Tagged

security

A collection of 3 posts

[๋ฒˆ์—ญ] OpenSSH์˜ ๊ธฐ๋ณธ ํ‚ค ์•”ํ˜ธํ™”๋Š” ํ‰๋ฌธ๋ณด๋‹ค ๋ชปํ•ฉ๋‹ˆ๋‹ค
security

[๋ฒˆ์—ญ] OpenSSH์˜ ๊ธฐ๋ณธ ํ‚ค ์•”ํ˜ธํ™”๋Š” ํ‰๋ฌธ๋ณด๋‹ค ๋ชปํ•ฉ๋‹ˆ๋‹ค

> ์ด ๊ธ€์€ Latacora์—์„œ ์ž‘์„ฑํ•œ The default OpenSSH key encryption is worse than plaintext [https://latacora.singles/2018/08/03/the-default-openssh.html]์˜ ๋ฒˆ์—ญ๊ธ€์ž…๋‹ˆ๋‹ค. ์•”ํ˜ธํ™”์— ๋Œ€ํ•œ ์ง€์‹์ด ๊นŠ์ง€ ์•Š๊ณ  ์˜๋ฌธ ๋ฒˆ์—ญ ์ „๋ฌธ๊ฐ€๊ฐ€ ์•„๋‹ˆ๊ธฐ ๋•Œ๋ฌธ์— ์˜ค์—ญ์ด ๋งŽ์„ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. (๋งŽ์„ ๊ฑฐ๋ผ ํ™•์‹ ํ•ฉ๋‹ˆ๋‹ค.) ์ด์— ๋Œ€ํ•ด์„œ๋Š” ๊ฐœ์ธ ์ด๋ฉ”์ผ๋กœ ๋ฌธ์˜์ฃผ์‹œ๋ฉด ๋ฐ”๋กœ ์ˆ˜์ •ํ•˜๊ฒ ์Šต๋‹ˆ๋‹ค. ๊ฐ์‚ฌํ•ฉ๋‹ˆ๋‹ค. ์ตœ๊ทผ์—

๋‹น์‹ ์ด ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ๋ฅผ ์‚ฌ์šฉํ•˜๋ฉด ์•ˆ๋  ์ˆ˜๋„ ์žˆ๋Š” ์ด์œ 
security

๋‹น์‹ ์ด ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ๋ฅผ ์‚ฌ์šฉํ•˜๋ฉด ์•ˆ๋  ์ˆ˜๋„ ์žˆ๋Š” ์ด์œ 

> ์ด ๊ธ€์€ Why you probably should not use a wildcard certificate [https://gist.github.com/joepie91/7e5cad8c0726fd6a5e90360a754fc568]์˜ ๋ฒˆ์—ญ๊ธ€์ž…๋‹ˆ๋‹ค. ์ตœ๊ทผ Let's Encrypted๋Š” ๋ฌด๋ฃŒ ์™€์ผ๋“œ์นด๋“œ ์ธ์ฆ์„œ [https://community.letsencrypt.org/t/acme-v2-and-wildcard-certificate-support-is-live/55579] ๋ฅผ ์ œ๊ณตํ•˜๊ธฐ ์‹œ์ž‘ํ–ˆ์Šต๋‹ˆ๋‹ค. ์ด๋Š” ๊ทธ๋™์•ˆ ๊ฐ’๋น„์ŒŒ๋˜ ์ƒ์šฉ ์ธ์ฆ์„œ๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ–ˆ๋˜ ์ด์œ  ์ค‘ ํ•˜๋‚˜๋ฅผ ์—†์• ์ค„ ์ข‹์€