λ³Έλ¬Έ λ°”λ‘œκ°€κΈ°
Computer Science/Network

5 μ˜¨ν”„λ ˆλ―ΈμŠ€ vs ν΄λΌμš°λ“œ (On-premise vs Cloud)

by Dowon Kang 2023. 12. 12.

μ§€λ‚œ ν¬μŠ€νŒ…μ—μ„œ LANκ³Ό WAN의 μ •μ˜μ™€ κ°€μ •μ—μ„œ λ„€νŠΈμ›Œν¬ 연결을 μ–΄λ–»κ²Œ ν•˜λŠ”μ§€ μ•Œμ•„λ³΄μ•˜μŠ΅λ‹ˆλ‹€.

μ΄λ²ˆμ—λŠ” νšŒμ‚¬μ—μ„œ μ–΄λ–»κ²Œ λ„€νŠΈμ›Œν¬κ°€ κ΅¬μ„±λ˜λŠ”μ§€ μ•Œμ•„λ΄…μ‹œλ‹€. 

 


 

νšŒμ‚¬ λ„€νŠΈμ›Œν¬μ—λŠ” DMZ(Demilitarized Zone)λΌλŠ” μ˜μ—­μ΄ μ‘΄μž¬ν•©λ‹ˆλ‹€. DMZλŠ” 외뢀와 λ‚΄λΆ€ λ„€νŠΈμ›Œν¬ κ°„μ˜ 쀑간 μ§€λŒ€λ‘œ, μ™ΈλΆ€μ—μ„œ 접근이 κ°€λŠ₯ν•œ μ„œλ²„λ‚˜ μ„œλΉ„μŠ€λ₯Ό λ°°μΉ˜ν•˜λŠ” ꡬ역을 μ˜λ―Έν•©λ‹ˆλ‹€.

주둜 μ›Ή μ„œλ²„, 메일 μ„œλ²„, VPN κ²Œμ΄νŠΈμ›¨μ΄ 등이 DMZ에 μœ„μΉ˜ν•˜κ³  μžˆμŠ΅λ‹ˆλ‹€. 즉, μ›Ήμ„œλ²„λ₯Ό λΆˆνŠΉμ • λ‹€μˆ˜μ—κ²Œ κ³΅κ°œν•˜κ³  μ™ΈλΆ€ μ‚¬μš©μžμ™€ 메일을 μ£Όκ³  λ°›μœΌλ©° νšŒμ‚¬μ˜ 도메인이름을 μ‚¬μš©ν•΄ μΈν„°λ„·μ—μ„œ 접속이 κ°€λŠ₯ν•˜κ²Œ λ§Œλ“€κΈ° μœ„ν•˜μ—¬ DNS μ„œλ²„λ₯Ό DMZ에 μœ„μΉ˜μ‹œν‚΅λ‹ˆλ‹€. 

 

μ΄λ ‡κ²Œ νšŒμ‚¬μ—μ„œ μ‚¬μš©ν•˜λŠ” λ„€νŠΈμ›Œν¬λŠ” λ‹€μ–‘ν•œ μ„œλ²„λ‘œ 이루어져 μžˆμŠ΅λ‹ˆλ‹€. μ™ΈλΆ€λ‘œ κ³΅κ°œν•  ν•„μš”κ°€ μ—†λŠ” κ°€μ •μ—μ„œμ˜ λ„€νŠΈμ›Œν¬μ™€λŠ” μƒλ°˜λœ λͺ¨μŠ΅μ΄μ£ . 

 

DMZλŠ” μ™ΈλΆ€μ—μ„œ λ‚΄λΆ€λ‘œμ˜ 곡격을 λ°©μ–΄ν•˜κΈ° μœ„ν•œ λ³΄μ•ˆ 계측을 μ œκ³΅ν•©λ‹ˆλ‹€. μ™ΈλΆ€μ—μ„œ 직접 λ‚΄λΆ€ λ„€νŠΈμ›Œν¬μ— μ ‘κ·Όν•˜λŠ” 것을 ν”Όν•˜λ©΄μ„œ ν•„μš”ν•œ μ„œλΉ„μŠ€μ— λŒ€ν•œ μ™ΈλΆ€ 접속을 κ°€λŠ₯μΌ€ ν•©λ‹ˆλ‹€.

 


 

μ΄λ ‡κ²Œ νšŒμ‚¬μ—μ„œ κ΄€λ¦¬ν•˜λŠ” μ„œλ²„λ“€μ„ νšŒμ‚¬ 내에 μœ„μΉ˜ν•œ 데이터 센터에 μ„œλ²„λ₯Ό 두고 μš΄μ˜ν•˜λŠ” 것을 온-ν”„λ ˆλ―ΈμŠ€(On-premise)라고 ν•©λ‹ˆλ‹€.

반면, ν΄λΌμš°λ“œ μ„œλΉ„μŠ€λŠ” μΈν„°λ„·μ„ ν†΅ν•΄ μ»΄ν“¨νŒ… λ¦¬μ†ŒμŠ€μ™€ μ„œλΉ„μŠ€λ₯Ό μ œκ³΅ν•˜λŠ” ν˜•νƒœλ‘œ, μ‚¬μš©μžλŠ” ν•„μš”ν•œ λ§ŒνΌμ˜ λ¦¬μ†ŒμŠ€λ₯Ό μ›κ²©μœΌλ‘œ μ‚¬μš©ν•  μˆ˜ μžˆμŠ΅λ‹ˆλ‹€. ν΄λΌμš°λ“œ μ„œλΉ„μŠ€λŠ” κΈ°μ—…μ΄λ‚˜ κ°œμΈμ΄ μžμ²΄μ μœΌλ‘œ λ°μ΄ν„° μ„Όν„°μ™€ μ„œλ²„λ₯Ό μš΄μ˜ν•˜μ§€ μ•Šκ³ λ„ ν•„μš”ν•œ IT μΈν”„라와 μ†Œν”„νŠΈμ›¨μ–΄λ₯Ό μ΄μš©ν•  μˆ˜ μžˆκ²Œ ν•΄μ£ΌλŠ” ν”Œλž«νΌμž…λ‹ˆλ‹€. 

 

 

 


DMZ (Demilitarized Zone): A network buffer zone securing internal systems by hosting external-facing servers.

 

On-premise : Traditional IT model where organizations manage their own infrastructure within their physical location.


Cloud: Internet-based computing providing scalable resources, reducing the need for on site infrastructure and allowing flexible, pay-as-you-go access.

λŒ“κΈ€