โ€ข
CDN ๋ฐฐํฌ AWS Cloud Front