| |
ArcSight
°øÅë Æò°¡ ±âÁØ °ËÁõ |
ArcSight´Â NIAP °øÅë Æò°¡
±âÁØ °ËÁõÀ» À§ÇØ SAIC °øÅë Æò°¡ ±âÁØ Å×½ºÆ® ·¦(CCTL: Common Criteria testing lab)À»
¼±ÅÃÇÕ´Ï´Ù.
ArcSight´Â °øÅë Æò°¡ ±âÁØ Å×½ºÆ® ·¦(CCTL)À¸·Î SAIC¸¦ ¼±ÅÃÇÏ¿© °øÅë Æò°¡ ±âÁØ °ËÁõ ÇÁ·Î¼¼½º¸¦ ¼öÇàÇÕ´Ï´Ù.
SAICÀÇ °øÅë Æò°¡ ±âÁØ Å×½ºÆ® ·¦Àº NIAP(National Information Assurance Partnership)ÀÇ
CCEVS(Common Criteria Evaluation and Validation Scheme)³»¿¡¼ ÀÛµ¿Çϵµ·Ï NVLAP(National
Voluntary Laboratory Accreditation Program)¿¡ ÀÇÇØ ½ÂÀÎµÈ Ã¹ ¹øÂ° »ó¾÷¿ë ·¦ÀÔ´Ï´Ù.
SAIC CCTLÀº Àü NSA ÃÖ°í Æò°¡¿ø, ±â¼ú °ËÅä À§¿øÈ¸(Technical Review Board) ¹× Å뿪 ÀÛ¾÷
±×·ì(Interpretations Working Group) ȸ¿ø, ±×¸®°í °øÅë Æò°¡ ±âÁØÀÇ °³¹ß¿¡ Á÷Á¢ Ã¥ÀÓÀÌ ÀÖ´Â
¹Ì ´ëÇ¥¸¦ °í¿ëÇÕ´Ï´Ù. °Ô´Ù°¡ SAICÀÇ CCTLÀº CCEVS ³»¿¡¼ ¸ðµç CCTL ¿î¿µÀÇ °¡Àå Àß Àû¿ëµÈ Æò°¡ »ç·Ê¸¦
Á¦°øÇÏ¸ç ¿î¿µ üÁ¦ ¹× ³×Æ®¿öÅ© ±â±â¸¦ Æ÷ÇÔÇÏ´Â ´Ù¾çÇÑ Á¦Ç°¿¡ ´ëÇØ EAL(Evaluation Assurance Level)
Æò°¡¸¦ ¼öÇàÇÕ´Ï´Ù. |
°øÅë
Æò°¡ ±âÁØ(Common Criteria)Àº ¹«¾ùÀԴϱî?
SAIC ¿¬±¸¿øÀº NIAP(National Information Assurance Partnership)¿¡ ´ëÇÑ IT
º¸¾È Æò°¡ ¹× °ËÁõ/È®ÀÎÀ» ¼öÇàÇϴ ù¹øÂ° ±¹Á¦ Ç¥ÁØÀÎ °øÅë Æò°¡ ±âÁØÀ» °³¹ßÇÑ ÆÀÀÇ ÇÙ½É ±¸¼º¿øÀ̾ú½À´Ï´Ù. NIAP´Â
NSA(National Security Agency) ¹× NIST(National Institute of Standards
and Technology)¿¡ ÀÇÇØ Áö¿øµÇ´Â Çù·Â ÇÁ·Î±×·¥ÀÔ´Ï´Ù. ÇöÀç 15°³ÀÇ ±¹°¡¿¡¼ IT º¸¾È ÀýÂ÷¸¦ À§ÇÑ °ø½ÄÀûÀÎ
Á¦»ïÀÚ Æò°¡ ±âÁØÀ¸·Î¼ °øÅë Æò°¡ ±âÁØ(ISO ±¹Á¦ Ç¥ÁØ 15408À¸·Î ¾Ë·ÁÁü)À» ÀÎÁ¤Çϰí ÀÖ½À´Ï´Ù.
ArcSightÀÇ CTOÀÌÀÚ ¿¬±¸ °³¹ß ¼ö¼® ºÎ»çÀåÀÎ Hugh Njemanze´Â
´ÙÀ½°ú °°ÀÌ ¸»ÇÕ´Ï´Ù.
"°øÅë Æò°¡ ±âÁØ ´Þ¼ºÀ» À§ÇØ °·ÂÇÑ ÆÄÆ®³Ê¿Í Çù·ÂÇÏ°Ô µÇ¾î ¸Å¿ì Å« ¿µ±¤ÀÔ´Ï´Ù. ±× µ¿¾ÈÀÇ ¿¬±¸ ÀÛ¾÷°ú ¸¹Àº
Á¤ºÎ ¹× ÀÏ¹Ý °í°´µé°úÀÇ Çù·Â ±â¹ÝÀ» °í·ÁÇÒ ¶§ ¸Å¿ì È¿À²ÀûÀÎ °á°ú¸¦ ±â´ëÇϰí ÀÖ½À´Ï´Ù." |
±â¾÷¿ë
½Ã½ºÅÛ °ü¸® ÅëÇÕ |
 |
HP OpenView NNM |
 |
HP OpenView ÀÛµ¿(ÀÎÁõµÈ SPI) |
 |
RemedyARS - v5.0 ÀÌ»ó |
 |
Tivoli ¿£ÅÍÇÁ¶óÀÌÁî °ü¸® |
|
ÀÌÁß
ÀÎÁõ(Two-Factor Authentication) |
 |
RSA SecureID / RSA ACE ¼¹ö |
 |
Secure Computing SafeWord PremierAccess |
|
°í°¡¿ë¼º ¼Ö·ç¼Ç |
 |
Legato AAM 5.1 |
|
ArcSight CounterACT ÆÄÆ®³Ê |
 |
SolSoft |
|
 |