KISA홈네트워크 보안가이드(2023. 12. 16.), (망분리 구성방안 명시 : 물리적 망분리, 논리적망분리)

2023-03-03
조회수 10906

게시일 : 2022-12-16


KISA 공지사항에 등록된 홈네트워크 보안가이드를 안내합니다.

안전한 홈네트워크 구성에 있어 네트워크 망분리 방안에 대한 내용을 명시하고 있습니다.


망분리에 대한 기준은 "개인정보의 기술적 관리적 보호조치 기준(제2021-3호) 해설서" 부록에 (78 Page)도에 명시되어 있는데요.

해댕 내용에는 물리적, 논리적 망분리에 대한 내용이 다음과 같은 방안을 제시하고 있습니다.

   O 물리적 망분리

      - 1대 컴퓨터 이용 망분리

      - 물리적 페쇄망 구성(SOC 등)

   O 논리적 망분리

      - 서버기반 논리적 망분리(VDI 등)

      - 컴퓨터 기반 논리적 망분리(CBC 등)


하지만 이번 "홈네트워크 가이드라인" 에 대한 망분리 방안은 다음과 같은 내용을 명시하고 있습니다. 

   O 물리적 망분리

      - 전용선 라우터를 이용한 망분리

      - 망분리 솔루션을 이용한 망분리

   O 논리적 망분리

      - VPN을 이용한 망분리

      - VLAN을 이용한 망분리


개인정보의 기술적 관리적 보호조치 기준에서 명시하는 망분리에 대한 의미와

홈네트워크 가이드라인에서 명시하는 망분리에 대한 의미가 명확하게 동일하게 보는지는 알 수 없지만,

기업에서 망분리 적용 업무시 참고하시면 좋을것 같습니다.


[목차]

1. 일반사항 ······································································ 1

    1.1 적용범위 ······························································· 1

    1.2 참고기준 ······························································· 1

    1.3 용어정의 ······························································· 1

2. 홈네트워크 구성 ························································ 3

    2.1 물리적 분리 방법 ··············································· 4

    2.2 논리적 분리 방법 ··············································· 6

3. 홈네트워크장비 보안요구사항 ································· 9

    3.1 일반사항 ····························································· 9

    3.2 단지네트워크장비 보안 ··································· 10

    3.3 홈게이트웨이 보안 ··········································· 18

    3.4 세대단말기 보안 ··············································· 21

    3.5 단지서버 보안 ··················································· 26


36e7362afda30.png


9ab78044befd3.png

80fc95bfc01c7.png


출처 : https://www.kisa.or.kr/401/form?postSeq=3057&page=3

카카오톡 채널 채팅하기 버튼