±×·ì Á¤Ã¥À» »ç¿ëÇÏ¿© Windows Server 2003 ¶Ç´Â Windows 2000 µµ¸ÞÀÎÀÇ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ´ëÇÑ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤À» ±¸¼ºÇÏ´Â ¹æ¹ý

±â¼ú ÀÚ·á: 921469 - ÀÌ ¹®¼­°¡ Àû¿ëµÇ´Â Á¦Ç° º¸±â.
º£Å¸ Á¤º¸
ÀÌ ¹®¼­¿¡¼­´Â Microsoft Á¦Ç°ÀÇ º£Å¸ ¸±¸®½º¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù. ÀÌ ¹®¼­ÀÇ Á¤º¸´Â "ÀÖ´Â ±×´ë·Î" Á¦°øµÇ¸ç »çÀü Å뺸 ¾øÀÌ º¯°æµÉ ¼ö ÀÖ½À´Ï´Ù.

ÀÌ º£Å¸ Á¦Ç°Àº MicrosoftÀÇ °ø½Ä Á¦Ç° Áö¿ø ¼­ºñ½º¸¦ ¹ÞÀ» ¼ö ¾ø½À´Ï´Ù. º£Å¸ ¸±¸®½º Áö¿øÀ» ¾ò´Â ¹æ¹ý¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº º£Å¸ Á¦Ç° ÆÄÀÏ¿¡ Æ÷ÇÔµÈ ¼³¸í¼­¸¦ ÂüÁ¶Çϰųª ¸±¸®½º¸¦ ´Ù¿î·ÎµåÇÑ À¥ »çÀÌÆ®¸¦ È®ÀÎÇϽʽÿÀ.
¸ðµÎ È®´ë | ¸ðµÎ Ãà¼Ò

ÀÌ ÆäÀÌÁö¿¡¼­

¿ä¾à

ÀÌ ¹®¼­¿¡¼­´Â ±×·ì Á¤Ã¥À» »ç¿ëÇÏ¿© Windows Server 2003 ¶Ç´Â Windows 2000 µµ¸ÞÀÎÀÇ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ´ëÇÑ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤À» ±¸¼ºÇÏ´Â ¹æ¹ýÀ» ¼³¸íÇÕ´Ï´Ù. Windows Vista¿¡¼­´Â °¨»ç Á¤Ã¥ ÇÏÀ§ ¹üÁÖ¸¦ »ç¿ëÇÏ¿© ´õ¿í ¼¼ºÎÀûÀÎ ¼öÁØ¿¡¼­ °¨»ç Á¤Ã¥À» °ü¸®ÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÌ ¹®¼­¿¡¼­´Â °ü¸®ÀÚ°¡ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍÀÇ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤À» Àû¿ëÇÏ´Â »ç¿ëÀÚ ÁöÁ¤ °¨»ç Á¤Ã¥À» ¹èÆ÷Çϱâ À§ÇØ »ç¿ëÇÒ ¼ö ÀÖ´Â ÀýÂ÷¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù.

¼Ò°³

ÀÌ ¹®¼­¿¡¼­´Â ±×·ì Á¤Ã¥À» »ç¿ëÇÏ¿© Windows Server 2003 ¶Ç´Â Windows 2000 µµ¸ÞÀÎÀÇ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ´ëÇÑ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤À» ±¸¼ºÇÏ´Â ¹æ¹ýÀ» ¼³¸íÇÕ´Ï´Ù. Windows Vista¿¡¼­´Â ÀÌÀü ¹öÀüÀÇ Windows ¿î¿µ üÁ¦¿¡¼­º¸´Ù °³º° °¨»ç Á¤Ã¥ ÇÏÀ§ ¹üÁÖ¸¦ ´õ¿í ¼¼ºÎÀûÀ¸·Î Á¦¾îÇÒ ¼ö ÀÖ½À´Ï´Ù. Windows Vista¿¡¼­ »ç¿ëÇÒ ¼ö ÀÖ´Â °³º° °¨»ç Á¤Ã¥ ÇÏÀ§ ¹üÁÖ´Â ±×·ì Á¤Ã¥ µµ±¸ÀÇ ÀÎÅÍÆäÀ̽º¿¡ ³ëÃâµÇÁö ¾Ê½À´Ï´Ù. °ü¸®ÀÚ´Â ÀÌ ¹®¼­¿¡¼­ ¼³¸íÇÏ´Â ÀýÂ÷¸¦ »ç¿ëÇÏ¿© Windows Server 2003 ¶Ç´Â Windows 2000 µµ¸ÞÀÎÀÇ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤À» Àû¿ëÇÏ´Â »ç¿ëÀÚ ÁöÁ¤ °¨»ç Á¤Ã¥À» ¹èÆ÷ÇÒ ¼ö ÀÖ½À´Ï´Ù.

Ãß°¡ Á¤º¸

°í·Á »çÇ×

ÀÌ ¹®¼­¿¡¼­ ¼³¸íÇÏ´Â ÀýÂ÷¸¦ ¼öÇàÇϱâ Àü¿¡ °í·ÁÇÒ ¸î °¡Áö »çÇ×Àº ´ÙÀ½°ú °°½À´Ï´Ù.
  • ÀÌ ÀýÂ÷¿¡¼­´Â »ùÇà Äڵ带 »ç¿ëÇÕ´Ï´Ù. »ùÇà Äڵ忡¼­´Â Netlogon °øÀ¯¸¦ »ç¿ëÇϰí %SystemRoot%\Temp Æú´õ¸¦ ij½Ã·Î »ç¿ëÇÕ´Ï´Ù.
  • ÀÌ ÀýÂ÷¿¡¼­´Â Contoso.com »ùÇà µµ¸ÞÀÎÀ» »ç¿ëÇÕ´Ï´Ù.
  • ÀÌ ÀýÂ÷¿¡¼­´Â ´ÙÀ½ Á¶°ÇÀÌ ÃæÁ·µÈ´Ù°í °¡Á¤ÇÕ´Ï´Ù.
    • ´ÙÀ½ ±â¼ú°ú µµ±¸¿¡ ´ëÇØ Àß ¾Ë°í ÀÖ½À´Ï´Ù.
      • ±×·ì Á¤Ã¥ ½ÃÀÛ ½ºÅ©¸³Æ®
      • ±×·ì Á¤Ã¥ °ü¸® ÄܼÖ
      • Auditpol.exe ¸í·ÉÁÙ µµ±¸
    • Àϰý ÆÄÀÏ Ã³¸®¿¡ ´ëÇØ ±âº»ÀûÀÎ ¼öÁØÀ¸·Î ÀÌÇØÇϰí ÀÖ½À´Ï´Ù.
    • Windows Server 2003 ¶Ç´Â Windows 2000 µµ¸ÞÀÎÀÇ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ´ëÇÑ °¨»ç Á¤Ã¥À» ±¸¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù. °¨»ç Á¤Ã¥Àº ±âº» µµ¸ÞÀÎ Á¤Ã¥¿¡ ÇÒ´çµË´Ï´Ù.
  • Windows Vista¿¡¼­ »ç¿ëÇÒ ¼ö ÀÖ´Â ¼¼ºÎ °¨»ç Á¤Ã¥ ¼³Á¤À¸·Î ·¹°Å½Ã µµ¸ÞÀÎ ±â¹Ý °¨»ç Á¤Ã¥ ¼³Á¤À» ÀçÁ¤ÀÇÇϱâ À§ÇØ ÀÌ ÀýÂ÷¿¡¼­ »ç¿ëÇÏ´Â ½ºÅ©¸³Æ®¿¡ ´ëÇØ Àß ¾Ë°í ÀÖ½À´Ï´Ù. Windows Vista¿¡¼­ »ç¿ëÇÒ ¼ö ÀÖ´Â ¼¼ºÎ °¨»ç Á¤Ã¥ ¼³Á¤À» ±¸¼ºÇÏÁö ¾ÊÀ¸·Á¸é ÀÌ ¹®¼­¿¡¼­ ¼³¸íÇÏ´Â ÀýÂ÷¸¦ ¼öÇàÇÏÁö ¸¶½Ê½Ã¿À.

±×·ì Á¤Ã¥À» »ç¿ëÇÏ¿© Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍÀÇ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤ ±¸¼º

±×·ì Á¤Ã¥À» »ç¿ëÇÏ¿© Windows Server 2003 ¶Ç´Â Windows 2000 µµ¸ÞÀÎÀÇ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ´ëÇÑ ¼¼ºÎ º¸¾È °¨»ç ¼³Á¤À» ±¸¼ºÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ ÇϽʽÿÀ.

1´Ü°è: Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ¹èÆ÷ÇÒ º¸¾È °¨»ç ¼³Á¤ °áÁ¤

  1. Windows Vista¸¦ ½ÇÇàÇϰí ÀÖ´Â ÄÄÇ»ÅÍ¿¡ °ü¸®ÀÚ ÀÚ°Ý Áõ¸íÀÌ ÀÖ´Â »ç¿ëÀÚ·Î ·Î±×¿ÂÇÕ´Ï´Ù.
  2. ½ÃÀÛÀ» ´©¸£°í ¸ðµç ÇÁ·Î±×·¥À» °¡¸®Å² ´ÙÀ½ º¸Á¶ÇÁ·Î±×·¥À» ´©¸£°í ¸í·É ÇÁ·ÒÇÁÆ®¸¦ ¸¶¿ì½º ¿À¸¥ÂÊ ´ÜÃß·Î ´©¸¥ ÈÄ Administrator·Î ½ÇÇàÀ» ´©¸¨´Ï´Ù.
  3. »ç¿ëÀÚ °èÁ¤ ÄÁÆ®·Ñ ´ëÈ­ »óÀÚ¿¡¼­ °è¼ÓÀ» ´©¸¨´Ï´Ù.
  4. ±âº» °¨»ç Á¤Ã¥ ¼³Á¤À» Ç÷¯½ÃÇÕ´Ï´Ù. ÀÌ·¸°Ô ÇÏ·Á¸é ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ ´ÙÀ½ ¸í·ÉÁÙÀ» ÀÔ·ÂÇÑ ´ÙÀ½ Enter ۸¦ ´©¸¨´Ï´Ù.
    auditpol /clear
  5. Auditpol.exe ¸í·ÉÁÙ µµ±¸¸¦ »ç¿ëÇÏ¿© ¿øÇÏ´Â »ç¿ëÀÚ ÁöÁ¤ °¨»ç Á¤Ã¥ ¼³Á¤À» ±¸¼ºÇÕ´Ï´Ù.

    ¿¹¸¦ µé¾î, ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ ¾Æ·¡¿Í °°ÀÌ ÀÔ·ÂÇÕ´Ï´Ù. °¢ ÁÙÀÌ ³¡³ª¸é Enter ۸¦ ´©¸£½Ê½Ã¿À.
    auditpol /set /subcategory:"user account management" /success:enable /failure:enable
    auditpol /set /subcategory:"logon" /success:enable /failure:enable
    auditpol /set /subcategory:"IPSEC Main Mode" /failure:enable
    Âü°í °¡´ÉÇÑ ¹üÁÖ¿Í ÇÏÀ§ ¹üÁÖ¸¦ ¸ðµÎ º¸·Á¸é ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ ¾Æ·¡¿Í °°ÀÌ ÀÔ·ÂÇÑ ´ÙÀ½ Enter ۸¦ ´©¸£½Ê½Ã¿À.
    auditpol /list /subcategory:*
  6. ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ ¾Æ·¡¿Í °°ÀÌ ÀÔ·ÂÇÑ ´ÙÀ½ Enter ۸¦ ´©¸¨´Ï´Ù.
    auditpol /backup /file:auditpolicy.txt
  7. µµ¸ÞÀο¡¼­ PDC(ÁÖ µµ¸ÞÀÎ ÄÁÆ®·Ñ·¯) ¿¡¹Ä·¹ÀÌÅÍ ¿ªÇÒÀ» ÇÏ´Â µµ¸ÞÀÎ ÄÁÆ®·Ñ·¯ÀÇ Netlogon °øÀ¯¿¡ Auditpolicy.txt ÆÄÀÏÀ» º¹»çÇÕ´Ï´Ù.

    Auditpolicy.txt ÆÄÀÏ¿¡´Â ±¸¼ºÇÑ ¸ðµç °¨»ç Á¤Ã¥ ¼³Á¤ÀÌ µé¾î ÀÖ½À´Ï´Ù. ½ÃÀÛ ½ºÅ©¸³Æ®¿¡¼­ ÀÌ ÆÄÀÏÀ» »ç¿ëÇÏ¿© Á¤Ã¥À» ´Ù½Ã Àû¿ëÇÕ´Ï´Ù. ½ÃÀÛ ½ºÅ©¸³Æ®¸¦ ÇÑ ¹ø ¼º°øÀûÀ¸·Î Àû¿ëÇÑ ÈÄ¿¡´Â °¨»ç Á¤Ã¥ ¼³Á¤À» ¾÷µ¥ÀÌÆ®Çϱâ À§ÇØ ÄÄÇ»Å͸¦ ´Ù½Ã ½ÃÀÛÇÒ Çʿ䰡 ¾ø½À´Ï´Ù. °¨»ç Á¤Ã¥ ¼³Á¤À» ¾÷µ¥ÀÌÆ®ÇÏ·Á¸é Netlogon °øÀ¯¿¡ º¹»çÇÑ ÀÌÀü ¹öÀüÀÇ Auditpolicy.txt ÆÄÀÏÀ» µ¤¾î½á¾ß ÇÕ´Ï´Ù. ÀÌ·¸°Ô ÇÏ·Á¸é Auditpolicy.txt ÆÄÀÏÀ» »õ·Î ¸¸µç ´ÙÀ½ Netlogon °øÀ¯¿¡ º¹»çÇϽʽÿÀ.

2´Ü°è: ·¹°Å½Ã µµ¸ÞÀÎ °¨»ç Á¤Ã¥ÀÌ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍÀÇ °¨»ç Á¤Ã¥À» µ¤¾î¾²Áö ¸øÇϵµ·Ï ¼³Á¤

·¹°Å½Ã µµ¸ÞÀÎ Á¤Ã¥ÀÌ °¨»ç Á¤Ã¥À» µ¤¾î¾²Áö ¸øÇÏ°Ô ÇÏ·Á¸é °¨»ç Á¤Ã¥ ÇÏÀ§ ¹üÁÖ ¼³Á¤(Windows Vista ¶Ç´Â ±× ÀÌÈÄ ¹öÀü)ÀÌ °¨»ç Á¤Ã¥ ¹üÁÖ ¼³Á¤º¸´Ù ¿ì¼±Çϵµ·Ï °­Á¦·Î ¼³Á¤ÇÕ´Ï´Ù. Á¤Ã¥ ¼³Á¤À» »ç¿ë °¡´ÉÇÏ°Ô ¼³Á¤ÇØ¾ß ÇÕ´Ï´Ù. ÀÌ·¸°Ô ÇÏ¸é µµ¸ÞÀÎ ±â¹Ý °¨»ç Á¤Ã¥ÀÌ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍÀÇ ´õ¿í ¼¼ºÎÀûÀÎ °¨»ç Á¤Ã¥ ¼³Á¤À» µ¤¾î¾²Áö ¸øÇÕ´Ï´Ù. ÀÌ·¸°Ô ÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ ÇϽʽÿÀ.
  1. µµ¸ÞÀο¡ °¡ÀÔµÈ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡¼­ ±âº» µµ¸ÞÀÎ Á¤Ã¥À» ¿±´Ï´Ù.
  2. ÄÄÇ»ÅÍ ±¸¼º, Windows ¼³Á¤, º¸¾È ¼³Á¤, ·ÎÄà Á¤Ã¥À» Â÷·Ê·Î È®ÀåÇÑ ´ÙÀ½ º¸¾È ¿É¼ÇÀ» ´©¸¨´Ï´Ù.
  3. °¨»ç: °¨»ç Á¤Ã¥ ÇÏÀ§ ¹üÁÖ ¼³Á¤(Windows Vista ¶Ç´Â ±× ÀÌÈÄ ¹öÀü)ÀÌ °¨»ç Á¤Ã¥ ¹üÁÖ ¼³Á¤º¸´Ù ¿ì¼±Çϵµ·Ï °­Á¦·Î ¼³Á¤ÇÕ´Ï´Ù.¸¦ µÎ ¹ø ´©¸¨´Ï´Ù.
  4. »ç¿ëÀ» ´©¸¥ ´ÙÀ½ È®ÀÎÀ» ´©¸¨´Ï´Ù.

3´Ü°è: ½ºÅ©¸³Æ®¸¦ ¸¸µç ´ÙÀ½ Netlogon °øÀ¯¿¡ Ãß°¡

Microsoft´Â ¸ðµç º¸Áõ(»óǰ, ƯÁ¤ ¸ñÀû¿¡ ´ëÇÑ ÀûÇÕ¼º ¹× ºñÄ§ÇØ¿¡ ´ëÇÑ ¹¬½ÃÀûÀÎ º¸ÁõÀ» Æ÷ÇÔÇϸç ÀÌ¿¡ Á¦ÇѵÇÁö ¾ÊÀ½)À» ¹èÁ¦ÇÏ¸ç ¿¹¸¦ º¸¿©ÁÖ±â À§ÇÑ ¸ñÀûÀ¸·Î¸¸ ÀÌ ÇÁ·Î±×·¡¹Ö ¿¹Á¦¸¦ Á¦°øÇÕ´Ï´Ù. º» ¹®¼­ÀÇ ³»¿ëÀº ÇÁ·Î½ÃÀú¸¦ ÀÛ¼ºÇÏ°í µð¹ö±ëÇÏ´Â µ¥ »ç¿ëµÇ´Â µµ±¸ ¹× ¿©±â¼­ ¼³¸íÇÏ´Â ÇÁ·Î±×·¡¹Ö ¾ð¾î¿¡ Àͼ÷ÇÑ »ç¿ëÀÚ¸¦ ´ë»óÀ¸·Î ÇÕ´Ï´Ù. Microsoft Áö¿ø ¿£Áö´Ï¾î´Â »ç¿ëÀÚ¿¡°Ô µµ¿òÀÌ µÇµµ·Ï ƯÁ¤ ÇÁ·Î½ÃÀú¿¡ ´ëÇÑ ±â´ÉÀ» ¼³¸íÇÒ ¼ö ÀÖÁö¸¸ »ç¿ëÀÚÀÇ Æ¯Á¤ ¿ä±¸ »çÇ׿¡ ¸Âµµ·Ï ¿¹Á¦¸¦ ¼öÁ¤ÇÏ¿© Ãß°¡ ±â´ÉÀ» Á¦°øÇϰųª ÇÁ·Î½ÃÀú¸¦ ±¸¼ºÇÏÁö´Â ¾Ê½À´Ï´Ù.
  1. AuditPolicy.cmd ½ºÅ©¸³Æ®¸¦ ¸¸µì´Ï´Ù. ÀÌ·¸°Ô ÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ ÇϽʽÿÀ.
    1. ¸Þ¸ðÀåÀ» ½ÃÀÛÇÏ°í »õ ¹®¼­¸¦ ¿±´Ï´Ù.
    2. ´ÙÀ½ Äڵ带 ¸Þ¸ðÀåÀÇ ¹®¼­¿¡ ºÙ¿© ³Ö½À´Ï´Ù.
      @echo off
      
      REM AuditPolicy.cmd
      REM (c) 2006 Microsoft Corporation.  All rights reserved.
      REM Sample Audit Script to deploy Windows Vista
      REM Granular Audit Policy settings.
      
      REM Should be run as a startup script from Group Policy
      
      REM ###################################################
      REM Declare Variables so that we only need to edit file
      REM names/paths in one location in script
      REM ###################################################
      
      set AuditPolicyLog=%systemroot%\temp\auditpolicy.log
      set OSVersionSwap=%systemroot%\temp\osversionwap.txt
      set OsVersionTxt=%systemroot%\temp\osversion.txt
      set MachineDomainTxt=%systemroot%\temp\machinedomain.txt
      set MachineDomainSwap=%systemroot%\temp\machinedomainSwap.txt
      set ApplyAuditPolicyCMD=applyauditpolicy.cmd
      set AuditPolicyTxt=auditpolicy.txt
      
      REM ###################################################
      REM Clear Log & start fresh
      REM ###################################################
      
      if exist %AuditPolicyLog% del %AuditPolicyLog% /q /f
      date /t > %AuditPolicyLog% & time /t >> %AuditPolicyLog%
      echo.
      
      REM ###################################################
      REM Check OS Version
      REM ###################################################
      
      ver | findstr "[" > %OSVersionSwap%
      for /f "tokens=2 delims=[" %%i in (%OSVersionSwap%) do echo %%i > %OsVersionTxt%
      for /f "tokens=2 delims=] " %%i in (%OsVersionTxt%) do set osversion=%%i
      echo OS Version=%osversion% >> %AuditPolicyLog%
      
      REM ###################################################
      REM Skip Pre-Vista
      REM ###################################################
      
      if "%osversion%" LSS "6.0" exit /b 1
      
      REM ###################################################
      REM Get Domain Name
      REM ###################################################
      
      WMIC /namespace:\\root\cimv2 path Win32_ComputerSystem get domain /format:list > %MachineDomainSwap%
      find /i "Domain=" %MachineDomainSwap% > %MachineDomainTxt%
      for /f "Tokens=2 Delims==" %%i in (%MachineDomainTxt%) do set machinedomain=%%i
      echo Machine domain=%machinedomain% >> %AuditPolicyLog%
      
      REM ###################################################
      REM Copy Script & Policy to Local Directory or Terminate
      REM ###################################################
      
      xcopy \\%machinedomain%\netlogon\%ApplyAuditPolicyCMD% %systemroot%\temp\*.* /r /h /v /y
      if %ERRORLEVEL% NEQ 0 (
          echo Could not read \\%machinedomain%\netlogon\%ApplyAuditPolicyCMD% >> %AuditPolicyLog%
          exit /b 1
      ) else (
          echo Copied \\%machinedomain%\netlogon\%ApplyAuditPolicyCMD% to %systemroot%\temp >> %AuditPolicyLog%
      )
      
      xcopy \\%machinedomain%\netlogon\%AuditPolicyTxt% %systemroot%\temp\*.* /r /h /v /y
      if %ERRORLEVEL% NEQ 0 (
          echo Could not read \\%machinedomain%\netlogon\%AuditPolicyTxt% >> %AuditPolicyLog%
          exit /b 1
      ) else (
          echo Copied \\%machinedomain%\netlogon\%AuditPolicyTxt% to %systemroot%\temp >> %AuditPolicyLog%
      )
      
      REM ###################################################
      REM Create Named Scheduled Task to Apply Policy
      REM ###################################################
      
      %systemroot%\system32\schtasks.exe /create /ru System /tn audit /sc hourly /mo 1 /f /rl highest /tr "%systemroot%\temp\%ApplyAuditPolicyCMD%"
      if %ERRORLEVEL% NEQ 0 (
          echo Failed to create scheduled task for Audit >> %AuditPolicyLog%
          exit /b 1
      ) else (
          echo Created scheduled task for Audit >> %AuditPolicyLog%
      )
      
      REM ###################################################
      REM Start Named Scheduled Task to Apply Policy
      REM ###################################################
      
      %systemroot%\system32\schtasks.exe /run /tn audit
      if %ERRORLEVEL% NEQ 0 (
          Failed to execute scheduled task for Audit >> %AuditPolicyLog%
      ) else (
          echo Executed scheduled task for Audit >> %AuditPolicyLog%
      )
    3. ÆÄÀÏ ¸Þ´º¿¡¼­ ÀúÀåÀ» ´©¸¨´Ï´Ù.
    4. ÆÄÀÏ Çü½Ä »óÀÚ¿¡¼­ ¸ðµç ÆÄÀÏÀ» ´©¸£°í ÆÄÀÏ À̸§ »óÀÚ¿¡ AuditPolicy.cmd¸¦ ÀÔ·ÂÇÑ ´ÙÀ½ ÀúÀåÀ» ´©¸¨´Ï´Ù.
  2. ApplyAuditPolicy.cmd ½ºÅ©¸³Æ®¸¦ ¸¸µì´Ï´Ù. ÀÌ·¸°Ô ÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ ÇϽʽÿÀ.
    1. ¸Þ¸ðÀåÀ» ½ÃÀÛÇÏ°í »õ ¹®¼­¸¦ ¿±´Ï´Ù.
    2. ´ÙÀ½ Äڵ带 ¸Þ¸ðÀåÀÇ ¹®¼­¿¡ ºÙ¿© ³Ö½À´Ï´Ù.
      @echo off
      
      REM ApplyAuditPolicy.cmd
      REM (c) 2006 Microsoft Corporation.  All rights reserved.
      REM Sample Audit Script to deploy Windows Vista
      REM Granular Audit Policy settings.
      
      
      REM ###################################################
      REM Declare Variables so that we only need to edit file
      REM names/paths in one location in script
      REM ###################################################
      
      set DeleteAudit=DeleteAudit.txt
      set AuditPolicyLog=%systemroot%\temp\AuditPolicy.log
      set ApplyAuditPolicyLog=%systemroot%\temp\ApplyAuditPolicy.log
      set OSVersionSwap=%systemroot%\temp\osversionwap.txt
      set OsVersionTxt=%systemroot%\temp\osversion.txt
      set MachineDomainTxt=%systemroot%\temp\machinedomain.txt
      set MachineDomainSwap=%systemroot%\temp\machinedomainSwap.txt
      set ApplyAuditPolicyCMD=ApplyAuditpolicy.cmd
      set AuditPolicyTxt=AuditPolicy.txt
      
      REM ###################################################
      REM Clear Log & start fresh
      REM ###################################################
      
      if exist %ApplyAuditPolicyLog% del %ApplyAuditPolicyLog% /q /f
      date /t > %ApplyAuditPolicyLog% & time /t >> %ApplyAuditPolicyLog%
      echo.
      
      REM ###################################################
      REM Check OS Version
      REM ###################################################
      
      ver | findstr "[" > %OSVersionSwap%
      for /f "tokens=2 delims=[" %%i in (%OSVersionSwap%) do echo %%i > %OsVersionTxt%
      for /f "tokens=2 delims=] " %%i in (%OsVersionTxt%) do set osversion=%%i
      echo OS Version=%osversion% >> %ApplyAuditPolicyLog%
      
      REM ###################################################
      REM Skip Pre-Vista
      REM ###################################################
      
      if "%osversion%" LSS "6.0" exit /b 1
      
      REM ###################################################
      REM Get Domain Name
      REM ###################################################
      
      WMIC /namespace:\\root\cimv2 path Win32_ComputerSystem get domain /format:list > %MachineDomainSwap%
      find /i "Domain=" %MachineDomainSwap% > %MachineDomainTxt%
      for /f "Tokens=2 Delims==" %%i in (%MachineDomainTxt%) do set machinedomain=%%i
      echo Machine domain=%machinedomain% >> %ApplyAuditPolicyLog%
      
      REM ###################################################
      REM Delete Audit Task
      REM Should only be used to remove the pseudo-policy from
      REM client machines (designed for future Vista revisions
      REM where this script will no longer be necessary, and this
      REM script needs to be backed out).
      
      REM to use, simply create a file in NETLOGON with a name
      REM that matches the contents of DeleteAudit variable (above)
      REM ###################################################
      
      if exist \\%machinedomain%\netlogon\%DeleteAudit% (
          %systemroot%\system32\schtasks.exe /delete /tn "Audit" /F
          DEL %AuditPolicyLog%
          DEL %ApplyAuditPolicyLog%
          DEL %OSVersionSwap%
          DEL %OsVersionTxt%
          DEL %MachineDomainTxt%
          DEL %MachineDomainSwap%
          DEL %systemroot%\temp\%ApplyAuditPolicyCMD%
          DEL %systemroot%\temp\%AuditPolicyTxt%
          exit /b 1
      ) 
      
      REM ###################################################
      REM Copy Audit Policy to Local Directory
      REM This is tolerant of failures since the copy is just
      REM a "cache refresh".
      REM ###################################################
      
      xcopy \\%machinedomain%\netlogon\%AuditPolicyTxt% %systemroot%\temp\*.* /r /h /v /y
      if %ERRORLEVEL% NEQ 0 (
          echo Could not read \\%machinedomain%\netlogon\%AuditPolicyTxt% so using previous cached copy>> %ApplyAuditPolicyLog%
      ) else (
          echo Copied \\%machinedomain%\netlogon\%AuditPolicyTxt% to %systemroot%\temp >> %ApplyAuditPolicyLog%
      )
      
      REM ###################################################
      REM Apply Policy
      REM ###################################################
      
      %systemroot%\system32\auditpol.exe /restore /file:%systemroot%\temp\%AuditPolicyTxt%
      if %ERRORLEVEL% NEQ 0 (
          Failed to apply audit settings >> %ApplyAuditPolicyLog%
      ) else (
          echo Successfully applied audit settings >> %ApplyAuditPolicyLog%
      )
    3. ÆÄÀÏ ¸Þ´º¿¡¼­ ÀúÀåÀ» ´©¸¨´Ï´Ù.
    4. ÆÄÀÏ Çü½Ä »óÀÚ¿¡¼­ ¸ðµç ÆÄÀÏÀ» ´©¸£°í ÆÄÀÏ À̸§ »óÀÚ¿¡ ApplyAuditPolicy.cmd¸¦ ÀÔ·ÂÇÑ ´ÙÀ½ ÀúÀåÀ» ´©¸¨´Ï´Ù.
  3. µµ¸ÞÀο¡¼­ PDC ¿¡¹Ä·¹ÀÌÅÍ ¿ªÇÒÀ» ÇÏ´Â µµ¸ÞÀÎ ÄÁÆ®·Ñ·¯ÀÇ Netlogon °øÀ¯¿¡ AuditPolicy.cmd ½ºÅ©¸³Æ®¿Í ApplyAuditPolicy.cmd ½ºÅ©¸³Æ®¸¦ º¹»çÇÕ´Ï´Ù.
  4. Active Directory º¹Á¦°¡ ¹ß»ýÇÒ ¶§±îÁö ±â´Ù¸³´Ï´Ù. ¶ÇÇÑ ½Ã½ºÅÛ º¼·ý(SYSVOL) °øÀ¯ Æú´õÀÇ ÆÄÀϰú Æú´õ°¡ µµ¸ÞÀÎÀÇ µµ¸ÞÀÎ ÄÁÆ®·Ñ·¯¿¡¼­ º¹Á¦µÉ ¶§±îÁö ±â´Ù¸³´Ï´Ù.
  5. ½ÃÀÛ ½ºÅ©¸³Æ®¸¦ ±âº» µµ¸ÞÀÎ Á¤Ã¥¿¡ Ãß°¡ÇÕ´Ï´Ù. ÀÌ·¸°Ô ÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ ÇϽʽÿÀ.
    1. Active Directory »ç¿ëÀÚ ¹× ÄÄÇ»ÅÍ µµ±¸¸¦ ½ÃÀÛÇÕ´Ï´Ù.
    2. DomainNameÀ» ¸¶¿ì½º ¿À¸¥ÂÊ ´ÜÃß·Î ´©¸¥ ´ÙÀ½ ¼Ó¼ºÀ» ´©¸¨´Ï´Ù.
    3. ±×·ì Á¤Ã¥ ÅÇÀ» ´©¸£°í ±âº» µµ¸ÞÀÎ Á¤Ã¥À» ´©¸¥ ´ÙÀ½ ÆíÁýÀ» ´©¸¨´Ï´Ù. ±×·ì Á¤Ã¥ °³Ã¼ ÆíÁý±â µµ±¸°¡ ½ÃÀ۵˴ϴÙ.
    4. ÄÄÇ»ÅÍ ±¸¼º, Windows ¼³Á¤À» Â÷·Ê·Î È®ÀåÇÑ ´ÙÀ½ ½ºÅ©¸³Æ®(½ÃÀÛ/Á¾·á)¸¦ ´©¸¨´Ï´Ù.
    5. ½ÃÀÛÇÁ·Î±×·¥À» µÎ ¹ø ´©¸¥ ´ÙÀ½ Ãß°¡¸¦ ´©¸¨´Ï´Ù.
    6. ½ºÅ©¸³Æ® À̸§ »óÀÚ¿¡ Netlogon °øÀ¯¿¡ ÀÖ´Â AuditPolicy.cmd ÆÄÀÏÀÇ UNC(¹ü¿ë ¸í¸í ±ÔÄ¢) °æ·Î¸¦ ÀÔ·ÂÇÕ´Ï´Ù. ´ÙÀ½°ú °°Àº Çü½ÄÀ» »ç¿ëÇÕ´Ï´Ù.
      \\FullyQualifiedDomainName\Netlogon\AuditPolicy.cmd
      ¿¹¸¦ µé¾î, \\contoso.com\netlogon\auditpolicy.cmd¸¦ ÀÔ·ÂÇÕ´Ï´Ù.
    7. È®ÀÎÀ» µÎ ¹ø ´©¸¨´Ï´Ù.

4´Ü°è: º¸¾È °¨»ç ¼³Á¤ÀÌ ¼º°øÀûÀ¸·Î Àû¿ëµÇ¾ú´ÂÁö È®ÀÎ

  1. Active Directory º¹Á¦°¡ ¹ß»ýÇÒ ¶§±îÁö ±â´Ù¸³´Ï´Ù. ¶ÇÇÑ ½Ã½ºÅÛ º¼·ý(SYSVOL) °øÀ¯ Æú´õÀÇ ÆÄÀϰú Æú´õ°¡ µµ¸ÞÀÎÀÇ µµ¸ÞÀÎ ÄÁÆ®·Ñ·¯¿¡¼­ º¹Á¦µÉ ¶§±îÁö ±â´Ù¸³´Ï´Ù.
  2. µµ¸ÞÀο¡ °¡ÀÔµÈ Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»Å͸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù. ±×·± ´ÙÀ½ °ü¸®ÀÚ ÀÚ°Ý Áõ¸íÀÌ ÀÖ´Â »ç¿ëÀÚ·Î ÄÄÇ»ÅÍ¿¡ ·Î±×¿ÂÇÕ´Ï´Ù.
  3. ½ÃÀÛÀ» ´©¸£°í ¸ðµç ÇÁ·Î±×·¥À» °¡¸®Å² ´ÙÀ½ º¸Á¶ÇÁ·Î±×·¥À» ´©¸¨´Ï´Ù.
  4. ¸í·É ÇÁ·ÒÇÁÆ®¸¦ ¸¶¿ì½º ¿À¸¥ÂÊ ´ÜÃß·Î ´©¸¥ ´ÙÀ½ Administrator·Î ½ÇÇàÀ» ´©¸¨´Ï´Ù.
  5. »ç¿ëÀÚ °èÁ¤ ÄÁÆ®·Ñ ´ëÈ­ »óÀÚ¿¡¼­ °è¼ÓÀ» ´©¸¨´Ï´Ù.
  6. ¸í·É ÇÁ·ÒÇÁÆ®¿¡¼­ ¾Æ·¡¿Í °°ÀÌ ÀÔ·ÂÇÑ ´ÙÀ½ Enter ۸¦ ´©¸¨´Ï´Ù.
    auditpol /get /category:*
  7. ¸í·É ÇÁ·ÒÇÁÆ®¿¡ Ç¥½ÃµÇ´Â º¸¾È °¨»ç ¼³Á¤ÀÌ "1´Ü°è: Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»ÅÍ¿¡ ¹èÆ÷ÇÒ º¸¾È °¨»ç ¼³Á¤ °áÁ¤"¿¡¼­ ¸¸µç AuditPolicy.txt ÆÄÀÏ¿¡ ±¸¼ºµÈ ¼³Á¤°ú ÀÏÄ¡ÇÏ´ÂÁö È®ÀÎÇÕ´Ï´Ù.

    º¸¾È °¨»ç ¼³Á¤ÀÌ ÀÏÄ¡ÇÏÁö ¾ÊÀ¸¸é %SystemRoot%\Temp Æú´õÀÇ ½ÃÀÛ ½ºÅ©¸³Æ®¿¡¼­ »ý¼ºÇÑ ·Î±× ÆÄÀÏÀ» °ËÅäÇÕ´Ï´Ù. ·Î±× ÆÄÀÏÀÌ %SystemRoot%\Temp Æú´õ¿¡ ¾øÀ¸¸é Windows Vista Ŭ¶óÀÌ¾ðÆ® ÄÄÇ»Å͸¦ °Ë»çÇÏ¿© ±×·ì Á¤Ã¥ÀÌ Àû¿ëµÇÁö ¾ÊÀº ÀÌÀ¯¸¦ È®ÀÎÇÕ´Ï´Ù.

ÂüÁ¶

Active Directory¿¡¼­ ½ÃÀÛ ½ºÅ©¸³Æ®¸¦ ±¸¼ºÇÏ´Â ¹æ¹ý¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº ´ÙÀ½ Microsoft À¥ »çÀÌÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ.
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/ko/library/ServerHelp/dcaa775e-0012-4e43-8e68-a31b32b4241f.mspx?mfr=true
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/ko/library/ServerHelp/65aa4e48-8b1f-42bc-b20f-64f67367dadc.mspx?mfr=true
±×·ì Á¤Ã¥ °ü¸® Äֿܼ¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº ´ÙÀ½ Microsoft À¥ »çÀÌÆ®¸¦ ÂüÁ¶ÇϽʽÿÀ.
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/ko/library/ServerHelp/7a0aaa61-5152-4489-86c9-b083b22b2173.mspx?mfr=true
Auditpol.exe ¸í·ÉÁÙ µµ±¸¿Í Schtasks.exe ¸í·ÉÁÙ µµ±¸¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Windows Vista µµ¿ò¸» ¹× Áö¿øÀ» ÂüÁ¶ÇϽʽÿÀ.



Microsoft Á¦Ç° °ü·Ã ±â¼ú Àü¹®°¡µé°ú ¿Â¶óÀÎÀ¸·Î Á¤º¸¸¦ ±³È¯ÇϽ÷Á¸é Microsoft ´º½º ±×·ì¿¡ Âü¿©ÇϽñ⠹ٶø´Ï´Ù.

¼Ó¼º

±â¼ú ÀÚ·á: 921469 - ¸¶Áö¸· °ËÅä: 2006³â 11¿ù 23ÀÏ ¸ñ¿äÀÏ - ¼öÁ¤: 2.1
º» ¹®¼­ÀÇ Á¤º¸´Â ´ÙÀ½ÀÇ Á¦Ç°¿¡ Àû¿ëµË´Ï´Ù.
  • Windows Vista Ultimate
  • Windows Vista Business
  • Windows Vista Enterprise
Ű¿öµå:?
kbhowto kbinfo kbexpertiseinter KB921469

Çǵå¹é º¸³»±â