본 논문은 주요정보통신기반시설 보안 기준을 리눅스 서버의 지속 관리 기준선으로 활용하기 위한 Configuration Drift 탐지 및 승인 기반 대응 시스템을 제안한다. 제안 시스템은 주요 설정 파일...

http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.
변환된 중국어를 복사하여 사용하시면 됩니다.
https://www.riss.kr/link?id=A110411637
2026
Korean
530
학술저널
53-56(4쪽)
0
상세조회0
다운로드본 논문은 주요정보통신기반시설 보안 기준을 리눅스 서버의 지속 관리 기준선으로 활용하기 위한 Configuration Drift 탐지 및 승인 기반 대응 시스템을 제안한다. 제안 시스템은 주요 설정 파일...
본 논문은 주요정보통신기반시설 보안 기준을 리눅스 서버의 지속 관리 기준선으로 활용하기 위한 Configuration Drift 탐지 및 승인 기반 대응 시스템을 제안한다. 제안 시스템은 주요 설정 파일의 원본, 해시값, 권한, 소유자 정보를 Golden Baseline으로 저장하고, inotify 기반 실시간 감시, cron 기반 주기 해시 검사, Audit Server의 원격 교차 검사를 병행하여 Drift를 탐지한다. Drift가 확인되면 관리자는 원복, 유지, 보류 중 하나의 대응을 선택하며, 탐지와 승인 및 조치 결과는 감사 로그로 기록된다. 이를 통해 일회성 점검 중심의 보안 관리를 운영 중 지속 가능한 기준선 관리 방식으로 확장하고자 한다.
다국어 초록 (Multilingual Abstract)
This paper proposes a Configuration Drift detection and approval-based response system that repurposes critical information infrastructure security standards as a continuous baseline for Linux server management. The proposed system stores the original...
This paper proposes a Configuration Drift detection and approval-based response system that repurposes critical information infrastructure security standards as a continuous baseline for Linux server management. The proposed system stores the original files, hash values, permission and ownership information of key configuration files as a Golden Baseline, and detects drift by combining inotify-based real-time monitoring, cron-based periodic hash verification, and remote cross-verification on a separate audit server. When drift is detected, the administrator selects a response option among restoration, acceptance, or hold, and the detection, approval, and response results are recorded in audit logs. Through this approach, the study aims to extend one-time, assessment-oriented security management into a continuous baseline management method that is sustainable during operation.
목차 (Table of Contents)
물리적 설비 한계를 극복하는 AI 기반 제로 에너지 빌딩 구축 알고리즘 제안: 열에너지 데이터 시각화 및 시뮬레이션을 중심으로
AI와 LLM을 결합한 C/C++ 소스코드 취약점 탐지 시스템
생성형 AI 도입에 따른 데이터 유출 방지(DLP) 기술 및 보안 거버넌스 동향 조사
LLM 기반 Triage와 다중 정적 분석 도구를 활용한 오픈소스 취약점 탐지 모델 연구