TTA °£Ç๰ - ICT Standard Weekly

Ȩ > Ç¥ÁØÈ­ Âü¿© > TTA°£Ç๰ > ICT Standard Weekly

±â¼úÇ¥ÁØÀ̽´

´Ù¿î·Îµå (2011-43È£)
Æ®À§ÅÍ ÆäÀ̽ººÏ ¹ÌÅõµ¥ÀÌ

[Á¤º¸º¸È£] ITU-T SG17 ±ÝÀ¶º¸¾È Ç¥ÁØÈ­ µ¿Çâ

ÃÖ±Ù ½º¸¶Æ®ÆùÀÇ ¿­Ç³Àº ´Ù¾çÇÑ »çȸÀû ¹®È­Àû ÆÄ±ÞÈ¿°ú¸¦ °¡Áö°í ÀÖÁö¸¸, ±â¼úÀû ¹ßÀüÀÇ ÆÄ±ÞÈ¿°ú¸¦ °í·ÁÇØ º¸¾ÒÀ» ¶§ Áß¿äÇÑ Á¡Àº À̵¿ ÀÎÅͳÝÀ» »ç¿ëÀÚ°¡ ü°¨Çϰí ÀÖ´Ù´Â °ÍÀ̸ç, °ü·ÃÇÑ ´Ù¾çÇÑ »ç¾÷ÀÚµéÀº ÀÌ¿¡ À¯¿ëÇÑ ¼­ºñ½º¸¦ °³¹ßÇÏ¿© »õ·Î¿î ½ÃÀåÀ» Çü¼ºÇذ¡°í ÀÖ´Ù´Â Á¡ÀÌ´Ù. ƯÈ÷, ±âÁ¸ Åë½Å¸Á Áß½ÉÀÇ Ã¤³Î Á¦°ø ¼­ºñ½º ¸ðµ¨ÀÌ ÀÀ¿ë¼­ºñ½º¸¦ Áß½ÉÀ¸·Î ÇÏ´Â ¸ðµ¨·Î ÁøÈ­Çϰí ÀÖ´Ù´Â Á¡ÀÌ »õ·Î¿î ±¹¸éÀ¸·Î ºÎ°¢µÇ°í ÀÖ´Ù. ¿©±â¼­ ÀüÀÚ±ÝÀ¶¼­ºñ½º´Â Åë½Å¸ÁÀÌ Á¦°øÇÏ´Â ´Ù¾çÇÑ ¼­ºñ½ºµé Áß ÀÏ¹Ý »ç¿ëÀÚ¿¡°Ô ¸Å¿ì Ä£¼÷ÇÑ ¼­ºñ½ºÀÇ Çϳª·Î ¼Õ²ÅÈú ¼ö ÀÖÀ» °ÍÀÌ´Ù. 

 

Áö±ÝÀ¸·ÎºÎÅÍ 20¿© ³â ÀüÀ¸·Î °Å½½·¯ ¿Ã¶ó°¡ 1980³â ÁßÈĹÝÀ» ¶°¿Ã¸®¸é ´ç½Ã´Â °³º° ±â¾÷º°·Î Àü»ê½Ã½ºÅÛÀ» ±¸ºñÇÏ¿© Ŭ¶óÀÌ¾ðÆ® ¼­¹ö ¸ðµ¨ÀÇ ±â¾÷ Àü»ê ÀÎÇÁ¶ó¸¦ ±¸ÃàÇÏ´Â ½Ã±â¿´À» °ÍÀÌ´Ù. ¸¶Âù°¡Áö·Î ±ÝÀ¶±â°üµéµµ ÀºÇà°£ Áö±Þ°áÁ¦ 󸮸¦ À§ÇÏ¿© ÀºÇà°øµ¿¸Á ±¸ÃàÀ» ÇÏ´ø ½Ã±â¿¡ ÇØ´çÇÑ´Ù. ÀÌ ½Ã±â¿¡ ±ÝÀ¶º¸¾ÈÀÇ ÁÖ¿ä ¸ñÀûÀº ÀºÇà°£ °áÁ¦´ë±ÝÀÇ ¾ÈÀüÇÑ °áÁ¦¸¦ À§ÇØ ¿ä±¸µÇ´Â Àü´ÞµÇ´Â ¸Þ½ÃÁöÀÇ º¸È£¿Í Åë½Å¸Á º¸¾ÈÀ» À§ÇÑ ¿ä±¸»çÇ×ÀÌ ÁÖ¸¦ ÀÌ·ç¾ú¾ú´Ù. ÀÌ ½Ã±â¿¡ »ç¿ëÀÚµéÀº Á÷Á¢ ÀºÇà¿¡ ¹æ¹®ÇÏ¿© µ·À» ÀÔ±ÝÇϰí ÀÌüÇÏ¿´±â ¶§¹®¿¡ ATM±â±â µî »ç¿ëÀÚ¸¦ Á÷Á¢ ´ë¸éÇÏ´Â ÀåÄ¡ À̿ܿ¡ »ç¿ëÀÚ Ã¤³Î¿¡¼­ÀÇ Á¤º¸º¸È£¿ä±¸»çÇ×Àº Á¸ÀçÇÏÁö ¾Ê¾Ò´Ù.

 

¾Õ¼­ »ìÆìº¸¾Ò´ø ½Ã±â·ÎºÎÅÍ 20¿© ³âÀÌ È帥 Áö±Ý ÀÌ ½Ã´ë¿¡ ±ÝÀ¶°í°´µéÀº Á÷Á¢ ÀºÇàÀ» ¹æ¹®Çϱ⺸´Ù´Â PC¸¦ »ç¿ëÇϰųª, ÀüÈ­¸¦ »ç¿ëÇϰųª, ȤÀº ½º¸¶Æ®Æù ´Ü¸»¿¡¼­ ´Ù¾çÇÑ ÀüÀÚ±ÝÀ¶¼­ºñ½º¸¦ »ç¿ëÇϰí ÀÖ´Ù. ÀÌ´Â Åë½Å¸Á ±â¼úÀÇ ¹ßÀü ¹× È®»êÀ¸·ÎºÎÅÍ ÀÎÅͳÝÀÌ º¸ÆíÈ­ µÇ¸é¼­ ³ªÅ¸³ª´Â ÀÚ¿¬½º·¯¿î Çö»óÀ̾ú°í, ÀÎÅͳÝÀÌ º¸ÆíÈ­ µÇ¸é¼­ ISO, ITU-TÀÇ ±¹Á¦ Ç¥Áرⱸµé¿¡¼­µµ Á¤º¸º¸È£¿¡ °üÇÑ Ç¥ÁØ °³¹ßÀ» »óÈ£ Çù·ÂÀûÀ¸·Î Ȱ¹ßÇÏ°Ô ÁøÇàÇØ¿À°í ÀÖ¾ú´Ù.

 

±ÝÀ¶º¸¾È °ü·Ã Ç¥ÁØÈ­ ±â±¸ µ¿Çâ

±¹Á¦Ç¥Áرⱸ·Î¼­ ISOÀÇ °æ¿ì 2010³â ±âÁØÀ¸·Î º¼ ¶§ ±ÝÀ¶Ç¥ÁØÀº »êÇÏ ±â¼úÀ§¿øÈ¸ÀÎ TC68ÀÌ ÁÖµµÇϰí ÀÖÀ¸¸ç, 61°³±¹ÀÌ Âü¿©Çϰí ÀÖ´Â »óȲÀÌ´Ù. TC68Àº ±ÝÀ¶¼­ºñ½º ºÎ¹® ±¹Á¦Ç¥ÁØÈ­¸¦ ´ã´çÇÏ´Â ±â¼úÀ§¿øÈ¸·Î 23°³ P-member(Çѱ¹ Æ÷ÇÔ)¿Í 38°³ O-member·Î ±¸¼ºµÇ°í 4°³ÀÇ SC¿Í 1°³ÀÇ WG°¡ Ȱµ¿Çϰí ÀÖÀ¸¸ç, »ç¹«±¹ ±â´ÉÀº ¹Ì±¹ ±¹°¡Ç¥Áرⱸ(ANSI)°¡ ´ã´çÇϰí ÀÖ´Ù.

±ÝÀ¶ºÐ¾ß¿¡ °ü·ÃµÈ ÁÖ¿ä Ç¥ÁØÀº ¸Þ½ÃÁö Àü¼Û Ç¥ÁØ, »ýüÀνÄ, ¾ÏÈ£ ¾Ë°í¸®Áò, PIN°ü¸® µîÀ̸ç, TC68 »êÇÏÀÇ ºÐ°úÀ§¿øÈ¸ÀÎ SC2(Áö±Þ°áÁ¦º¸¾È), SC4(Áõ±Ç), SC7(ÄÚ¾î¹ðÅ·) µî¿¡¼­ ´ã´çÇϰí ÀÖ´Ù. ƯÈ÷, ±ÝÀ¶º¸¾È ºÐ¾ß¸¦ ´ã´çÇϰí ÀÖ´Â SC2¿¡¼­´Â 8°³ WGÀÌ ¿î¿µµÇ¸é¼­ °ü·Ã Ç¥ÁØÀ» Á¦Á¤Çß¾ú´Ù.

- WG4: ÀºÇà¾÷¹« Á¤º¸º¸È£°¡À̵å¶óÀÎ(Information Security Guideline for Banking)

- WG6: ITº¸¾È À¯ÁöȰµ¿ ÇÁ·¹ÀÓ¿öÅ©(Framework Study into IT Security Maintenance Activity)

- WG8: °ø°³Å° ±â¹Ý±¸Á¶ °ü¸®(Public Key Infrastructure Management)

- WG10: »ýüÀÎ½Ä º¸¾È ¹× °ü¸®(Biometric Security and Management)

- WG11: ±ÝÀ¶ ÀÀ¿ëÇÁ·Î±×·¥¿¡ »ç¿ëµÇ´Â ¾ÏÈ£¾Ë°í¸®Áò(Encryption Algorithms used in Banking Applications)

- WG12: ±ÝÀ¶°Å·¡ ÀüÀÚ¹®¼­ÀÇ ¾ÈÀüÇÑ ¼­¸íÀ» À§ÇÑ ¿ä°Ç(Requirements for Secure Signing Mechanisms for Financial Institutions)

- WG13: ¼Ò¸Å±ÝÀ¶¿¡¼­ÀÇ Á¤º¸º¸È£(Security in Retail Banking)

- WG14: ¾ÏÈ£¸Þ½ÃÁö Çü½Ä(Cryptographic Syntax)

 

2011³â 8¿ù 22ÀϺÎÅÍ 9¿ù 2ÀϱîÁö °³ÃÖµÈ ITU-T SG17(Á¤º¸º¸È£) Ç¥ÁØÈ­ ȸÀÇ¿¡ ±ÝÀ¶º¸¾È¿¬±¸¿ø¿¡¼­´Â ¡®ÀÎÅͳݹðÅ· ¼­ºñ½º¸¦ À§ÇÑ ÀÌ»ó±ÝÀ¶°Å·¡ ŽÁö ½Ã½ºÅÛ¡¯À̶ó´Â ÁÖÁ¦·Î ½Å±ÔÇ¥ÁؾÆÀÌÅÛÀ» Á¦¾ÈÇÏ¿´´Ù. ÃÖÁ¾ ȸÀÇ °á°ú´Â Á¦¾È ½Å±Ô Ç¥ÁØÀÌ ´Ù·ç´Â ¹üÀ§¿Í Á¦¸ñ º¯°æÀ» ÅëÇÏ¿© Á¦¾È ³»¿ëÀ» ÃßÁøÇϰí, ´ë½Å¿¡ ISO TC 68 SC2·Î ÇØ´ç ½Å±Ô Ç¥ÁØ ¾ÆÀÌÅÛÀÇ °³¹ß¿¡ ´ëÇÏ¿© Çù·Â ¿äûÀ» ÇÏ´Â ¿¬¶ô¹®¼­(Liasion Statement)¸¦ ÅëÇÏ¿© ÇØ´ç ±×·ìÀ¸·ÎºÎÅÍ ÀǰßÀ» µè´Â °ÍÀ¸·Î °á·Ð¿¡ µµ´ÞÇß´Ù.

¶ÇÇÑ, 2013³âºÎÅÍ ½ÃÀ۵Ǵ Â÷±â ¿¬±¸È¸±âÀÇ ±¸Á¶Á¶Á¤°ú °ü·ÃÇØ¼­ SG17 WP(working party)2¿¡¼­´Â Çѱ¹ ÁÖµµ·Î ¼Ò¼È ³×Æ®¿öÅ© º¸¾È, Ŭ¶ó¿ìµå º¸¾È µî°ú ÇÔ²² ¸ð¹ÙÀÏ ±ÝÀ¶ ½Ã½ºÅÛ º¸¾ÈÀ» Æ÷ÇÔÇÒ °ÍÀ» Á¦¾ÈÇÏ¿´´Ù(TD 2172). À̹ø ȸ±â µ¿¾È SG17¿¡¼­´Â 3°³ WP¸¦ ¿î¿µÇÏ¿© ¿Ô¾úÀ¸¸ç, WP Â÷¿ø¿¡¼­ Â÷±â ¿¬±¸È¸±â µ¿¾È ½Å±Ô ICT ¼­ºñ½º ºÐ¾ß¿¡¼­ÀÇ ¿¬±¸ ÁÖÁ¦ È®´ëÀÇ Çʿ伺À» Á¦¾ÈÇÑ °ÍÀÌ´Ù.

- WP 1: ³×Æ®¿öÅ© Á¤º¸ º¸¾È(Network and Information Security)

- WP 2: ÀÀ¿ë º¸¾È(Application Security)

- WP 3: ½Å¿ø °ü¸® ¹× ¾ð¾î(Identity Management and Language)

 

°á¾ð

¸ð¹ÙÀÏ ÀÎÅͳÝÀÌ º¸ÆíÈ­µÈ ½ÃÁ¡¿¡¼­ ±âÁ¸ ÀºÇà°£ »Ó¸¸ ¾Æ´Ï¶ó °³Àΰú ÀºÇà, °³Àΰú °³Àΰ£ÀÇ ÀÎÅÍ³Ý ±â¹Ý ´Ù¾çÇÑ ±ÝÀ¶ ¼­ºñ½º°¡ ÃâÇöÇϰí ÀÖ´Ù. ÀÌ·¯ÇÑ ½ÃÁ¡¿¡¼­ ITU-T¿¡¼­ÀÇ Åë½Å¸Á ±â¹ÝÀÇ Á¤º¸º¸È£ Ç¥ÁØ ÃßÁø °æÇè°ú ISO TC68¿¡¼­ÀÇ ±ÝÀ¶ ºÐ¾ßÀÇ Àü¹®È­µÈ Ç¥ÁØ ¿µ¿ªÀÌ Á¶È­¸¦ ÀÌ·ç¾î ½º¸¶Æ® ¸ð¹ÙÀÏ È¯°æ¿¡¼­ ±ÝÀ¶º¸¾ÈÀ» À§ÇÑ Ç¥ÁØ ±â¼úÀÌ °³¹ßµÇ¾î¾ß ÇÒ ½ÃÁ¡À¸·Î º¸ÀδÙ.

ÀÓÇüÁø (±ÝÀ¶º¸¾È¿¬±¸¿ø u-±ÝÀ¶¿¬±¸ÆÀ Ã¥ÀÓ¿¬±¸¿ø, hjlim@fsa.or.kr)

* º» ±ÛÀº ÀúÀÚÀÇ ÀǰßÀÏ »Ó TTA ±â°üÀÇ ÀÔÀå°ú´Â ¹«°üÇÕ´Ï´Ù.