[10๋ถ„ ํ…Œ์ฝ”ํ†ก] ๐Ÿญ ๋‹ค๋‹ˆ์˜ HTTPS

KIM YONG GUยท2023๋…„ 9์›” 30์ผ
0

์šฐ์•„ํ•œํ…Œํฌ

๋ชฉ๋ก ๋ณด๊ธฐ
16/41
post-thumbnail

HTTP VS HTTPS

HTTP(HyperText Transfer Protocol)

์„œ๋กœ ๋‹ค๋ฅธ ์‹œ์Šคํ…œ๋“ค ์‚ฌ์ด์—์„œ ํ†ต์‹ ์„ ์ฃผ๊ณ ๋ฐ›๊ฒŒ ํ•˜๋Š” ๊ฐ€์žฅ ๊ธฐ๋ณธ์ ์ธ ํ”„๋กœํ† ์ฝœ
์„œ๋ฒ„์—์„œ ๋ธŒ๋ฃจ์•„์ €๋กœ ๋ฐ์ดํ„ฐ๋กœ ์ „์†กํ•˜๋Š” ์šฉ๋„๋กœ ๊ฐ€์žฅ ๋งŽ์ด ์‚ฌ์šฉํ•จ
์•”ํ˜ธํ™”๊ฐ€ ๋˜์ง€ ์•Š์•„ ๋ฐ์ดํ„ฐ ํƒˆ์ทจ ์šฐ๋ ค๊ฐ€ ์žˆ์Œ

HTTPS(HyperText Transfer Protocol Secure)

SSL(Security Socket Layer, ๋ณด์•ˆ ์†Œ์ผ“ ๊ณ„์ธต) ์‚ฌ์šฉ
SSL์€ ์„œ๋ฒ„์™€ ๋ธŒ๋ผ์šฐ์ € ์‚ฌ์ด์— ์•ˆ์ „ํ•˜๊ฒŒ ์•”ํ˜ธํ™”๋œ ์—ฐ๊ฒฐ์„ ๋งŒ๋“ค ์ˆ˜ ์žˆ๊ฒŒ ๋„์™€์ฃผ๊ณ ,
์„œ๋ฒ„์™€ ๋ธŒ๋ผ์šฐ์ €๊ฐ€ ๋ฏผ๊ฐํ•œ ์ •๋ณด๋ฅผ ์ฃผ๊ณฑ๋‹ค์„ ๋•Œ ํ•ด๋‹น ์ •๋ณด๊ฐ€ ๋„๋‹จ๋‹นํ•˜๋Š” ๊ฒƒ์„ ๋ง‰์•„์คŒ

HTTP ์ž์ฒด๋ฅผ ์•”ํ˜ธํ™”ํ•˜๋Š” ๊ฒƒ์ด ์•„๋‹ˆ๋ผ HTTP๋ฅผ ์ „๋‹ฌํ•˜๋Š” Body๋ฅผ ์•”ํ˜ธํ™”ํ•˜๋Š” ๊ฒƒ

(1) ๋ณด์•ˆ์„ฑ
(2) SEO(๊ฒ€์ƒ‰์—”์ง„ ์ตœ์ ํ™”)

SSL/TLS

SSL(Secure Socket Layer) vs TLS(Transport Layer Security)
์—„๋ฐ€ํ•˜๊ฒŒ ๋งํ•˜๋ฉด TLS๋Š” SSL์˜ ์—…๊ทธ๋ ˆ์ด๋“œ ๋œ ๋ฒ„์ „์ด๋‹ค

SSL์ด๋ž€?

Netscape Communications Corporation์—์„œ ์›น ์„œ๋ฒ„์™€ ์›น ๋ธŒ๋ผ์šฐ์ € ๊ฐ„์˜ ๋ณด์•ˆ์„ ์œ„ํ•ด ๋งŒ๋“  ํ”„๋กœํ† ์ฝœ.
๊ณต๊ฐœํ‚ค/๊ฐœ์ธํ‚ค ๋Œ€์นญํ‚ค ๊ธฐ๋ฐ˜์œผ๋กœ ์‚ฌ์šฉํ•จ

(1) ๋Œ€์นญํ‚ค : ์•”ํ˜ธํ™” & ๋ณตํ˜ธํ™”๊ฐ€ ์‰ฌ์šฐ๋‚˜, ํ‚ค๋ฅผ ๋ฐฐ์†กํ•  ๋•Œ ๋ฌธ์ œ๊ฐ€ ๋  ์ˆ˜ ์žˆ๋‹ค.

(2) ๊ณต๊ฐœํ‚ค : ์•”ํ˜ธํ™” & ๋ณตํ˜ธํ™”์— ๋น„์šฉ (์‹œ๊ฐ„)์ด ๋งŽ์ด ์†Œ์š”. ๊ณต๊ฐœํ‚ค๊ฐ€ ํƒˆ์ทจ๋˜์–ด๋„ ์•ˆ์ „.

์„œ๋กœ ๋‹ค๋ฅธ ํ‚ค๋กœ ์•”ํ˜ธํ™” & ๋ณตํ˜ธํ™” ์ˆ˜ํ–‰ (๋น„๋Œ€์นญํ‚ค ๋ฐฉ์‹)
์•”ํ˜ธํ™”์‹œ์—๋Š” ๊ณต๊ฐœํ‚ค, ๋ณตํ˜ธํ™”์‹œ์—๋Š” ๊ฐœ์ธํ‚ค ์‚ฌ์šฉ.

SSL์€ ๊ฐ ๋ฐฉ์‹์˜ ์žฅ๋‹จ์ ์ด ์žˆ๊ธฐ ๋•Œ๋ฌธ์— ํ˜ผํ•ฉํ•ด์„œ ์‚ฌ์šฉํ•œ๋‹ค.

SSL ํ†ต์‹  ๊ณผ์ •

SSL์€ ๊ณต๊ฐœํ‚ค ๋ฐฉ์‹๊ณผ ๋Œ€์นญํ‚ค ๋ฐฉ์‹์„ ์ ์ ˆํžˆ ํ˜ผํ•ฉํ•˜์—ฌ ์‚ฌ์šฉ.
๊ณต๊ฐœํ‚ค ๋ฐฉ์‹์œผ๋กœ ๋Œ€์นญํ‚ค๋ฅผ ์ „๋‹ฌ. ์ด ๋Œ€์นญํ‚ค๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์•”ํ˜ธํ™”๋ฅผ ํ•˜๊ณ  ์„œ๋ฒ„์™€ ๋ธŒ๋ผ์šฐ์ €๊ฐ„ ํ†ต์‹ ์„ ํ•œ๋‹ค.

(1) B๋Š” A์—๊ฒŒ ์ž์‹ ์˜ ๊ณต๊ฐœํ‚ค๋ฅผ ์ „์†กํ•œ๋‹ค.

(2) A๋Š” ์ž์‹ ์˜ ๋Œ€์นญํ‚ค๋ฅผ B์—์„œ ์ „๋‹ฌ ๋ฐ›์€ B์˜ ๊ณต๊ฐœํ‚ค๋กœ ์•”ํ˜ธํ™”ํ•œ๋‹ค.

(3) ์ด๋ ‡๊ฒŒ ์•”ํ˜ธํ™”ํ•œ ๋Œ€์นญํ‚ค๋ฅผ B์— ์ „๋‹ฌํ•œ๋‹ค.

(4) B๋Š” A์˜ ๋Œ€์นญํ‚ค๋ฅผ B์˜ ๊ฐœ์ธํ‚ค๋กœ ๋ณตํ˜ธํ™” ํ•œ๋‹ค.

์ฆ‰ ์„œ๋กœ์˜ ๋Œ€์นญํ‚ค๋ฅผ ์ž์‹ ์˜ ๊ฐœ์ธํ‚ค๋กœ ๋ณตํ˜ธํ™” & ์•”ํ˜ธํ™” ํ•˜๋Š” ๊ฒƒ์ด๋‹ค.

์ธ์ฆ๊ธฐ๊ด€ - ์‚ฌ์šฉ์ž - ์‚ฌ์ดํŠธ์˜ 3์ž ๊ฒ€์ฆ๋ฐฉ์‹(์ž์„ธํ•œ ๋‚ด์šฉ์€ ์˜์ƒ์—)

profile
Engineer, Look Beyond the Code.

0๊ฐœ์˜ ๋Œ“๊ธ€