±âº» ÀÎÁõÀ» »ç¿ëÇÏ¿© Kerberos ÅäÅ« »ý¼º

±â¼ú ÀÚ·á: 287537 - ÀÌ ¹®¼­°¡ Àû¿ëµÇ´Â Á¦Ç° º¸±â.
¸ðµÎ È®´ë | ¸ðµÎ Ãà¼Ò

¿ä¾à

±âº» ÀÎÁõÀ» »ç¿ëÇÏ¿© IIS (ÀÎÅÍ³Ý Á¤º¸ ¼­ºñ½º) È£½ºÆÃµÇ´Â »çÀÌÆ®¿¡ ¿¬°áÇÒ ¶§ ¿¡¼­ ASP (Active Server Pages (IIS ½ÇÇàµÇ´Â) ¶ó°í Microsoft SQL Server¿Í °°Àº ¿©·¯ ¹é ¿£µå ¼­¹ö¿¡¼­ ÀÎÁõÀ» À§ÇØ Kerberos À§ÀÓ ±â´ÉÀ» ÀÌ¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù. Kerberos ÅäÅ«À» »ý¼ºÇϱâ À§ÇØ IIS Windows 2000 µµ¸ÞÀÎ ±¸¼º¿øÀ̾î¾ß ¹× ÇØ´ç µµ¸ÞÀÎÀÇ È°¼º µð·ºÅ͸®¿¡ ¾×¼¼½ºÇÒ ¼ö ÇÕ´Ï´Ù.

Âü°í µµ¸ÞÀο¡ ´ëÇØ ½Å·ÚÇÒ ¼ö ÀÖ´Â ¸Å»çÃß¼¼Ã÷ Çùȸ ±â¼ú (MIT) Kerberos ¿µ¿ª ¹× ±âº» ÀÎÁõÀ» »ç¿ëÇÒ ¶§ UPN ÀÚ°Ý Áõ¸íÀ» ÀÎÁõÇÒ ¶§ Windows 2000 µµ¸ÞÀο¡ Kerberos ÅäÅ«À» »ý¼ºÇÏÁö ¾Ê½À´Ï´Ù. À̰ÍÀº ÀǵµÀûÀ¸·Î ¼³°èµÈ µ¿ÀÛÀÔ´Ï´Ù.

±âº» ÀÎÁõ (»ç¿ëÀÚ À̸§ ¹× ¾ÏÈ£) »ç¿ëÀÚ Á¤º¸¸¦ ÀÏ¹Ý ÅØ½ºÆ®·Î Àü¼ÛÇϱ⠶§¹®¿¡ º¸¾È ¼ÒÄÏ °èÃþ (SSL) ¿¬°áÀº ÅëÇØ ±âº» ÀÎÁõÀº °æ¿ì¿¡¸¸ »ç¿ëÇØ¾ß ÇÕ´Ï´Ù.

Ãß°¡ Á¤º¸

IIS »ç¿ëÀÚ¸¦ ÀÎÁõÇÒ ¶§ À̸¦ Â÷·Ê·Î ÀÎÁõ ÆÐŰÁö¸¦ (±âº» ÀÎÁõ MICROSOFT_AUTHENTICATION_PACKAGE_V1_0) È£ÃâÇÏ´Â LsaLogonUser ÇÔ¼ö¸¦ È£ÃâÇÏ¿© ¼öÇàµË´Ï´Ù. ±âº» ÀÎÁõÀ» ¹ß»ýÇÏ¸é ·Î±×¿Â À̺¥Æ® °¨»ç Á¤Ã¥À» »ç¿ëÇÏ´Â °æ¿ì º¸¾È ·Î±× IIS 5.0 ¼­¹ö¿¡ ´ÙÀ½°ú °°Àº À̺¥Æ®°¡ ±â·ÏµË´Ï´Ù.
Event Type:	Success Audit
Event Source:	Security
Event Category:	Logon/Logoff 
Event ID:	528
Date:		1/5/2001
Time:		6:11:04 PM
User:		Win2kDomain\rvittal
Computer:	IIS5server
Description:
Successful Logon:
 	User Name:       	rvittal
 	Domain:		Win2kDomain
 	Logon ID:		(0x0,0x148D0AC)
 	Logon Type:	             2
 	Logon Process:	IIS     
 	Authentication Package:	MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
 	Workstation Name:	IIS5server<BR/>
				
»ç¿ëÀÚ°¡ ±âº» ÀÎÁõÀ» »ç¿ëÇÏ¿© IIS¿¡ ·Î±×¿ÂÇÑ ÈÄ IIS (username:password)À» ÇØ´ç »ç¿ëÀÚÀÇ ÀÚ°Ý Áõ¸íÀÌ ¹× ÀÚ°Ý Áõ¸íÀ» ´Ù¸¥ ÄÄÇ»ÅÍÀÇ »ç¿ëÀÚ¸¦ °¡ÀåÇÏ´Â µ¥ »ç¿ëµÉ ¼ö ÀÖ´Â ÅäÅ«À» »ý¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù. »ç¿ëÀÚ°¡ ´Ù¸¥ Windows 2000 ¼­¹ö ¸®¼Ò½º¸¦ ÂüÁ¶ÇÏ´Â ÆäÀÌÁö¸¦ ¿äûÇÒ ¶§ IIS ¼­¹ö´Â Kerberos º¸¾È ÅäÅ«À» »ý¼ºÇÏ°í ¿ø°Ý ¼­¹öÀÇ º¸¾È ·Î±×¿¡ ´ÙÀ½°ú À¯»çÇÑ À̺¥Æ®°¡ ±â·ÏµË´Ï´Ù.


Event Type:	Success Audit
Event Source:	Security
Event Category:	Logon/Logoff 
Event ID:	540
Date:		1/5/2001
Time:		1:16:06 PM
User:		Win2kDomain\rvittal
Computer:	SQLbox
Description:
Successful Network Logon:
 	User Name:	             rvittal
 	Domain:		Win2kDomain
 	Logon ID:		(0x0,0x13A667F)
 	Logon Type:	             3
 	Logon Process:	             Kerberos
 	Authentication Package: Kerberos
 	Workstation Name:	
				
Kerberos¸¦ »ç¿ëÇÏ¿© ±âº» ÀÎÁõ ¾Ê´Â Á¦ÇÑµÈ ÀÖÀ½À» À¯ÀÇÇϽʽÿÀ. Windows 2000 Ŭ¶óÀÌ¾ðÆ® ÅëÇÕµÈ ÀÎÁõÀ¸·Î ±¸¼ºµÈ IIS5 ¼­¹ö¿¡ ¿¬°áÇÏ´Â °æ¿ì Kerberos ÀÎÁõÀÌ ±âº»ÀûÀ¸·Î »ç¿ëµË´Ï´Ù.

ÂüÁ¶

ÀÌ ¹®¼­¿¡¼­´Â ´ÙÀ½°ú °°Àº ÆäÀÌÁö¿¡¼­ ´ÙÀ½ Ã¥ÀÇ 109 Á¦°øÇÏ´Â Á¤º¸¸¦ ±â¹ÝÀ¸·Î ÇÕ´Ï´Ù.

Howard, Michael, ¸®Ã³µå Waymire ¹× Marc ·¹ºñ¸¦. ¼³°è º¸¾È À¥ ±â¹Ý ÀÀ¿ë ÇÁ·Î±×·¥ Microsoft Windows 2000 (·¹µå¸Õµå: Microsoft Press, 2000³â 7¿ù), p. 109.

IIS ¿¡¼­ ÀÎÁõ ¹æ¹ý¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
264921IIS°¡ ºê¶ó¿ìÀú Ŭ¶óÀÌ¾ðÆ®¸¦ ÀÎÁõÇÏ´Â ¹æ¹ý
229694¼³Ä¡ ¹× IIS º¸¾È »ç¿ë ¹æ¹ýÀ» "What If" µµ±¸¸¦
Kerberos¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Microsoft ±â¼ú ÀÚ·áÀÇ ´ÙÀ½ ¹®¼­¸¦ ÂüÁ¶ÇϽʽÿÀ.
217098Windows 2000ÀÇ Kerberos »ç¿ëÀÚ ÀÎÁõ ÇÁ·ÎÅäÄÝÀÇ ±âº» °³¿ä
266080Kerberos Áú¹®°ú ´ë´ä
231789Windows 2000 ·ÎÄà ·Î±×¿Â ÇÁ·Î¼¼½º

¼Ó¼º

±â¼ú ÀÚ·á: 287537 - ¸¶Áö¸· °ËÅä: 2006³â 11¿ù 21ÀÏ È­¿äÀÏ - ¼öÁ¤: 3.1
º» ¹®¼­ÀÇ Á¤º¸´Â ´ÙÀ½ÀÇ Á¦Ç°¿¡ Àû¿ëµË´Ï´Ù.
  • Microsoft Internet Information Services 5.0
Ű¿öµå:?
kbmt kbinfo KB287537 KbMtko
±â°è ¹ø¿ªµÈ ¹®¼­
Áß¿ä: º» ¹®¼­´Â Àü¹® ¹ø¿ª°¡°¡ ¹ø¿ªÇÑ °ÍÀÌ ¾Æ´Ï¶ó Microsoft ±â°è ¹ø¿ª ¼ÒÇÁÆ®¿þ¾î·Î ¹ø¿ªÇÑ °ÍÀÔ´Ï´Ù. Microsoft´Â ¹ø¿ª°¡°¡ ¹ø¿ªÇÑ ¹®¼­ ¹× ±â°è ¹ø¿ªµÈ ¹®¼­¸¦ ¸ðµÎ Á¦°øÇϹǷΠMicrosoft ±â¼ú ÀÚ·á¿¡ ÀÖ´Â ¸ðµç ¹®¼­¸¦ Çѱ۷ΠÁ¢ÇÒ ¼ö ÀÖ½À´Ï´Ù. ±×·¯³ª ±â°è ¹ø¿ª ¹®¼­°¡ Ç×»ó ¿Ïº®ÇÑ °ÍÀº ¾Æ´Õ´Ï´Ù. µû¶ó¼­ ±â°è ¹ø¿ª ¹®¼­¿¡´Â ¸¶Ä¡ ¿Ü±¹ÀÎÀÌ Çѱ¹¾î·Î ¸»ÇÒ ¶§ ½Ç¼ö¸¦ ÇÏ´Â °Íó·³ ¾îÈÖ, ±¸¹® ¶Ç´Â ¹®¹ý¿¡ ¿À·ù°¡ ÀÖÀ» ¼ö ÀÖ½À´Ï´Ù. Microsoft´Â ³»¿ë»óÀÇ ¿À¿ª ¶Ç´Â Microsoft °í°´ÀÌ ÀÌ·¯ÇÑ ¿À¿ªÀ» »ç¿ëÇÔÀ¸·Î½á ¹ß»ýÇÏ´Â ºÎ Á¤È®¼º, ¿À·ù ¶Ç´Â ¼ÕÇØ¿¡ ´ëÇØ Ã¥ÀÓÀ» ÁöÁö ¾Ê½À´Ï´Ù. Microsoft´Â ÀÌ·¯ÇÑ ¹®Á¦¸¦ ÇØ°áÇϱâ À§ÇØ ±â°è ¹ø¿ª ¼ÒÇÁÆ®¿þ¾î¸¦ ÀÚÁÖ ¾÷µ¥ÀÌÆ®Çϰí ÀÖ½À´Ï´Ù.
´õ ÀÌ»ó Áö¿øµÇÁö ¾Ê´Â Á¦Ç°ÀÇ KB ³»¿ë¿¡ ´ëÇÑ °íÁö »çÇ×
ÀÌ ¹®¼­¿¡¼­´Â Microsoft¿¡¼­ ´õ ÀÌ»ó Áö¿øÇÏÁö ¾Ê´Â Á¦Ç°¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù. µû¶ó¼­ ÀÌ ¹®¼­´Â "ÀÖ´Â ±×´ë·Î" Á¦°øµÇ¸ç ¾÷µ¥ÀÌÆ®µÇÁö ¾Ê½À´Ï´Ù.

Çǵå¹é º¸³»±â