Sun logo      ÀÌÀü      ¸ñÂ÷      »öÀÎ      ´ÙÀ½     

Sun ONE Portal Server, Secure Remote Access 6.2 °ü¸®ÀÚ ¼³¸í¼­

2 Àå
°ÔÀÌÆ®¿þÀÌ

ÀÌ Àå¿¡¼­´Â °ÔÀÌÆ®¿þÀÌ °ü·Ã °³³ä°ú °ÔÀÌÆ®¿þÀÌÀÇ ¿øÈ°ÇÑ ½ÇÇà¿¡ ÇÊ¿äÇÑ Á¤º¸¸¦ ¼³¸íÇÕ´Ï´Ù. °ÔÀÌÆ®¿þÀÌ ±¸¼º¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº 9 Àå, "°ÔÀÌÆ®¿þÀÌ ±¸¼º"À» ÂüÁ¶ÇϽʽÿÀ.

À̹ø Àå¿¡¼­´Â ´ÙÀ½ ÁÖÁ¦¸¦ ´Ù·ì´Ï´Ù.


°ÔÀÌÆ®¿þÀÌÀÇ °³¿ä

°ÔÀÌÆ®¿þÀÌ´Â ÀÎÅͳÝÀ» ÅëÇØ µé¾î¿À´Â ¿ø°Ý »ç¿ëÀÚ ¼¼¼Ç°ú ȸ»ç ÀÎÆ®¶ó³Ý »çÀÌ¿¡¼­ ÀÎÅÍÆäÀ̽º¿Í º¸¾È À庮À» Á¦°øÇÕ´Ï´Ù. °ÔÀÌÆ®¿þÀÌ´Â ¿ø°Ý »ç¿ëÀÚ¿¡ ´ëÇÑ ´ÜÀÏ ÀÎÅÍÆäÀ̽º¸¦ ÅëÇØ ³»ºÎ À¥ ¼­¹ö¿Í ÀÀ¿ëÇÁ·Î±×·¥ ¼­¹ö¿¡¼­ ¾ÈÀüÇÏ°Ô ÄÁÅÙÆ®¸¦ Á¦°øÇÕ´Ï´Ù.


°ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ¸¸µé±â

°ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ¿¡´Â °ÔÀÌÆ®¿þÀ̰¡ ¼ö½ÅÇÏ´Â Æ÷Æ®, SSL ¿É¼Ç ¹× ÇÁ¶ô½Ã ¿É¼Ç°ú °°ÀÌ °ÔÀÌÆ®¿þÀÌ ±¸¼º¿¡ °ü·ÃµÈ ¸ðµç Á¤º¸°¡ µé¾î ÀÖ½À´Ï´Ù.

°ÔÀÌÆ®¿þÀ̸¦ ¼³Ä¡ÇÒ ¶§ ±âº» °ªÀ» ¼±ÅÃÇϸé "±âº»"À̶ó´Â ±âº» °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀÌ ¸¸µé¾îÁý´Ï´Ù. ±âº» ÇÁ·ÎÇÊ¿¡ ÇØ´çÇÏ´Â ±¸¼º ÆÄÀÏÀº ´ÙÀ½ À§Ä¡¿¡ ÀÖ½À´Ï´Ù.

/etc/opt/SUNWps/platform.conf.default

¿©±â¼­ /etc/opt/SUNWps´Â ¸ðµç platform.conf.* ÆÄÀÏÀ» À§ÇÑ ±âº» À§Ä¡ÀÔ´Ï´Ù.

platform.conf ÆÄÀÏ ³»¿ë¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº "platform.conf ÆÄÀÏ ÀÌÇØ"¸¦ ÂüÁ¶ÇϽʽÿÀ.

°¡´ÉÇÑ ÀÛ¾÷:


ÁÖÀÇ

°°Àº ÄÄÇ»ÅÍ¿¡¼­ ½ÇÇàµÇ´Â °ÔÀÌÆ®¿þÀÌÀÇ ¼­·Î ´Ù¸¥ ÀνºÅϽº¿¡ °°Àº ÇÁ·ÎÇÊÀ» ÇÒ´çÇÏÁö ¸¶½Ê½Ã¿À. ±×·¯¸é Æ÷Æ® ¹øÈ£°¡ °°°Ô µÇ¹Ç·Î Ãæµ¹ÀÌ ¹ß»ýÇÕ´Ï´Ù.

°°Àº °ÔÀÌÆ®¿þÀÌ¿¡ ¸¸µé¾îÁø ¼­·Î ´Ù¸¥ ÇÁ·ÎÇÊ¿¡¼­ °°Àº Æ÷Æ® ¹øÈ£¸¦ ÁöÁ¤ÇÏÁö ¸¶½Ê½Ã¿À. µ¿ÀÏÇÑ °ÔÀÌÆ®¿þÀÌÀÇ Æ÷Æ® ¹øÈ£°¡ °°Àº ´ÙÁß ÀνºÅϽº¸¦ ½ÇÇàÇϸé Ãæµ¹ÀÌ ¹ß»ýÇÕ´Ï´Ù.


    °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀ» ¸¸µé·Á¸é
  1. Sun¢â ONE Identity Server °ü¸® Äֿܼ¡ °ü¸®ÀÚ·Î ·Î±×ÀÎÇÕ´Ï´Ù.
  2. [¼­ºñ½º ±¸¼º] ÅÇÀ» ¼±ÅÃÇÕ´Ï´Ù.
  3. SRA ±¸¼º ¾Æ·¡¿¡¼­ °ÔÀÌÆ®¿þÀÌ ¿·¿¡ ÀÖ´Â È­»ìÇ¥¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  4. ¿À¸¥ÂÊ Ã¢¿¡ °ÔÀÌÆ®¿þÀÌ ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  5. [»õ·Î ¸¸µé±â]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  6. »õ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ¸¸µé±â ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  7. »õ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀÇ À̸§À» ÀÔ·ÂÇÕ´Ï´Ù.
  8. µå·Ó´Ù¿î ¸ñ·Ï¿¡¼­ »õ ÇÁ·ÎÇÊÀ» ¸¸µé ¶§ »ç¿ëÇÒ ÇÁ·ÎÇÊÀ» ¼±ÅÃÇÕ´Ï´Ù.
  9. ±âº»ÀûÀ¸·Î ¸¸µé¾îÁö´Â »õ ÇÁ·ÎÆÄÀÏÀº ¸ðµÎ »çÀü Á¦°øµÈ ±âº» ÇÁ·ÎÆÄÀÏÀ» ±âÁØÀ¸·Î ÇÕ´Ï´Ù. »ç¿ëÀÚ Á¤ÀÇ ÇÁ·ÎÇÊÀ» ¸¸µç °æ¿ì µå·Ó´Ù¿î ¸ñ·Ï¿¡¼­ ±× ÇÁ·ÎÇÊÀ» ¼±ÅÃÇÒ ¼ö ÀÖ½À´Ï´Ù. »õ ÇÁ·ÎÇÊÀº ¼±ÅÃÇÑ ÇÁ·ÎÇÊÀÇ ¸ðµç ¼Ó¼ºÀ» »ó¼ÓÇÕ´Ï´Ù.

  10. [¸¸µé±â]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  11. »õ ÇÁ·ÎÇÊÀÌ ¸¸µé¾îÁö°í °ÔÀÌÆ®¿þÀÌ ÆäÀÌÁö·Î µ¹¾Æ°¡¸é °Å±â¿¡ »õ ÇÁ·ÎÇÊÀÌ ³ª¿­µË´Ï´Ù.

  12. º¯°æ »çÇ×À» Àû¿ëÇÏ·Á¸é ÀÌ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ À̸§ÀÌ ÀÖ´Â °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  13. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start

°ÔÀÌÆ®¿þÀ̸¦ ±¸¼ºÇÏ·Á¸é 9 Àå, "°ÔÀÌÆ®¿þÀÌ ±¸¼º"À» ÂüÁ¶ÇϽʽÿÀ.


platform.conf ÆÄÀÏ ÀÌÇØ

platform.conf ÆÄÀÏÀº ´ÙÀ½ À§Ä¡¿¡ ÀÖ½À´Ï´Ù.

/etc/opt/SUNWps

platform.conf ÆÄÀÏ¿¡´Â °ÔÀÌÆ®¿þÀÌ¿¡ ÇÊ¿äÇÑ »ó¼¼ Á¤º¸°¡ µé¾î ÀÖ½À´Ï´Ù. ÀÌ ºÎºÐ¿¡¼­´Â ¿¹Á¦ platform.conf ÆÄÀÏÀÌ ³ª¿Í ÀÖÀ¸¸ç ¸ðµç Ç׸ñ¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù.

¸ðµç ÄÄÇ»Åͺ° »ó¼¼ Á¤º¸¸¦ ±¸¼º ÆÄÀÏ¿¡ Æ÷ÇÔ½ÃÄÑ ÁÁÀº Á¡Àº °øÅë ÇÁ·ÎÇÊÀ» ¿©·¯ ÄÄÇ»ÅÍ¿¡¼­ ½ÇÇàµÇ´Â °ÔÀÌÆ®¿þÀÌ¿¡¼­ °øÀ¯ÇÒ ¼ö ÀÖ´Ù´Â °ÍÀÔ´Ï´Ù.

´ÙÀ½Àº ¿¹Á¦ÀÔ´Ï´Ù.

#

# Copyright 11/28/00 Sun Microsystems, Inc. All Rights Reserved.

# "@(#)platform.conf  1.38 00/11/28 Sun Microsystems"

#

gateway.user=noaccess

gateway.jdk.dir=/usr/java_1.3.1_06

gateway.dsame.agent=http://pserv2.iportal.com:8080/sunportal/RemoteConfigServlet

portal.server.protocol=http

portal.server.host=pserv2.iportal.com

portal.server.port=8080

gateway.protocol=https

gateway.host=siroe.india.sun.com

gateway.port=333

gateway.trust_all_server_certs=true

gateway.trust_all_server_cert_domains=false

gateway.virtualhost=siroe1.india.sun.com 10.13.147.81

gateway.virtualhost.defaultOrg=o=root,dc=test,dc=com

gateway.notification.url=/notification

gateway.retries=6

gateway.debug=error

gateway.debug.dir=/var/opt/SUNWps/debug

gateway.logdelimiter=&&

gateway.external.ip=10.12.147.71

gateway.certdir=/etc/opt/SUNWps/cert/portal

gateway.allow.client.caching=true

gateway.userProfile.cacheSize=1024

gateway.userProfile.cacheSleepTime=60000

gateway.userProfile.cacheCleanupTime=300000

gateway.bindipaddress=10.12.147.71

gateway.sockretries=3

gateway.enable.accelerator=false

gateway.enable.customurl=false

gateway.httpurl=http://siroe.india.sun.com

gateway.httpsurl=https://siroe.india.sun.com

gateway.favicon=https://siroe.india.sun.com

gateway.logging.password=ALKJDF123SFLKJJSDFU

Ç¥ 2-1¿¡´Â platform.conf ÆÄÀÏ¿¡ ÀÖ´Â ¸ðµç Çʵ尡 ³ª¿­µÇ°í ÀÌ¿¡ ´ëÇÑ ¼³¸íÀÌ ³ª¿Í ÀÖ½À´Ï´Ù. ÀÌ Ç¥¿¡´Â 3°³ÀÇ ¿­ÀÌ ÀÖ½À´Ï´Ù. ù ¹øÂ° ¿­¿¡´Â ÆÄÀÏÀÇ Ç׸ñÀÌ ³ª¿­µÇ¸ç µÎ ¹øÂ° ¿­¿¡´Â ±âº»°ªÀÌ ÀÖ´Â °æ¿ì ÀÌ °ªÀÌ ³ªÅ¸³ª°í ¼¼ ¹øÂ° ¿­¿¡´Â Çʵ尡 °£·«ÇÏ°Ô ¼³¸íµÇ¾î ÀÖ½À´Ï´Ù.

Ç¥ 2-1  platform.conf ÆÄÀÏ ¼Ó¼º

Ç׸ñ

±âº»°ª

¼³¸í

gateway.user

noaccess

°ÔÀÌÆ®¿þÀ̰¡ ÀÌ »ç¿ëÀÚ·Î ½ÇÇàµË´Ï´Ù.

°ÔÀÌÆ®¿þÀÌ´Â ·çÆ®·Î ½ÃÀ۵Ǿî¾ß Çϸç ÃʱâÈ­ ÈÄ¿¡´Â ÀÌ »ç¿ëÀÚ°¡ µÇ´Â ·çÆ® ±ÇÇÑÀ» »ó½ÇÇÕ´Ï´Ù.

gateway.jdk.dir

 

°ÔÀÌÆ®¿þÀÌ¿¡¼­ »ç¿ëÇÏ´Â JDK µð·ºÅ丮ÀÇ À§Ä¡ÀÔ´Ï´Ù.

gateway.dsame.agent

 

ÀÌ ÇÁ·ÎÇÊÀ» ¾òÀ» ¼ö ÀÖµµ·Ï ½ÃÀÛÇÏ´Â Áß¿¡ °ÔÀÌÆ®¿þÀÌ¿¡¼­ Á¢ÃËÇÏ°Ô µÇ´Â Identity ServerÀÇ URLÀÔ´Ï´Ù.

portal.server.
protocol

portal.server.host

portal.server.port

 

±âº» Portal Server ¼³Ä¡¿¡¼­ »ç¿ëÇÏ´Â ÇÁ·ÎÅäÄÝ, È£½ºÆ® ¹× Æ÷Æ®ÀÔ´Ï´Ù.

gateway.protocol
gateway.host
gateway.port

 

°ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÅäÄÝ, È£½ºÆ® ¹× Æ÷Æ®ÀÔ´Ï´Ù. ÀÌ °ªÀº ¼³Ä¡ ½Ã ÁöÁ¤ÇÑ ¸ðµå ¹× Æ÷Æ®¿Í µ¿ÀÏÇÕ´Ï´Ù. ÀÌ °ªÀº ¾Ë¸² URLÀ» ±¸¼ºÇÏ´Â µ¥ »ç¿ëµË´Ï´Ù.

gateway.trust_all_
server_certs

true

°ÔÀÌÆ®¿þÀÌ¿¡¼­ ¸ðµç ¼­¹ö ÀÎÁõ¼­¸¦ ½Å·ÚÇØ¾ß ÇÏ´ÂÁö ¾Æ´Ï¸é °ÔÀÌÆ®¿þÀÌ ÀÎÁõ¼­ µ¥ÀÌÅͺ£À̽º¿¡ ÀÖ´Â ¼­¹ö ÀÎÁõ¼­¸¸ ½Å·ÚÇØ¾ß ÇÏ´ÂÁö ³ªÅ¸³À´Ï´Ù.

gateway.trust_all_
server_cert_domains

false

°ÔÀÌÆ®¿þÀÌ¿Í ¼­¹ö »çÀÌ¿¡ SSL Åë½ÅÀÌ ÀÖÀ» ¶§¸¶´Ù ¼­¹ö ÀÎÁõ¼­°¡ °ÔÀÌÆ®¿þÀÌ¿¡ Á¦°øµË´Ï´Ù. ±âº»ÀûÀ¸·Î °ÔÀÌÆ®¿þÀÌ´Â ¼­¹ö È£½ºÆ® À̸§ÀÌ ¼­¹ö ÀÎÁõ¼­ CN°ú °°ÀºÁö È®ÀÎÇÕ´Ï´Ù.

ÀÌ ¼Ó¼º °ªÀÌ true·Î ¼³Á¤µÇ¾î ÀÖÀ¸¸é °ÔÀÌÆ®¿þÀÌ¿¡¼­´Â ¼ö½ÅÇÏ´Â ¼­¹ö ÀÎÁõ¼­¿¡ ´ëÇØ µµ¸ÞÀÎ È®ÀÎÀ» »ç¿ëÇÏÁö ¾Ê½À´Ï´Ù.

gateway.virtualhost

 

°ÔÀÌÆ®¿þÀÌ ÄÄÇ»ÅÍ¿¡ ±¸¼ºµÈ È£½ºÆ® À̸§ÀÌ ¿©·¯ °³ ÀÖÀ» °æ¿ì ÀÌ Çʵ忡¼­ À̸§À» ´Ù¸£°Ô ÁöÁ¤ÇÏ¿© °ø±ÞÀÚ ÁÖ¼Ò¸¦ ±¸ºÐÇÒ ¼ö ÀÖ½À´Ï´Ù.

gateway.virtualhost.defaultOrg=org

 

»ç¿ëÀÚ°¡ ·Î±×ÀÎÇÒ ±âº» Á¶Á÷À» ÁöÁ¤ÇÕ´Ï´Ù.

¿¹¸¦ µé¾î °¡»ó È£½ºÆ® Çʵå Ç׸ñÀÌ ´ÙÀ½°ú °°´Ù°í °¡Á¤ÇØ º¾½Ã´Ù.

gateway.virtualhost=test.com employee.test.com

Managers.test.com

±âº» Á¶Á÷ Ç׸ñÀÌ ´ÙÀ½°ú °°À½:

test.com.defaultOrg = o=root,dc=test,dc=com

employee.test.com.defaultOrg = o=employee,dc=test,dc=com

Manager.test.com.defaultOrg = o=Manager,dc=test,dc=com

»ç¿ëÀÚ´Â https://manager.test.comÀ» ÅëÇØ https://test.com/o=Manager,dc=test,dc=com ´ë½Å °ü¸®ÀÚ Á¶Á÷¿¡ ·Î±×ÀÎÇÒ ¼ö ÀÖ½À´Ï´Ù.

Âü°í: virtualhost ¹× defaultOrg´Â platform.conf file¿¡¼­´Â ´ë¼Ò¹®ÀÚ°¡ ±¸º°µÇÁö¸¸ URL¿¡ »ç¿ëÇÒ ¶§´Â ±¸º°µÇÁö ¾Ê½À´Ï´Ù.

gateway.
notification.url

 

°ÔÀÌÆ®¿þÀÌ È£½ºÆ®, ÇÁ·ÎÅäÄÝ ¹× Æ÷Æ® Á¶ÇÕÀº ¾Ë¸² URLÀ» ±¸¼ºÇÏ´Â µ¥ »ç¿ëµË´Ï´Ù. ÀÌ Á¶ÇÕÀº Identity ServerÀÇ ¼¼¼Ç ¾Ë¸²À» ¼ö½ÅÇÏ´Â µ¥ »ç¿ëµË´Ï´Ù.

¾Ë¸² URLÀº ´Ù¸¥ Á¶Á÷ À̸§°ú °°Áö ¾Êµµ·Ï ÇÕ´Ï´Ù. ¾Ë¸² URLÀº Á¶Á÷ À̸§°ú ÀÏÄ¡ÇÏ¹Ç·Î ÇØ´ç Á¶Á÷¿¡ ¿¬°áÀ» ½ÃµµÇÏ´Â »ç¿ëÀÚ¿¡°Ô´Â ·Î±×ÀÎ ÆäÀÌÁö ´ë½Å °ø¹é ÆäÀÌÁö°¡ ³ªÅ¸³³´Ï´Ù.

gateway.retries

 

½ÃÀÛÇÏ´Â Áß¿¡ °ÔÀÌÆ®¿þÀÌ¿¡¼­ Portal Server¿¡ Á¢ÃËÇϰíÀÚ ½ÃµµÇϴ Ƚ¼ö¸¦ ¸»ÇÕ´Ï´Ù.

gateway.debug

error

°ÔÀÌÆ®¿þÀÌÀÇ µð¹ö±× ¼öÁØÀ» ¼³Á¤ÇÕ´Ï´Ù. µð¹ö±× ÆÄÀÏÀº debug-directory/files¿¡ ÀÖ½À´Ï´Ù. µð¹ö±× ÆÄÀÏ À§Ä¡´Â gateway.debug.dir Ç׸ñ¿¡ ÁöÁ¤µÇ¾î ÀÖ½À´Ï´Ù.

µð¹ö±ë ¼öÁØÀº ´ÙÀ½°ú °°½À´Ï´Ù.

¿À·ù - µð¹ö±× ÆÄÀÏ¿¡ ½É°¢ÇÑ ¿À·ù¸¸ ±â·ÏµË´Ï´Ù. ÀϹÝÀûÀ¸·Î ÀÌ·¯ÇÑ ¿À·ù°¡ ¹ß»ýÇÏ¸é °ÔÀÌÆ®¿þÀÌ´Â ±â´ÉÀÌ Áߴܵ˴ϴÙ.

°æ°í - °æ°í ¸Þ½ÃÁö°¡ ±â·ÏµË´Ï´Ù.

¸Þ½ÃÁö - ¸ðµç µð¹ö±× ¸Þ½ÃÁö°¡ ±â·ÏµË´Ï´Ù.

³¯Â¥ - ¸ðµç µð¹ö±× ¸Þ½ÃÁö°¡ Äֿܼ¡ Ç¥½ÃµË´Ï´Ù.

µð¹ö±× ÆÄÀÏÀº ´ÙÀ½°ú °°½À´Ï´Ù.

srapGateway.gateway-profile-name - °ÔÀÌÆ®¿þÀÌ µð¹ö±× ¸Þ½ÃÁö°¡ µé¾î ÀÖ½À´Ï´Ù.

Gateway_to_from_server.gateway-profile-name - ¸Þ½ÃÁö ¸ðµå¿¡¼­´Â ÀÌ ÆÄÀÏ¿¡ °ÔÀÌÆ®¿þÀÌ¿Í ³»ºÎ ¼­¹ö »çÀÌÀÇ ¸ðµç ¿äû ¹× ÀÀ´ä Çì´õ°¡ µé¾î ÀÖ½À´Ï´Ù.

ÀÌ ÆÄÀÏÀ» »ý¼ºÇÏ·Á¸é /var/opt/SUNWps/debug µð·ºÅ丮¿¡¼­ ¾²±â ±ÇÇÑÀ» º¯°æÇÕ´Ï´Ù.

Gateway_to_from_server.gateway-profile-name - ¸Þ½ÃÁö ¸ðµå¿¡¼­´Â ÀÌ ÆÄÀÏ¿¡ °ÔÀÌÆ®¿þÀÌ¿Í Å¬¶óÀÌ¾ðÆ® ºê¶ó¿ìÀú »çÀÌÀÇ ¸ðµç ¿äû ¹× ÀÀ´ä Çì´õ°¡ µé¾î ÀÖ½À´Ï´Ù.

ÀÌ ÆÄÀÏÀ» »ý¼ºÇÏ·Á¸é /var/opt/SUNWps/debug µð·ºÅ丮¿¡¼­ ¾²±â ±ÇÇÑÀ» º¯°æÇÕ´Ï´Ù.

gateway.debug.dir

 

¿©±â´Â ¸ðµç µð¹ö±× ÆÄÀÏÀÌ »ý¼ºµÇ´Â µð·ºÅ丮ÀÔ´Ï´Ù.

ÀÌ µð·ºÅ丮¿¡´Â gateway.user¿¡¼­ ¾ð±ÞµÈ »ç¿ëÀÚ°¡ ÆÄÀÏ¿¡ ¾µ ¼ö ÀÖµµ·Ï ÃæºÐÇÑ ±ÇÇÑÀ» °¡Áö°í ÀÖ¾î¾ß ÇÕ´Ï´Ù.

gateway.
logdelimiter

 

ÇöÀç »ç¿ëµÇÁö ¾ÊÀ½.

gateway.external.ip

 

´ÙÁß È¨ °ÔÀÌÆ®¿þÀÌ ÄÄÇ»ÅÍÀÎ °æ¿ì(IP ÁÖ¼Ò°¡ ¿©·¯ °³) ¿©±â¼­ ¿ÜºÎ IP ÁÖ¼Ò¸¦ ÁöÁ¤ÇØ¾ß ÇÕ´Ï´Ù. ÀÌ IP´Â Netlet¿¡¼­ FTP¸¦ ½ÇÇàÇÏ´Â µ¥ »ç¿ëµË´Ï´Ù.

gateway.certdir

 

ÀÎÁõ¼­ µ¥ÀÌÅͺ£À̽ºÀÇ À§Ä¡¸¦ ÁöÁ¤ÇÕ´Ï´Ù.

gateway.allow.
client.caching

true

Ŭ¶óÀÌ¾ðÆ® Ä³½ÌÀ» Çã¿ëÇϰųª Çã¿ë ºÒ°¡ÇÕ´Ï´Ù.

Çã¿ëµÇ´Â °æ¿ì Ŭ¶óÀÌ¾ðÆ® ºê¶ó¿ìÀú´Â µ¿Àû ÆäÀÌÁö¿Í À̹ÌÁö¸¦ ij½ÌÇÏ¿© ¼º´ÉÀ» Çâ»ó½Ãŵ´Ï´Ù(³×Æ®¿öÅ© Æ®·¡ÇÈ °¨¼Ò¸¦ ÅëÇØ).

Çã¿ëµÇÁö ¾Ê´Â °æ¿ì º¸¾ÈÀÌ Ã¶ÀúÇØ¼­ Ŭ¶óÀÌ¾ðÆ® ÂÊ¿¡¼­´Â ¾Æ¹« °Íµµ ij½ÌµÇÁö ¾ÊÀ¸¹Ç·Î ³×Æ®¿öÅ© ·Îµå°¡ ¸¹À» °æ¿ì¿¡´Â ¼º´É ÀúÇϰ¡ »ý±é´Ï´Ù.

gateway.userProfile.cacheSize

 

°ÔÀÌÆ®¿þÀÌ¿¡¼­ ij½ÌµÇ´Â »ç¿ëÀÚ ÇÁ·ÎÇÊ Ç׸ñÀÇ ¼öÀÔ´Ï´Ù. Ç׸ñ ¼ö°¡ ÀÌ °ªÀ» ÃʰúÇϸé ij½Ã¸¦ Á¤¸®ÇÏ´Â Àç½Ãµµ°¡ ÀÚÁÖ ÀÌ·ç¾îÁý´Ï´Ù.

gateway.userProfile.cacheSleepTime

 

ÃÊ ´ÜÀ§·Î ij½Ã Á¤¸®¿¡ ´ëÇÑ ÀýÀü ½Ã°£À» ¼³Á¤ÇÕ´Ï´Ù.

gateway.userProfile.cacheCleanupTime

 

ÀÌ ½Ã°£ÀÌ Áö³ª¸é ÇÁ·ÎÇÊ Ç׸ñÀ» »èÁ¦ÇÒ ¼ö ÀÖ´Â ÃÖ´ë ½Ã°£(ÃÊ).

gateway.
bindipaddress

 

´ÙÁß È¨ ÄÄÇ»ÅÍ¿¡¼­ °ÔÀÌÆ®¿þÀ̰¡ serversocketÀ» ¹ÙÀεùÇÏ´Â IP ÁÖ¼ÒÀÔ´Ï´Ù.

gateway.sockretries

3

ÇöÀç »ç¿ëµÇÁö ¾ÊÀ½.

gateway.enable.accelerator

false

true·Î ¼³Á¤µÈ °æ¿ì ¿ÜºÎ °¡¼Ó±â Áö¿øÀÌ Çã¿ëµË´Ï´Ù.

gateway.enable.customurl

false

true·Î ¼³Á¤µÈ °æ¿ì °ü¸®ÀÚ´Â °ÔÀÌÆ®¿þÀÌ¿¡¼­ ÆäÀÌÁö¸¦ ´Ù½Ã ¾µ »ç¿ëÀÚ Á¤ÀÇ URL¸¦ ÁöÁ¤ÇÒ ¼ö ÀÖ½À´Ï´Ù.

gateway.httpurl

 

HTTP reverseproxy URLÀ» ÀÔ·ÂÇÏ¿© °ÔÀÌÆ®¿þÀÌ¿¡¼­ ÆäÀÌÁö¸¦ ´Ù½Ã ¾µ »ç¿ëÀÚ Á¤ÀÇ URLÀ» ¼³Á¤ÇÕ´Ï´Ù.

gateway.httpsurl

 

HTTPS reverseproxy URLÀ» ÀÔ·ÂÇÏ¿© °ÔÀÌÆ®¿þÀÌ¿¡¼­ ÆäÀÌÁö¸¦ ´Ù½Ã ¾µ »ç¿ëÀÚ Á¤ÀÇ URLÀ» ¼³Á¤ÇÕ´Ï´Ù.

gateway.favicon

 

°ÔÀÌÆ®¿þÀÌ¿¡¼­ favicon.ico ÆÄÀÏ¿¡ ´ëÇÑ ¿äûÀ» ¸®µð·º¼ÇÇÒ URLÀ» ÁöÁ¤ÇÕ´Ï´Ù.

ÀÌ´Â Internet Explore ¹× Netscape 7.0 ÀÌ»óÀÇ ±âº» ¼³Á¤À̳ª Áñ°Üã±â¿¡ ÀÖ´Â "favorite icon"¿¡ »ç¿ëµË´Ï´Ù.

ÀÌ Çʵ尡 ºñ¾î ÀÖÀ¸¸é °ÔÀÌÆ®¿þÀÌ´Â "404 ãÀ» ¼ö ¾ø½À´Ï´Ù"¶ó´Â ¸Þ½ÃÁö¸¦ ºê¶ó¿ìÀú·Î ¹ÝȯÇÕ´Ï´Ù.

gateway.logging.password

 

ÀÌ Çʵ忡´Â °ÔÀÌÆ®¿þÀÌ¿¡¼­ ÀÀ¿ëÇÁ·Î±×·¥ ¼¼¼ÇÀ» ¸¸µå´Â µ¥ »ç¿ëÇÏ´Â »ç¿ëÀÚ "amService-srapGateway"ÀÇ LDAP ºñ¹Ð¹øÈ£°¡ µé¾î ÀÖ½À´Ï´Ù.

¾ÏȣȭµÇ¾ú°Å³ª ÀÏ¹Ý ÅØ½ºÆ®ÀÏ ¼ö ÀÖ½À´Ï´Ù.

http.proxyHost

 

ÀÌ ÇÁ¶ô½Ã È£½ºÆ®´Â Portal Server¿¡ Á¢ÃËÇÒ ¶§ »ç¿ëµË´Ï´Ù.

http.proxyPort

 

À̰ÍÀº Portal Server¿¡ Á¢ÃËÇÒ ¶§ »ç¿ëµÇ´Â È£½ºÆ®ÀÇ Æ÷Æ®ÀÔ´Ï´Ù.

http.proxySet

 

ÀÌ ¼Ó¼ºÀº ÇÁ¶ô½Ã È£½ºÆ®°¡ ÇÊ¿äÇÑ °æ¿ì¿¡ true·Î ¼³Á¤µË´Ï´Ù. ÀÌ ¼Ó¼ºÀÌ false·Î ¼³Á¤µÇ¸é http.proxyHost ¹× http.proxyPort°¡ ¹«½ÃµË´Ï´Ù.


°ÔÀÌÆ®¿þÀÌ ½ÃÀÛ ¹× ÁßÁö

±âº»ÀûÀ¸·Î °ÔÀÌÆ®¿þÀÌ´Â »ç¿ëÀÚ noaccess·Î ½ÃÀ۵˴ϴÙ.

    °ÔÀÌÆ®¿þÀ̸¦ ½ÃÀÛÇÏ·Á¸é
  1. °ÔÀÌÆ®¿þÀ̸¦ ¼³Ä¡Çϰí ÇÊ¿äÇÑ ÇÁ·ÎÇÊÀ» ¸¸µç ÈÄ¿¡´Â ´ÙÀ½ ¸í·ÉÀ» ½ÇÇàÇÏ¿© °ÔÀÌÆ®¿þÀ̸¦ ½ÃÀÛÇÕ´Ï´Ù.
  2. gateway-install-root/SUNWps/bin/gateway -n default start

    default´Â ¼³Ä¡ Áß¿¡ ¸¸µé¾îÁö´Â ±âº» °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀÔ´Ï´Ù. ³ªÁß¿¡ °íÀ¯ÇÑ ÇÁ·ÎÇÊÀ» ¸¸µé°í »õ ÇÁ·ÎÇÊ·Î °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÒ ¼ö ÀÖ½À´Ï´Ù. "°ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ¸¸µé±â"À» ÂüÁ¶ÇϽʽÿÀ.

    ´ÙÁß °ÔÀÌÆ®¿þÀÌ ÀνºÅϽº°¡ ÀÖ´Ù¸é ´ÙÀ½À» »ç¿ëÇÕ´Ï´Ù.

    gateway-install-root/SUNWps/bin/gateway start

ÀÌ ¸í·ÉÀº ƯÁ¤ ÄÄÇ»ÅÍ¿¡ ±¸¼ºµÈ ¸ðµç °ÔÀÌÆ®¿þÀÌ ÀνºÅϽº¸¦ ½ÃÀÛÇÕ´Ï´Ù.


Âü°í

¼­¹ö¸¦ ´Ù½Ã ½ÃÀÛÇϸé(°ÔÀÌÆ®¿þÀÌÀÇ ÀνºÅϽº¸¦ ±¸¼ºÇÑ ¼­¹ö) °ÔÀÌÆ®¿þÀÌÀÇ ±¸¼ºµÈ ÀνºÅϽº°¡ ¸ðµÎ ´Ù½Ã ½ÃÀ۵˴ϴÙ.

/etc/opt/SUNWps µð·ºÅ丮¿¡ ±âÁ¸ ÇÁ·ÎÇÊÀ̳ª ¹é¾÷ ÇÁ·ÎÇÊÀÌ ¾ø¾î¾ß ÇÕ´Ï´Ù.


  1. ´ÙÀ½ ¸í·ÉÀ» ½ÇÇàÇÏ¿© ÁöÁ¤ Æ÷Æ®¿¡¼­ °ÔÀÌÆ®¿þÀ̰¡ ½ÇÇàµÇ°í ÀÖ´ÂÁö Á¡°ËÇÕ´Ï´Ù.
  2. netstat -a | grep port-number

    ±âº» °ÔÀÌÆ®¿þÀÌ Æ÷Æ®´Â 443ÀÔ´Ï´Ù.

    °ÔÀÌÆ®¿þÀ̸¦ ÁßÁöÇÏ·Á¸é

°ÔÀÌÆ®¿þÀ̸¦ ÁßÁöÇÏ·Á¸é ´ÙÀ½ ¸í·ÉÀ» »ç¿ëÇÕ´Ï´Ù.

gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name stop

´ÙÁß °ÔÀÌÆ®¿þÀÌ ÀνºÅϽº°¡ ÀÖÀ¸¸é ´ÙÀ½À» »ç¿ëÇÕ´Ï´Ù.

gateway-install-root/SUNWps/bin/gateway stop

ÀÌ ¸í·ÉÀº ƯÁ¤ ÄÄÇ»ÅÍ¿¡¼­ ½ÇÇàµÇ°í ÀÖ´Â ¸ðµç °ÔÀÌÆ®¿þÀÌ ÀνºÅϽº¸¦ ÁßÁöÇÕ´Ï´Ù.


°ÔÀÌÆ®¿þÀÌ ´Ù½Ã ½ÃÀÛ

ÀϹÝÀûÀ¸·Î´Â °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÒ Çʿ䰡 ¾ø½À´Ï´Ù. ´ÙÀ½ À̺¥Æ®°¡ ¹ß»ýÇÑ °æ¿ì¿¡¸¸ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.

    ´Ù¸¥ ÇÁ·ÎÇÊ·Î °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÏ·Á¸é

°ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.

gateway-install-root/SUNWps/bin/gateway -n new-gateway-profile-name start

    °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÏ·Á¸é

´Ü¸»±â â¿¡¼­ ·çÆ®·Î ¿¬°áÇÏ°í ´ÙÀ½ ÀÛ¾÷ Áß Çϳª¸¦ ¼öÇàÇÕ´Ï´Ù.

    °ÔÀÌÆ®¿þÀÌ ¿öÄ¡µ¶¸¦ ±¸¼ºÇÏ·Á¸é

¿öÄ¡µ¶°¡ °ÔÀÌÆ®¿þÀÌÀÇ »óŸ¦ ¸ð´ÏÅ͸µÇÏ°Ô µÉ ½Ã°£ °£°ÝÀ» ¼³Á¤ÇÒ ¼ö ÀÖ½À´Ï´Ù. ½Ã°£ °£°ÝÀº ±âº»ÀûÀ¸·Î 60ÃÊ·Î ¼³Á¤µË´Ï´Ù. ÀÌ ±âº» ¼³Á¤À» º¯°æÇÏ·Á¸é crontab¿¡¼­ ´ÙÀ½ ¶óÀÎÀ» ÆíÁýÇÕ´Ï´Ù.

0-59 * * * * gateway-install-root/SUNWps/bin/rwproxd/bin/checkgw /var/opt/SUNWps/.gw.5 > /dev/null 2>&1

crontab Ç׸ñÀ» ±¸¼ºÇÏ·Á¸é crontab¿¡ ´ëÇÑ ¸Ç ÆäÀÌÁöÀ» ÂüÁ¶ÇϽʽÿÀ.


Identity Server¿¡ Á¢¼ÓÇϵµ·Ï ÇÁ¶ô½Ã ÁöÁ¤

Portal Server¿¡ ¹èÆ÷µÇ´Â SRA Áö¿ø(RemoteConfigServlet)¿¡ Á¢¼ÓÇϱâ À§ÇØ °ÔÀÌÆ®¿þÀ̰¡ È£½ºÆ® ÇÁ¶ô½Ã¸¦ »ç¿ëÇϵµ·Ï ÁöÁ¤ÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÌ ÇÁ¶ô½Ã´Â °ÔÀÌÆ®¿þÀ̰¡ Portal Server¿Í Identity Server¿¡ Á¢¼ÓÇϱâ À§ÇØ »ç¿ëµË´Ï´Ù.

    ÇÁ¶ô½Ã¸¦ ÁöÁ¤ÇÏ·Á¸é
  1. ¸í·ÉÁÙ¿¡¼­ ´ÙÀ½ ÆÄÀÏÀ» ÆíÁýÇÕ´Ï´Ù.
  2. /etc/opt/bin/platform.conf.gateway-profile-name

  3. ´ÙÀ½ Ç׸ñÀ» Ãß°¡ÇÕ´Ï´Ù.
  4. http.proxyHost=proxy-host

    http.proxyPort=proxy-port

    http.proxySet=true

  5. ¼­¹ö¿¡ ´ëÇÑ ¿äû¿¡ ÁöÁ¤µÈ ÇÁ¶ô½Ã¸¦ »ç¿ëÇÒ ¼ö ÀÖµµ·Ï °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  6. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start


chroot ȯ°æ¿¡¼­ °ÔÀÌÆ®¿þÀÌ ½ÇÇà

chroot ȯ°æ¿¡¼­ º¸¾ÈÀ» ³ôÀÌ·Á¸é chroot µð·ºÅ丮 ÄÁÅÙÆ®°¡ °¡´ÉÇÑ Àû¾î¾ß ÇÕ´Ï´Ù. ¿¹¸¦ µé¾î, »ç¿ëÀÚ°¡ chroot µð·ºÅ丮ÀÇ ÆÄÀÏÀ» ¼öÁ¤ÇÒ ¼ö ÀÖ´Â ÇÁ·Î±×·¥ÀÌ ÀÖÀ¸¸é chroot´Â chroot Æ®¸®¿¡¼­ ÆÄÀÏÀ» ¼öÁ¤ÇÏ´Â °ø°ÝÀڷκÎÅÍ ¼­¹ö¸¦ º¸È£ÇÏÁö ¾Ê½À´Ï´Ù. CGI ÇÁ·Î±×·¥Àº bourne shell, c-shell, korn shell ¶Ç´Â perl°ú °°Àº ÇØ¼®µÈ ¾ð¾î·Î ÀÛ¼ºµÇ¾î¼­´Â ¾ÈµÇ¸ç ÇØ¼®ÀÚ°¡ chroot µð·ºÅ丮 Æ®¸®¿¡ ³õÁö ¾Ê¾Æµµ µÇµµ·Ï ÀÌÁø¼ö·Î ÄÄÆÄÀϵǾî¾ß ÇÕ´Ï´Ù.


Âü°í

¿öÄ¡µ¶ ±â´ÉÀº chroot ȯ°æ¿¡¼­´Â Áö¿øµÇÁö ¾Ê½À´Ï´Ù.


    chroot¸¦ ¼³Ä¡ÇÏ·Á¸é
  1. ·çÆ®·Î¼­ ´Ü¸»±â â¿¡¼­ ´ÙÀ½ ÆÄÀÏÀ» ³×Æ®¿öÅ©¿¡ ÀÖ´Â ÄÄÇ»Åͳª ¹é¾÷ Å×ÀÌÇÁ ¶Ç´Â Ç÷ÎÇÇ µð½ºÅ©¿Í °°Àº ¿ÜºÎ ¼Ò½º·Î º¹»çÇÕ´Ï´Ù.
  2. cp /etc/vfstab external-device

    cp /etc/nsswitch.conf external-device

    cp /etc/hosts external-device

  3. ´ÙÀ½ µð·ºÅ丮¿¡¼­ mkchroot ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÕ´Ï´Ù.
  4. portal-server-install-root/SUNWps/bin/chroot


    Âü°í

    ½ÇÇàµÇ±â ½ÃÀÛÇϸé mkchroot ½ºÅ©¸³Æ®´Â Ctrl-C¸¦ ´­·¯ Á¾·áÇÒ ¼ö ¾ø½À´Ï´Ù.

    mkchroot ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÏ´Â µ¿¾È ¿À·ù°¡ ¹ß»ýÇϸé "mkchroot ½ºÅ©¸³Æ®ÀÇ ½ÇÇà ½ÇÆÐ"¸¦ ÂüÁ¶ÇϽʽÿÀ.


´Ù¸¥ ·çÆ® µð·ºÅ丮¸¦ ÀÔ·ÂÇ϶ó´Â ¸Þ½ÃÁö°¡ ³ªÅ¸³³´Ï´Ù(new_root_directory). ½ºÅ©¸³Æ®¿¡¼­ »õ µð·ºÅ丮¸¦ ¸¸µì´Ï´Ù.

´ÙÀ½ ¿¹Á¦¿¡¼­´Â /safedir/chroot°¡ new_root_directoryÀÔ´Ï´Ù.

mkchroot version 6.0

 

Enter the full path name of the directory which will be the chrooted tree:/safedir/chroot

Using /safedir/chroot as root.

Checking available disk space...done

/safedir/chroot is on a setuid mounted partition.

Creating filesystem structure...dev etc sbin usr var proc opt bin lib tmp etc/lib usr/platform usr/bin usr/sbin usr/lib usr/openwin/lib var/opt var/tmp dev/fd done

Creating devices...null tcp ticots ticlts ticotsord tty udp zero conslog done

Copying/creating etc files...group passwd shadow hosts resolv.conf netconfig nsswitch.conf

done

Copying binaries...................................done

Copying libraries.....................................done

Copying zoneinfo (about 1 MB)..done

Copying locale info (about 5 MB)..........done

Adding comments to /etc/nsswitch.conf ...done

Creating loopback mount for/safedir/chroot/usr/java1.2...done

Creating loopback mount for/safedir/chroot/proc...done

Creating loopback mount for/safedir/chroot/dev/random...done

Do you need /dev/fd (if you do not know what it means, press return)[n]:

Updating /etc/vfstab...done

Creating a /safedir/chroot/etc/mnttab file, based on these loopback mounts.

Copying SRAP related data ...

Using /safedir/chroot as root.

Creating filesystem structure...........done

mkchroot successfully done.

  1. platform.conf ÆÄÀÏ¿¡ ¾ð±ÞµÈ Java µð·ºÅ丮¸¦ ´ÙÀ½ ¸í·ÉÀ» »ç¿ëÇÏ¿© ¼öµ¿À¸·Î chroot µð·ºÅ丮¿¡ ¸¶¿îÆ®ÇÕ´Ï´Ù.
  2. mkdir -p /safedir/chroot/java-dir

    mount -F lofs java-dir /safedir/chroot/java-dir

    Solaris 9¿¡´Â ´ÙÀ½À» ¼öÇàÇÕ´Ï´Ù.

    mkdir -p /safedir/chroot/usr/lib/32

    mount -F lofs /usr/lib/32 /safedir/chroot/usr/lib/32

    mkdir -p /safedir/chroot/usr/lib/64

    mount -F lofs /usr/lib/64 /safedir/chroot/usr/lib/64

    ½Ã½ºÅÛÀ» ½ÃÀÛÇÒ ¶§ ÀÌ µð·ºÅ丮¸¦ žÀçÇÏ·Á¸é /etc/vfstab ÆÄÀÏ¿¡ ÇØ´ç Ç׸ñÀ» Ãß°¡ÇÕ´Ï´Ù.

    java-dir - /safedir/chroot/java-dir lofs - no -

    Solaris 9ÀÇ °æ¿ì:

    /usr/lib/32 - /safedir/chroot/usr/lib/32 lofs - no -

    /usr/lib/64 - /safedir/chroot/usr/lib/64 lofs - no -

  3. ¾Æ·¡ ¸í·ÉÀ» ÀÔ·ÂÇÏ¿© °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  4. chroot /safedir/chroot ./gateway-install-root/SUNWps/bin/gateway start

    stopping gateway ... done.

    starting gateway ...

    done.

mkchroot ½ºÅ©¸³Æ®ÀÇ ½ÇÇà ½ÇÆÐ

mkchroot ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÏ´Â µ¿¾È ¿À·ù°¡ ¹ß»ýÇÏ¸é ½ºÅ©¸³Æ®´Â ÆÄÀÏÀ» Ãʱ⠻óÅ·Πº¹¿øÇÕ´Ï´Ù.

´ÙÀ½ ¿¹Á¦¿¡¼­´Â /safedir/chroot°¡ chroot µð·ºÅ丮ÀÔ´Ï´Ù.

´ÙÀ½ ¿À·ù ¸Þ½ÃÁö°¡ ¹ß»ýÇÑ °æ¿ì,

Not a Clean Exit

  1. ÀýÂ÷ chroot¸¦ ¼³Ä¡ÇÏ·Á¸éÀÇ 1´Ü°è¿¡¼­ ¹é¾÷ ÆÄÀÏÀ» ¿ø·¡ À§Ä¡·Î º¹»çÇÏ°í ´ÙÀ½ ¸í·ÉÀ» ½ÇÇàÇÕ´Ï´Ù.
  2. umount /safedir/chroot/usr/java1.2

    umount /safedir/chroot/proc

    umount /safedir/chroot/dev/random

  3. /safedir/chroot µð·ºÅ丮¸¦ Á¦°ÅÇÕ´Ï´Ù.


chroot ȯ°æ¿¡¼­ °ÔÀÌÆ®¿þÀÌ ´Ù½Ã ½ÃÀÛ

°ÔÀÌÆ®¿þÀÌ ÄÄÇ»Å͸¦ ´Ù½Ã ºÎÆÃÇÒ ¶§¸¶´Ù chroot ȯ°æ¿¡¼­ °ÔÀÌÆ®¿þÀ̸¦ ½ÃÀÛÇÏ·Á¸é ´ÙÀ½ ´Ü°è¸¦ ¼öÇàÇÕ´Ï´Ù.

    chroot ȯ°æ¿¡¼­ °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÏ·Á¸é
  1. ’/’ µð·ºÅ丮¿¡¼­ ½ÇÇà ÁßÀÎ °ÔÀÌÆ®¿þÀ̸¦ ÁßÁöÇÕ´Ï´Ù.
  2. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name stop

  3. chroot µð·ºÅ丮¿¡¼­ ½ÇÇàÇÒ °ÔÀÌÆ®¿þÀ̸¦ ½ÃÀÛÇÕ´Ï´Ù.
  4. chroot /safedir/chroot ./portal-server-install-root/SUNWps/bin/gateway -n gateway-profile-name start


    Âü°í

    /safedir/chroot/etc ÆÄÀÏ(passwd ¹× hosts µî)Àº /etc ÆÄÀϰú °°ÀÌ °ü¸®°¡ ÇÊ¿äÇÏÁö¸¸ chroot Æ®¸®¿¡¼­ ½ÇÇàµÇ´Â ÇÁ·Î±×·¥¿¡ ÇÊ¿äÇÑ È£½ºÆ® ¹× °èÁ¤ Á¤º¸¸¸ µé¾î ÀÖ½À´Ï´Ù.

    ¿¹¸¦ µé¾î, ½Ã½ºÅÛÀÇ identity °ø±ÞÀÚ ÁÖ¼Ò¸¦ º¯°æÇÏ´Â °æ¿ì¿¡´Â ÆÄÀÏ /safedir/chroot/etc/hostsµµ º¯°æÇÕ´Ï´Ù.



°ÔÀÌÆ®¿þÀÌÀÇ ´ÙÁß ÀνºÅϽº ¸¸µé±â

gwmultiinstance ½ºÅ©¸³Æ®¸¦ »ç¿ëÇÏ¿© °ÔÀÌÆ®¿þÀÌÀÇ »õ ÀνºÅϽº¸¦ ¸¸µì´Ï´Ù. °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀ» ¸¸µç ÈÄ¿¡ ÀÌ ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÏ´Â °ÍÀÌ ÁÁ½À´Ï´Ù.

  1. ·çÆ®·Î ·Î±×ÀÎÇÏ¿© ´ÙÀ½ µð·ºÅ丮·Î ã¾Æ °©´Ï´Ù.
  2. gateway-install-root/SUNWps/bin/

  3. ´ÙÁß ÀνºÅϽº ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÕ´Ï´Ù.
  4. ./gwmultiinstance

  5. ´ÙÀ½ ¼³Ä¡ ¿É¼Ç Áß Çϳª¸¦ ¼±ÅÃÇÕ´Ï´Ù.
  6. 1) Create a new gateway instance

    2) Remove a gateway instance

    3) Remove all gateway instances

    4) Exit

    1À» ¼±ÅÃÇÑ °æ¿ì ´ÙÀ½ Áú¹®¿¡ ´äÇϽʽÿÀ.

    What is the name of the new gateway instance?

    What protocol will the new gateway instance use? [https]

    What port will the new gateway instance listen on?

    What is the fully qualified hostname of the portal server?

    What port should be used to access the portal server?

    What protocol should be used to access the portal server? [http]

    What is the portal server deploy URI?

    What is the organization DN? [dc=iportal,dc=com]

    What is the identity server URI? [/amserver]

    What is the identity server password encryption key?

    Please provide the following information needed for creating a self-signed certificate:

    What is the name of your organization?

    What is the name of your division?

    What is the name of your city or locality?

    What is the name of your state or province?

    What is the two-letter country code?

    What is the password for the Certificate Database? Again?

    What is the password for the logging user? Again?

    Have you created the new gateway profile in the admin console? [y]/n

    Start the gateway after installation? [y]/n

  7. »õ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ À̸§À¸·Î °ÔÀÌÆ®¿þÀÌÀÇ »õ ÀνºÅϽº¸¦ ½ÃÀÛÇÕ´Ï´Ù.
  8. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start

    ¿©±â¼­ gateway-profile-name Àº »õ °ÔÀÌÆ®¿þÀÌ ÀνºÅϽºÀÔ´Ï´Ù.


À¥ ÇÁ¶ô½Ã »ç¿ë

Ÿ»ç À¥ ÇÁ¶ô½Ã¸¦ »ç¿ëÇÏ¿© HTTP ¸®¼Ò½º¿¡ ¿¬°áÇϵµ·Ï °ÔÀÌÆ®¿þÀ̸¦ ±¸¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù. À¥ ÇÁ¶ô½Ã´Â Ŭ¶óÀÌ¾ðÆ®¿Í ÀÎÅÍ³Ý »çÀÌ¿¡ »óÁÖÇÕ´Ï´Ù.

À¥ ÇÁ¶ô½Ã ±¸¼º

¿©·¯ µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀο¡ ¼­·Î ´Ù¸¥ ÇÁ¶ô½Ã°¡ »ç¿ëµÉ ¼ö ÀÖ½À´Ï´Ù. ÀÌ Ç׸ñÀº ƯÁ¤ µµ¸ÞÀο¡¼­ ƯÁ¤ ºÎ¼Ó µµ¸ÞÀο¡ ¿¬°áÇÒ ¶§ ¾î¶² ÇÁ¶ô½Ã¸¦ »ç¿ëÇÒÁö °ÔÀÌÆ®¿þÀÌ¿¡ ¾Ë·Á ÁÝ´Ï´Ù. °ÔÀÌÆ®¿þÀÌ¿¡ ÁöÁ¤µÈ ÇÁ¶ô½Ã ±¸¼ºÀº ´ÙÀ½°ú °°ÀÌ ÀÛµ¿ÇÕ´Ï´Ù.

ÇÁ¶ô½Ã »ç¿ë ¿É¼ÇÀ» ±¸¼ºÇÏ·Á¸é "À¥ ÇÁ¶ô½ÃÀÇ »ç¿ë ¼³Á¤"À» ÂüÁ¶ÇϽʽÿÀ.

±×¸² 2-1Àº °ÔÀÌÆ®¿þÀÌ ¼­ºñ½ºÀÇ ÇÁ¶ô½Ã ±¸¼º¿¡ ±â¹ÝÇÏ¿© À¥ ÇÁ¶ô½Ã Á¤º¸°¡ ¾î¶»°Ô °áÁ¤µÇ´ÂÁö º¸¿©ÁÝ´Ï´Ù.

±×¸² 2-1  À¥ ÇÁ¶ô½Ã °ü¸®

ÇÁ¶ô½Ã °ü¸® ±×¸² - ÅØ½ºÆ® ¼³¸í ÂüÁ¶

±×¸² 2-1¿¡¼­ ÇÁ¶ô½Ã »ç¿ëÀ» »ç¿ë ¼³Á¤ÇØ ³õ¾Ò°í, ¿äûµÈ URLÀÌ [À¥ ÇÁ¶ô½Ã URL »ç¿ë ¾ÈÇÔ] ¸ñ·Ï¿¡ ³ª¿­µÇ´Â °æ¿ì °ÔÀÌÆ®¿þÀ̰¡ ´ë»ó È£½ºÆ®¿¡ Á÷Á¢ ¿¬°áµË´Ï´Ù.

ÇÁ¶ô½Ã »ç¿ëÀ» »ç¿ë ¼³Á¤ÇØ ³õ¾Ò°í, ¿äûµÈ URLÀÌ [À¥ ÇÁ¶ô½Ã URL »ç¿ë ¾ÈÇÔ] ¸ñ·Ï¿¡ ³ª¿­µÇ´Â ¾Ê´Â °æ¿ì °ÔÀÌÆ®¿þÀÌ´Â ÁöÁ¤µÈ ÇÁ¶ô½Ã¸¦ ÅëÇØ ´ë»ó È£½ºÆ®¿¡ ¿¬°áµË´Ï´Ù. ÇÁ¶ô½Ã°¡ ÁöÁ¤µÇ¾î ÀÖÀ¸¸é [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡¼­ ãÀ¸¸é µË´Ï´Ù.

ÇÁ¶ô½Ã »ç¿ëÀ» »ç¿ë ÇØÁ¦ÇÏ¿´°í, ¿äûµÈ URLÀÌ [À¥ ÇÁ¶ô½Ã URL »ç¿ë] ¸ñ·Ï¿¡ ³ª¿­µÇ¸é °ÔÀÌÆ®¿þÀÌ´Â [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡ ÀÖ´Â ÇÁ¶ô½Ã Á¤º¸¸¦ »ç¿ëÇÏ¿© ´ë»ó È£½ºÆ®¿¡ ¿¬°áµË´Ï´Ù.

ÇÁ¶ô½Ã »ç¿ëÀ» »ç¿ë ÇØÁ¦ÇÏ¿´°í, ¿äûµÈ URLÀÌ [À¥ ÇÁ¶ô½Ã URL »ç¿ë] ¸ñ·Ï¿¡ ³ª¿­µÇÁö ¾ÊÀ¸¸é °ÔÀÌÆ®¿þÀ̰¡ ´ë»ó È£½ºÆ®¿¡ Á÷Á¢ ¿¬°áµË´Ï´Ù.

À§¿¡ ¼³¸íµÈ Á¶°Ç Áß ¾î´À °Í¿¡µµ ÇØ´çÇÏÁö ¾Ê¾Æ¼­ Á÷Á¢ ¿¬°áÀÌ ºÒ°¡´ÉÇÏ¸é °ÔÀÌÆ®¿þÀÌ´Â ¿¬°áÇÒ ¼ö ¾ø´Ù´Â ¿À·ù ¸Þ½ÃÁö¸¦ Ç¥½ÃÇÕ´Ï´Ù.


Âü°í

Æ÷ÅÐ µ¥½ºÅ©Å¾ÀÇ Ã¥°¥ÇÇ Ã¤³ÎÀ» ÅëÇØ URL¿¡ ¾×¼¼½ºÇÏ´Â Áß¿¡ À§¿¡ ¼³¸íµÈ Á¶°Ç Áß ¾î´À °Íµµ ÇØ´çÇÏÁö ¾ÊÀ¸¸é °ÔÀÌÆ®¿þÀÌ´Â ºê¶ó¿ìÀú·Î ¸®µð·º¼ÇÇÕ´Ï´Ù. ±×·¯¸é ºê¶ó¿ìÀú´Â ÀÚü ÇÁ¶ô½Ã ¼³Á¤À» ÅëÇØ URL¿¡ ¾×¼¼½ºÇÕ´Ï´Ù.


±¸¹®

domainname [web_proxy1:port1]|subdomain1 [web_proxy2:port2]|......

¿¹

sesta.com wp1:8080|red wp2:8080|yellow|* wp3:8080

*´Â ¸ðµç Ç׸ñ°ú ÀÏÄ¡µÇ´Â ¿ÍÀϵåÄ«µåÀÔ´Ï´Ù.

¿©±â¼­

sesta.comÀº µµ¸ÞÀÎ À̸§À̰í wp1Àº Æ÷Æ® 8080¿¡ ¿¬°áÇÒ ÇÁ¶ô½ÃÀÔ´Ï´Ù.

red´Â ºÎ¼Ó µµ¸ÞÀÎÀ̰í wp2´Â Æ÷Æ® 8080¿¡ ¿¬°áÇÒ ÇÁ¶ô½ÃÀÔ´Ï´Ù.

yellow´Â ºÎ¼Ó µµ¸ÞÀÎÀÔ´Ï´Ù. ÇÁ¶ô½Ã°¡ ÁöÁ¤µÇ¾î ÀÖÁö ¾Ê°í Æ÷Æ® 8080¿¡ µµ¸ÞÀο¡ ÁöÁ¤µÈ ÇÁ¶ô½Ã Áï, wp1ÀÌ »ç¿ëµË´Ï´Ù.

*´Â ¸ðµç ´Ù¸¥ ºÎ¼Ó µµ¸ÞÀο¡¼­ Æ÷Æ® 8080¿¡ wp3À» »ç¿ëÇØ¾ß ÇÔÀ» ³ªÅ¸³À´Ï´Ù.


Âü°í

Æ÷Æ®¸¦ ÁöÁ¤ÇÏÁö ¾ÊÀº °æ¿ì ±âº»ÀûÀ¸·Î Æ÷Æ® 8080ÀÌ »ç¿ëµË´Ï´Ù.


À¥ ÇÁ¶ô½Ã Á¤º¸ ó¸®

Ŭ¶óÀÌ¾ðÆ®¿¡¼­ ƯÁ¤ URL¿¡ ¾×¼¼½ºÇÏ·Á°í ÇÒ ¶§ URLÀÇ È£½ºÆ® À̸§Àº [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡ ÀÖ´Â Ç׸ñ°ú ÀÏÄ¡ÇÕ´Ï´Ù. ¿äûµÈ È£½ºÆ® À̸§ÀÇ °¡Àå ±ä Á¢¹Ì¾î¿¡ ÀÏÄ¡ÇÏ´Â Ç׸ñÀÌ ¼±Åõ˴ϴÙ. ¿¹¸¦ µé¾î, ¿äûµÈ È£½ºÆ® À̸§ÀÌ host1.sesta.comÀ̶ó°í °í·ÁÇØ º¾½Ã´Ù.

[µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡¼­ ´ÙÀ½ Ç׸ñÀ» °í·ÁÇÕ´Ï´Ù.

com p1| host1 p2 | host2 | * p3

sesta.com p4 | host5 p5 | * p6

florizon.com | host6

abc.sesta.com p8 | host7 p7 | host8 p8 | * p9

host6.florizon.com p10

host9.sesta.com p11

siroe.com | host12 p12 | host13 p13 | host14 | * p14

siroe.com | host15 p15 | host16 | * p16

* p17

°ÔÀÌÆ®¿þÀ̴ ǥ 2-2 ¿¡ ³ª¿Í ÀÖµíÀÌ ÀÌ Ç׸ñÀ» Å×ÀÌºí¿¡ ³»ºÎÀûÀ¸·Î ¸ÅÇÎÇÕ´Ï´Ù.

Ç¥ 2-2  [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡¼­ Ç׸ñ ¸ÅÇÎ

¹øÈ£

µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã ¸ñ·ÏÀÇ Ç׸ñ

ÇÁ¶ô½Ã

¼³¸í

1

com

p1

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

2

host1.com

p2

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

3

host2.com

p1

host2¿¡´Â ÇÁ¶ô½Ã°¡ ÁöÁ¤µÇ¾î ÀÖÁö ¾Ê±â ¶§¹®¿¡ µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã°¡ »ç¿ëµË´Ï´Ù.

4

*.com

p3

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

5

sesta.com

p4

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

6

host5.sesta.com

p5

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

7

*.sesta.com

p6

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

8

florizon.com

Á÷Á¢

ÀÚ¼¼ÇÑ ³»¿ëÀº Ç׸ñ 14¿¡ ´ëÇÑ ¼³¸í ÂüÁ¶.

9

host6.florizon.com

ÀÚ¼¼ÇÑ ³»¿ëÀº Ç׸ñ 14¿¡ ´ëÇÑ ¼³¸í ÂüÁ¶.

10

abc.sesta.com

p8

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

11

host7.abc.sesta.com

p7

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

12

host8.abc.sesta.com

p8

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

13

*.abc.sesta.com

p9

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î. abc.sesta.com µµ¸ÞÀο¡¼­ host7°ú host8À» Á¦¿ÜÇÑ ¸ðµç È£½ºÆ®¿¡´Â p9°¡ ÇÁ¶ô½Ã·Î »ç¿ëµË´Ï´Ù.

14

host6.florizon.com

p10

ÀÌ Ç׸ñÀº Ç׸ñ 9¿Í µ¿ÀÏÇÕ´Ï´Ù. ±×·¯³ª Ç׸ñ 9´Â Á÷Á¢ ¿¬°áÀ» ³ªÅ¸³»Áö¸¸, ÀÌ Ç׸ñÀº ÇÁ¶ô½Ã p10À» »ç¿ëÇØ¾ß ÇÔÀ» ³ªÅ¸³À´Ï´Ù. ÀÌ °æ¿ì¿Í °°ÀÌ 2°³ Ç׸ñÀÌ ÀÖ´Â °æ¿ì¿¡´Â ÇÁ¶ô½Ã Á¤º¸°¡ ÀÖ´Â Ç׸ñÀÌ À¯È¿ÇÑ Ç׸ñÀ¸·Î °£Áֵ˴ϴÙ. ´Ù¸¥ Ç׸ñÀº ¹«½ÃµË´Ï´Ù.

15

host9.sesta.com

p11

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

16

siroe.com

Á÷Á¢

siroe.com¿¡´Â ÁöÁ¤µÈ ÇÁ¶ô½Ã°¡ ¾ø±â ¶§¹®¿¡ Á÷Á¢ ¿¬°áÀÌ ½ÃµµµË´Ï´Ù.

17

host12.siroe.com

p12

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

18

host13.siroe.com

p13

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

19

host14.siroe.com

Á÷Á¢

host14 ¶Ç´Â siroe.com¿¡´Â ÁöÁ¤µÈ ÇÁ¶ô½Ã°¡ ¾ø±â ¶§¹®¿¡ Á÷Á¢ ¿¬°áÀÌ ½ÃµµµË´Ï´Ù.

20

*.siroe.com

p14

Ç׸ñ 23¿¡ ´ëÇÑ ¼³¸í ÂüÁ¶.

21

host15.siroe.com

p15

¸ñ·Ï¿¡ ÁöÁ¤µÈ ´ë·Î.

22

host16.siroe.com

Á÷Á¢

host16 ¶Ç´Â siroe.com¿¡´Â ÁöÁ¤µÈ ÇÁ¶ô½Ã°¡ ¾ø±â ¶§¹®¿¡ Á÷Á¢ ¿¬°áÀÌ ½ÃµµµË´Ï´Ù.

23

*.siroe.com

p16

ÀÌ Ç׸ñÀº Ç׸ñ 20°ú ºñ½ÁÇÏÁö¸¸ ÁöÁ¤µÈ ÇÁ¶ô½Ã°¡ ´Ù¸¨´Ï´Ù. ÀÌ·± °æ¿ì °ÔÀÌÆ®¿þÀÌÀÇ Á¤È®ÇÑ µ¿ÀÛÀº ¾Ë ¼ö ¾ø½À´Ï´Ù. µÎ ÇÁ¶ô½Ã Áß Çϳª°¡ »ç¿ëµË´Ï´Ù.

24

*

p17

¿äûµÈ URL°ú ÀÏÄ¡ÇÏ´Â ´Ù¸¥ Ç׸ñÀÌ ¾øÀ¸¸é p17ÀÌ ÇÁ¶ô½Ã·Î »ç¿ëµË´Ï´Ù.


Âü°í

[µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡¼­ ÇÁ¶ô½Ã Ç׸ñÀ» | ±âÈ£¿Í ºÐ¸®ÇÏ´Â °Íº¸´Ù ¸ñ·Ï¿¡ °³º° Ç׸ñÀ» º¸À¯ÇÏ´Â °ÍÀÌ ´õ °£´ÜÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¾î, ´ÙÀ½°ú °°Àº Ç׸ñ ´ë½Å¿¡

sesta.com p1 | red p2 | * p3

ÀÌ Ç׸ñÀ» ´ÙÀ½°ú °°ÀÌ ÁöÁ¤ÇÒ ¼ö ÀÖ½À´Ï´Ù.

sesta.com p1

red.sesta.com p2

*.sesta.com p3

±×·¯¸é ½±°Ô ¹Ýº¹µÇ´Â Ç׸ñÀ̳ª ±âŸ ¸ðÈ£ÇÔÀÇ ¹üÀ§¸¦ Á¼Èú ¼ö ÀÖ½À´Ï´Ù.


µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã ¸ñ·Ï¿¡ ±â¹ÝÇÏ¿© ´Ù½Ã ¾²±â

[µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·ÏÀÇ Ç׸ñµµ Rewriter¿¡¼­ »ç¿ëµË´Ï´Ù. Rewriter´Â µµ¸ÞÀÎÀÌ [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡ ³ª¿­µÈ µµ¸ÞÀΰú ÀÏÄ¡ÇÏ´Â ¸ðµç URLÀ» ´Ù½Ã ¾¹´Ï´Ù.


ÁÖÀÇ

[µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·ÏÀÇ * Ç׸ñÀº ´Ù½Ã ¾²±â¿¡ °í·ÁµÇÁö ¾Ê½À´Ï´Ù. ¿¹¸¦ µé¾î, Ç¥ 2-2 ¿¡ ³ª¿Â ¿¹Á¦¿¡¼­´Â Ç׸ñ 24°¡ °í·ÁµÇÁö ¾Ê½À´Ï´Ù.


Rewriter¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº 3 Àå, "Rewriter"¸¦ ÂüÁ¶ÇϽʽÿÀ.

±âº» µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎ

URLÀÇ ´ë»ó È£½ºÆ®°¡ ¿ÏÀüÇÑ Á¤±Ô È£½ºÆ® À̸§ÀÌ ¾Æ´Ò °æ¿ì, ¿ÏÀüÇÑ Á¤±Ô À̸§¿¡ µµ´ÞÇϵµ·Ï ±âº» µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀ» »ç¿ëÇÕ´Ï´Ù.

´ë»ó ÄܼÖÀÇ [±âº» µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎ] ÇʵåÀÇ Ç׸ñÀÌ ´ÙÀ½°ú °°´Ù°í °¡Á¤ÇØ º¾½Ã´Ù.

red.sesta.com


Âü°í

[µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡ »óÀÀÇÏ´Â Ç׸ñÀÌ ÀÖ¾î¾ß ÇÕ´Ï´Ù.


À§ÀÇ ¿¹¿¡¼­´Â sesta.comÀÌ ±âº» µµ¸ÞÀÎÀÌ°í ±âº» ºÎ¼Ó µµ¸ÞÀÎÀº redÀÔ´Ï´Ù.

¿äûµÈ URLÀÌ host1ÀÎ °æ¿ì, ±âº» µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀ» ÅëÇØ host1.red.sesta.comÀ¸·Î °áÁ¤µË´Ï´Ù. ±×¸®°í ³ª¼­ [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡ host1.red.sesta.comÀÌ ¾ø´ÂÁö °Ë»öµË´Ï´Ù.


ÇÁ¶ô½Ã ÀÚµ¿ ±¸¼º »ç¿ë

[µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï¿¡ ÀÖ´Â Á¤º¸¸¦ ¹«½ÃÇÏ·Á¸é ÇÁ¶ô½Ã ÀÚµ¿ ±¸¼º(PAC) ±â´ÉÀ» »ç¿ë ¼³Á¤ÇÕ´Ï´Ù. PAC¸¦ ±¸¼ºÇÏ·Á¸é "ÇÁ¶ô½Ã ÀÚµ¿ ±¸¼º(PAC) Áö¿ø »ç¿ë"À» ÂüÁ¶ÇϽʽÿÀ.

PAC ÆÄÀÏÀ» »ç¿ëÇÒ ¶§´Â ´ÙÀ½À» ÁÖÀÇÇÕ´Ï´Ù.

¿¹Á¦ PAC ÆÄÀÏ »ç¿ë

´ÙÀ½ ¿¹Á¦´Â [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] ¸ñ·Ï°ú »óÀÀÇÏ´Â PAC ÆÄÀÏ¿¡ ³ª¿­µÈ URLÀ» º¸¿©ÁÝ´Ï´Ù.

DIRECT ¶Ç´Â NULLÀÌ ¹ÝȯµÇ´Â ¿¹Á¦

µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀο¡ ÀÌ ÇÁ¶ô½Ã »ç¿ë:

intranet1.com

intranet2.com.proxy.intranet1.com:8080

»óÀÀÇÏ´Â PAC ÆÄÀÏ:

// Start of the PAC File

function FindProxyForURL(url, host) {

if (dnsDomainIs(host, ".intranet1.com")) {

return "DIRECT";

}

if (dnsDomainIs(host, ".intranet2.com")) {

return "PROXY proxy.intranet1.com:8080";

}

return "NULL";

}

//End of the PAC File

STARPROXY°¡ ¹ÝȯµÇ´Â ¿¹Á¦

µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀο¡ ÀÌ ÇÁ¶ô½Ã »ç¿ë:

»óÀÀÇÏ´Â PAC ÆÄÀÏ:

// Start of the PAC File

function FindProxyForURL(url, host) {

if (dnsDomainIs(host, ".intranet1.com")) {

return "DIRECT";

}

if (dnsDomainIs(host, ".intranet2.com")) {

return "PROXY proxy.intranet1.com:8080;" +

"PROXY proxy1.intranet1.com:8080";

}

return "STARPROXY internetproxy.intranet1.com:80";

}

//End of the PAC File

ÀÌ °æ¿ì ¿äûÀÌ .intranet2.com domain¿¡ Àִ ȣ½ºÆ®¿¡ ´ëÇÑ °ÍÀÌ¸é °ÔÀÌÆ®¿þÀÌ´Â proxy.intranet1.com:8080¿¡ ¿¬°áÇÕ´Ï´Ù. ÇÁ¶ô½Ã intranet1.com:8080ÀÌ ´Ù¿îµÇ¸é ¿äûÀÌ ½ÇÆÐÇÕ´Ï´Ù. ±×·¡µµ °ÔÀÌÆ®¿þÀÌ¿¡¼­´Â Àå¾Ö Á¶Ä¡¸¦ ¼öÇàÇϰí proxy1.intranet1.com:8080¿¡ ¿¬°áÇÏÁö ¾Ê½À´Ï´Ù.


Netlet ÇÁ¶ô½Ã »ç¿ë

Netlet ÆÐŶÀº °ÔÀÌÆ®¿þÀÌ¿¡¼­ ¾ÏÈ£°¡ ÇØµ¶µÇ¾î ´ë»ó ¼­¹ö·Î º¸³»Áý´Ï´Ù. ±×·¯³ª °ÔÀÌÆ®¿þÀÌ´Â ºñ¹«Àå Áö´ë(DMZ)¿Í ÀÎÆ®¶ó³Ý »çÀÌÀÇ ¹æÈ­º®À» ÅëÇØ ¸ðµç Netlet ´ë»ó È£½ºÆ®¿¡ ¾×¼¼½ºÇØ¾ß ÇÕ´Ï´Ù. ±×·¯·Á¸é ¹æÈ­º®¿¡¼­ ¸¹Àº Æ÷Æ®¸¦ ¿­¾î¾ß ÇÕ´Ï´Ù. Netlet ÇÁ¶ô½Ã´Â ÇÁ¶ô½ÃÀÇ °³¹æ Æ÷Æ® ¼ö¸¦ ÃÖ´ëÇÑ ÁÙÀÌ´Â µ¥ »ç¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù.

Netlet ÇÁ¶ô½Ã´Â Ŭ¶óÀÌ¾ðÆ®·ÎºÎÅÍ º¸¾È ÅͳÎÀ» °ÔÀÌÆ®¿þÀ̸¦ °ÅÃÄ ÀÎÆ®¶ó³Ý¿¡ »óÁÖÇÏ´Â Netlet ÇÁ¶ô½Ã±îÁö È®ÀåÇÔÀ¸·Î½á °ÔÀÌÆ®¿þÀÌ¿Í ÀÎÆ®¶ó³Ý »çÀÌÀÇ º¸¾ÈÀ» °­È­ÇÕ´Ï´Ù. ÇÁ¶ô½Ã°¡ ÀÖÀ¸¸é Netlet ÆÐŶÀº ÇÁ¶ô½Ã¿¡ ÀÇÇØ ¾ÏÈ£°¡ ÇØµ¶µÈ ÈÄ ´ë»óÀ¸·Î º¸³»Áý´Ï´Ù.

Netlet ÇÁ¶ô½Ã´Â ´ÙÀ½°ú °°Àº ÀÌÀ¯·Î À¯¿ëÇÕ´Ï´Ù.

°¡´ÉÇÑ ÀÛ¾÷:

±×¸² 2-2 ¿¡´Â Netlet ÇÁ¶ô½Ã°¡ ¼³Ä¡µÈ °æ¿ì¿Í ¼³Ä¡µÇÁö ¾ÊÀº °æ¿ì, °ÔÀÌÆ®¿þÀÌ¿Í Portal Server¸¦ ±¸ÇöÇÏ´Â 3°¡Áö ¿¹Á¦°¡ ³ª¿Í ÀÖ½À´Ï´Ù. ±¸¼º ¿ä¼Ò´Â Ŭ¶óÀ̾ðÆ®, ¹æÈ­º® 2°³, µÎ ¹æÈ­º® »çÀÌ¿¡ »óÁÖÇÏ´Â °ÔÀÌÆ®¿þÀÌ, Portal Server ¹× Netlet ´ë»ó ¼­¹öÀÔ´Ï´Ù.

ù ¹øÂ° ½Ã³ª¸®¿À´Â Netlet ÇÁ¶ô½Ã°¡ ¼³Ä¡µÇÁö ¾ÊÀº °æ¿ìÀÇ °ÔÀÌÆ®¿þÀÌ¿Í Portal Server¸¦ º¸¿©ÁÝ´Ï´Ù. ¿©±â¼­´Â µ¥ÀÌÅÍ ¾Ïȣȭ°¡ Ŭ¶óÀÌ¾ðÆ®¿¡¼­ °ÔÀÌÆ®¿þÀ̱îÁö¸¸ Àû¿ëµË´Ï´Ù. °¢ Netlet ¿¬°á ¿äûÀ» À§ÇØ µÎ ¹øÂ° ¹æÈ­º®¿¡¼­ Æ÷Æ®°¡ 1°³ °³¹æµÇ¾î ÀÖ½À´Ï´Ù.

µÎ ¹øÂ° ½Ã³ª¸®¿À´Â Netlet ÇÁ¶ô½Ã°¡ Portal Server¿¡ ¼³Ä¡µÈ °æ¿ìÀÇ °ÔÀÌÆ®¿þÀÌ¿Í Portal Server¸¦ º¸¿©ÁÝ´Ï´Ù. ÀÌ °æ¿ì µ¥ÀÌÅÍ ¾Ïȣȭ´Â Ŭ¶óÀÌ¾ðÆ®¿¡¼­ Portal Server±îÁö ÀüüÀûÀ¸·Î Àû¿ëµË´Ï´Ù. ¸ðµç Netlet ¿¬°áÀÌ Netlet ÇÁ¶ô½Ã¸¦ ÅëÇØ ¶ó¿ìÆÃµÇ±â ¶§¹®¿¡ Netlet ¿äûÀ» À§ÇØ µÎ ¹øÂ° ¹æÈ­º®¿¡¼­ Æ÷Æ®´Â Çϳª¸¸ °³¹æµÇ¾î ÀÖÀ¸¸é µË´Ï´Ù.

¼¼ ¹øÂ° ½Ã³ª¸®¿À´Â Netlet ÇÁ¶ô½Ã°¡ º°µµ ³ëµå¿¡ ¼³Ä¡µÈ °æ¿ìÀÇ °ÔÀÌÆ®¿þÀÌ¿Í Portal Server¸¦ º¸¿©ÁÝ´Ï´Ù. Netlet ÇÁ¶ô½Ã¸¦ º°µµ ³ëµå¿¡ ¼³Ä¡Çϸé Portal Server ³ëµåÀÇ ·Îµå°¡ ÁÙ¾îµì´Ï´Ù. ¿©±â¼­´Â µÎ ¹øÂ° ¹æÈ­º®¿¡¼­ 2°³ÀÇ Æ÷Æ®¸¸ °³¹æµÇ¾î ÀÖÀ¸¸é µË´Ï´Ù. ÇÑ Æ÷Æ®´Â Portal Server¿¡ ´ëÇÑ ¿äûÀ» ó¸®ÇÏ°í ´Ù¸¥ Æ÷Æ®´Â Netlet ÇÁ¶ô½Ã ¼­¹ö¿¡ ´ëÇÑ Netlet ¿äûÀ» ¶ó¿ìÆÃÇÕ´Ï´Ù.

±×¸² 2-2  Netlet ÇÁ¶ô½Ã ±¸Çö

ÀÌ ±×¸²Àº Netlet ÇÁ¶ô½Ã¿Í °ü·ÃÇÏ¿© °¡´ÉÇÑ ±¸¼ºÀ» º¸¿©ÁÖ°í Netlet ÇÁ¶ô½Ã¸¦ ¼³Ä¡ÇÏ´Â °æ¿ì¿¡ ´©¸± ¼ö ÀÖ´Â ÀÌÁ¡À» ¼³¸íÇÕ´Ï´Ù. ±×¸² ¾ÕºÎºÐÀÇ ÀÚ¼¼ÇÑ ¼³¸íÀ» Âü°íÇϽʽÿÀ.

Netlet ÇÁ¶ô½ÃÀÇ ÀνºÅϽº ¸¸µé±â

Portal Server ³ëµå³ª º°µµ ³ëµå¿¡ Netlet ÇÁ¶ô½ÃÀÇ »õ ÀνºÅϽº¸¦ ¸¸µé·Á¸é nlpmultiinstance ½ºÅ©¸³Æ®¸¦ »ç¿ëÇÕ´Ï´Ù. °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀ» ¸¸µç ÈÄ¿¡ ÀÌ ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÏ´Â °ÍÀÌ ÁÁ½À´Ï´Ù.

  1. ·çÆ®·Î ·Î±×ÀÎÇÏ¿© ´ÙÀ½ µð·ºÅ丮·Î ã¾Æ °©´Ï´Ù.
  2. netlet-install-dir/SUNWps/bin

  3. ´ÙÁß ÀνºÅϽº ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÕ´Ï´Ù.
  4. ./nlpmultiinstance

  5. nlpmultiinstance ½ºÅ©¸³Æ®¿¡¼­ ³ªÅ¸³ª´Â ´ÙÀ½ Áú¹®¿¡ ´äÇÕ´Ï´Ù.
    • »õ netlet ÇÁ¶ô½Ã ÀνºÅϽºÀÇ À̸§Àº ¹«¾ùÀԴϱî?
    • ÀÌ ³ëµå¿¡ °°Àº À̸§À¸·Î ±¸¼ºµÈ rewriter ÇÁ¶ô½Ã ÀνºÅϽº°¡ ÀÖÀ¸¸é ÀÌ netlet ÇÁ¶ô½Ã ÀνºÅϽº¿¡µµ °°Àº ±¸¼ºÀ» »ç¿ëÇÒ °ÍÀÎÁö ¹¯´Â ¸Þ½ÃÁö°¡ ³ªÅ¸³³´Ï´Ù.
    • ¿¹¶ó°í ´äÇÑ °æ¿ì, ´ÙÀ½ µÎ Áú¹®¿¡ ´äÇϽʽÿÀ.
      • »õ netlet ÇÁ¶ô½Ã ÀνºÅϽº¿¡¼­´Â ¾î¶² Æ÷Æ®¸¦ ¼ö½ÅÇմϱî?
      • ¼³Ä¡ ÈÄ netlet ÇÁ¶ô½Ã¸¦ ½ÃÀÛÇϽðڽÀ´Ï±î?
    • ¾Æ´Ï¿À¶ó°í ´äÇÑ °æ¿ì, ´ÙÀ½ Áú¹®¿¡ ´äÇϽʽÿÀ.
      • »õ netlet ÇÁ¶ô½Ã ÀνºÅϽº¿¡¼­´Â ¾î¶² ÇÁ·ÎÅäÄÝÀ» »ç¿ëÇմϱî?
      • »õ netlet ÇÁ¶ô½Ã ÀνºÅϽº¿¡¼­´Â ¾î¶² Æ÷Æ®¸¦ ¼ö½ÅÇմϱî?
      • Á¶Á÷ÀÇ À̸§Àº ¹«¾ùÀԴϱî?
      • ºÎ¼­ À̸§Àº ¹«¾ùÀԴϱî?
      • ±¸/±º/½ÃÀÇ À̸§Àº ¹«¾ùÀԴϱî?
      • ½Ã/µµÀÇ À̸§Àº ¹«¾ùÀԴϱî?
      • 2ÀÚ·Î µÈ ±¹°¡ ¹øÈ£´Â ¹«¾ùÀԴϱî?
      • ÀÎÁõ¼­ µ¥ÀÌÅͺ£À̽º ºñ¹Ð¹øÈ£´Â ¹«¾ùÀԴϱî?
      • »ç¿ëÀÚ ·Î±×ÀÎ ºñ¹Ð¹øÈ£´Â ¹«¾ùÀԴϱî?
      • °ü¸® Äֿܼ¡ »õ netlet ÇÁ¶ô½Ã ÇÁ·ÎÇÊÀ» ¸¸µé¾ú½À´Ï±î?
      • ¿¹¶ó°í ´äÇÑ °æ¿ì, ¼³Ä¡ ÈÄ netlet ÇÁ¶ô½Ã¸¦ ½ÃÀÛÇϽðڽÀ´Ï±î?
  6. »õ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ À̸§À¸·Î netlet ÇÁ¶ô½ÃÀÇ »õ ÀνºÅϽº¸¦ ½ÃÀÛÇÕ´Ï´Ù.
  7. netlet-proxy-install-root/SUNWps/bin/netletd -n gateway-profile-name start

    ¿©±â¼­ gateway-profile-nameÀº ÇÊ¿äÇÑ °ÔÀÌÆ®¿þÀÌ ÀνºÅϽº¿¡ ÇØ´çÇÏ´Â ÇÁ·ÎÇÊ À̸§ÀÔ´Ï´Ù.

Netlet ÇÁ¶ô½Ã »ç¿ë ¼³Á¤

Identity Server °ü¸® ÄܼÖÀÇ SRA ±¸¼º¿¡¼­ °ÔÀÌÆ®¿þÀÌ ¼­ºñ½º¸¦ ÅëÇØ Netlet ÇÁ¶ô½Ã¸¦ »ç¿ëÇϵµ·Ï ¼³Á¤ÇÕ´Ï´Ù. "Netlet ÇÁ¶ô½Ã ¸ñ·Ï »ç¿ë°ú ¸¸µé±â"À» ÂüÁ¶ÇϽʽÿÀ.

Netlet ÇÁ¶ô½Ã ´Ù½Ã ½ÃÀÛ

ÇÁ¶ô½Ã°¡ ¿¹±âÄ¡ ¾Ê°Ô Áß´ÜµÉ ¶§¸¶´Ù ´Ù½Ã ½ÃÀÛÇϵµ·Ï Netlet ÇÁ¶ô½Ã¸¦ ±¸¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿öÄ¡µ¶ ÇÁ·Î¼¼½º ÀÏÁ¤À» °èȹÇÏ¿© Netlet ÇÁ¶ô½Ã¸¦ ¸ð´ÏÅ͸µÇϰí, ÇÁ¶ô½Ã°¡ ´Ù¿îµÈ °æ¿ì ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.

Netlet ÇÁ¶ô½Ã¸¦ ¼öµ¿À¸·Î ´Ù½Ã ½ÃÀÛÇÒ ¼öµµ ÀÖ½À´Ï´Ù.

    Netlet ÇÁ¶ô½Ã¸¦ ´Ù½Ã ½ÃÀÛÇÏ·Á¸é

´Ü¸»±â â¿¡¼­ ·çÆ®·Î ¿¬°áÇÏ°í ´ÙÀ½ ÀÛ¾÷ Áß Çϳª¸¦ ¼öÇàÇÕ´Ï´Ù.

    Netlet ÇÁ¶ô½Ã ¿öÄ¡µ¶¸¦ ±¸¼ºÇÏ·Á¸é

¿öÄ¡µ¶°¡ Netlet ÇÁ¶ô½ÃÀÇ »óŸ¦ ¸ð´ÏÅ͸µÇÏ°Ô µÉ ½Ã°£ °£°ÝÀ» ¼³Á¤ÇÒ ¼ö ÀÖ½À´Ï´Ù. ½Ã°£ °£°ÝÀº ±âº»ÀûÀ¸·Î 60ÃÊ·Î ¼³Á¤µË´Ï´Ù. ÀÌ ¼³Á¤À» º¯°æÇÏ·Á¸é crontab¿¡¼­ ´ÙÀ½ ¶óÀÎÀ» ÆíÁýÇÕ´Ï´Ù.

0-59 * * * * netlet-install-dir/bin/checkgw /var/opt/SUNWps/.gw 5> /dev/null 2>&1


Rewriter ÇÁ¶ô½Ã »ç¿ë

Rewriter ÇÁ¶ô½Ã´Â ÀÎÆ®¶ó³Ý¿¡ ¼³Ä¡µË´Ï´Ù. ÄÁÅÙÆ®¸¦ Á÷Á¢ °Ë»öÇÏÁö ¾Ê°í °ÔÀÌÆ®¿þÀÌ´Â ÄÁÅÙÆ®¸¦ °¡Á®¿Í °ÔÀÌÆ®¿þÀÌ·Î ¹ÝȯÇÏ´Â Rewriter ÇÁ¶ô½Ã·Î ¸ðµç ¿äûÀ» Àü´ÞÇÕ´Ï´Ù.

Rewriter ÇÁ¶ô½Ã¸¦ »ç¿ëÀ» ÅëÇØ ¾òÀ» ¼ö ÀÖ´Â ÀÌÁ¡Àº 2°¡ÁöÀÔ´Ï´Ù.

Rewriter ÇÁ¶ô½Ã¸¦ ÁöÁ¤ÇÏÁö ¾ÊÀ¸¸é °ÔÀÌÆ®¿þÀÌ ±¸¼º ¿ä¼Ò¿¡¼­ »ç¿ëÀÚ°¡ ÀÎÆ®¶ó³Ý ÄÄÇ»ÅÍ¿¡ ¾×¼¼½ºÇÏ·Á°í ÇÒ ¶§ ÀÎÆ®¶ó³Ý ÄÄÇ»ÅÍ¿¡ Á÷Á¢ ¿¬°áÀ» ±¸¼ºÇÕ´Ï´Ù.

Rewriter ÇÁ¶ô½Ã¸¦ »ç¿ë ¼³Á¤ÇÏ·Á¸é "Rewriter ÇÁ¶ô½Ã ¸ñ·Ï »ç¿ë°ú ¸¸µé±â"¸¦ ÂüÁ¶ÇϽʽÿÀ.

Rewriter ÇÁ¶ô½ÃÀÇ ÀνºÅϽº ¸¸µé±â

Portal Server ³ëµå¿¡ Rewriter ÇÁ¶ô½ÃÀÇ »õ ÀνºÅϽº¸¦ ¸¸µé·Á¸é rwpmultiinstance ½ºÅ©¸³Æ®¸¦ »ç¿ëÇÕ´Ï´Ù. °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊÀ» ¸¸µç ÈÄ¿¡ ÀÌ ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÏ´Â °ÍÀÌ ÁÁ½À´Ï´Ù.

  1. ·çÆ®·Î ·Î±×ÀÎÇÏ¿© ´ÙÀ½ µð·ºÅ丮·Î ã¾Æ °©´Ï´Ù.
  2. rewriter-proxy-install-root/SUNWps/bin

  3. ´ÙÁß ÀνºÅϽº ½ºÅ©¸³Æ®¸¦ ½ÇÇàÇÕ´Ï´Ù.
  4. ./rwpmultiinstance

  5. ½ºÅ©¸³Æ®¿¡ ³ªÅ¸³ª´Â Áú¹®¿¡ ´äÇÕ´Ï´Ù.
    • »õ rewriter ÇÁ¶ô½Ã ÀνºÅϽºÀÇ À̸§Àº ¹«¾ùÀԴϱî?
    • ÀÌ ³ëµå¿¡ °°Àº À̸§À¸·Î ±¸¼ºµÈ rewriter ÇÁ¶ô½Ã ÀνºÅϽº°¡ ÀÖÀ¸¸é ÀÌ rewriter ÇÁ¶ô½Ã ÀνºÅϽº¿¡µµ °°Àº ±¸¼ºÀ» »ç¿ëÇÒ °ÍÀÎÁö ¹¯´Â ¸Þ½ÃÁö°¡ ³ªÅ¸³³´Ï´Ù.
    • ¿¹¶ó°í ´äÇÑ °æ¿ì, ´ÙÀ½ µÎ Áú¹®¿¡ ´äÇϽʽÿÀ.
      • »õ rewriter ÇÁ¶ô½Ã ÀνºÅϽº¿¡¼­´Â ¾î¶² Æ÷Æ®¸¦ ¼ö½ÅÇմϱî?
      • ¼³Ä¡ ÈÄ rewriter ÇÁ¶ô½Ã¸¦ ½ÃÀÛÇϽðڽÀ´Ï±î?
    • ¾Æ´Ï¿À¶ó°í ´äÇÑ °æ¿ì, ´ÙÀ½ Áú¹®¿¡ ´äÇϽʽÿÀ.
      • »õ rewriter ÇÁ¶ô½Ã ÀνºÅϽº¿¡¼­´Â ¾î¶² ÇÁ·ÎÅäÄÝÀ» »ç¿ëÇմϱî?
      • »õ rewriter ÇÁ¶ô½Ã ÀνºÅϽº¿¡¼­´Â ¾î¶² Æ÷Æ®¸¦ ¼ö½ÅÇմϱî?
      • Á¶Á÷ÀÇ À̸§Àº ¹«¾ùÀԴϱî?
      • ºÎ¼­ À̸§Àº ¹«¾ùÀԴϱî?
      • ±¸/±º/½ÃÀÇ À̸§Àº ¹«¾ùÀԴϱî?
      • ½Ã/µµÀÇ À̸§Àº ¹«¾ùÀԴϱî?
      • 2ÀÚ·Î µÈ ±¹°¡ ¹øÈ£´Â ¹«¾ùÀԴϱî?
      • ÀÎÁõ¼­ µ¥ÀÌÅͺ£À̽º ºñ¹Ð¹øÈ£´Â ¹«¾ùÀԴϱî?
      • »ç¿ëÀÚ ·Î±×ÀÎ ºñ¹Ð¹øÈ£´Â ¹«¾ùÀԴϱî?
      • °ü¸® Äֿܼ¡ »õ rewriter ÇÁ¶ô½Ã ÇÁ·ÎÇÊÀ» ¸¸µé¾ú½À´Ï±î?
      • ¿¹¶ó°í ´äÇÑ °æ¿ì, ¼³Ä¡ ÈÄ rewriter ÇÁ¶ô½Ã¸¦ ½ÃÀÛÇϽðڽÀ´Ï±î?
  6. »õ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ À̸§À¸·Î rewriter ÇÁ¶ô½ÃÀÇ »õ ÀνºÅϽº¸¦ ½ÃÀÛÇÕ´Ï´Ù.
  7. rewriter-proxy-install-root/SUNWps/bin/rwproxyd -n gateway-profile-name start

    ¿©±â¼­ gateway-profile-nameÀº ÇÊ¿äÇÑ °ÔÀÌÆ®¿þÀÌ ÀνºÅϽº¿¡ ÇØ´çÇÏ´Â ÇÁ·ÎÇÊ À̸§ÀÔ´Ï´Ù.

Rewriter ÇÁ¶ô½Ã »ç¿ë ¼³Á¤

Identity Server °ü¸® ÄܼÖÀÇ SRA ±¸¼º¿¡¼­ °ÔÀÌÆ®¿þÀÌ ¼­ºñ½º¸¦ ÅëÇØ Rewriter ÇÁ¶ô½Ã¸¦ »ç¿ë ¼³Á¤ÇÕ´Ï´Ù. "Rewriter ÇÁ¶ô½Ã ¸ñ·Ï »ç¿ë°ú ¸¸µé±â"À» ÂüÁ¶ÇϽʽÿÀ.

Rewriter ÇÁ¶ô½Ã ´Ù½Ã ½ÃÀÛ

ÇÁ¶ô½Ã°¡ ¿¹±âÄ¡ ¾Ê°Ô Áß´ÜµÉ ¶§¸¶´Ù ´Ù½Ã ½ÃÀÛÇϵµ·Ï Rewriter ÇÁ¶ô½Ã¸¦ ±¸¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿öÄ¡µ¶ ÇÁ·Î¼¼½º ÀÏÁ¤À» °èȹÇÏ¿© Rewriter ÇÁ¶ô½Ã¸¦ ¸ð´ÏÅ͸µÇϰí, ÇÁ¶ô½Ã°¡ ´Ù¿îµÈ °æ¿ì ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.

Rewriter ÇÁ¶ô½Ã¸¦ ¼öµ¿À¸·Î ´Ù½Ã ½ÃÀÛÇÒ ¼öµµ ÀÖ½À´Ï´Ù.

    Rewriter ÇÁ¶ô½Ã¸¦ ´Ù½Ã ½ÃÀÛÇÏ·Á¸é

Å͹̳Πâ¿¡¼­ ·çÆ®·Î ¿¬°áÇÏ°í ´ÙÀ½ ÀÛ¾÷ Áß Çϳª¸¦ ¼öÇàÇÕ´Ï´Ù.

    Rewriter ÇÁ¶ô½Ã ¿öÄ¡µ¶¸¦ ±¸¼ºÇÏ·Á¸é

¿öÄ¡µ¶°¡ Rewriter ÇÁ¶ô½Ã »óŸ¦ ¸ð´ÏÅ͸µÇÏ°Ô µÉ ½Ã°£ °£°ÝÀ» ¼³Á¤ÇÒ ¼ö ÀÖ½À´Ï´Ù. ½Ã°£ °£°ÝÀº ±âº»ÀûÀ¸·Î 60ÃÊ·Î ¼³Á¤µË´Ï´Ù. ÀÌ ¼³Á¤À» º¯°æÇÏ·Á¸é crontab¿¡¼­ ´ÙÀ½ ¶óÀÎÀ» ÆíÁýÇÕ´Ï´Ù.

0-59 * * * * rewriter-proxy-install-root/bin/checkgw /var/opt/SUNWps/.gw 5> /dev/null 2>&1


°ÔÀÌÆ®¿þÀÌ¿¡¼­ ¿ª ÇÁ¶ô½Ã »ç¿ë

ÇÁ¶ô½Ã ¼­¹ö´Â ÀÎÆ®¶ó³Ý¿¡ ÀÎÅÍ³Ý ÄÁÅÙÆ®¸¦ ¼­ºñ½ºÇÏ°í ¿ª ÇÁ¶ô½Ã´Â ÀÎÅͳݿ¡ ÀÎÆ®¶ó³Ý ÄÁÅÙÆ®¸¦ ¼­ºñ½ºÇÕ´Ï´Ù. ƯÁ¤ ¿ª ÇÁ¶ô½Ã ¹èÆ÷´Â ÀÎÅÍ³Ý ÄÁÅÙÆ®¸¦ ¼­ºñ½ºÇÏ°í ·Îµå ±ÕÇü Á¶Á¤°ú ij½ÌÀ» ¼öÇàÇϵµ·Ï ±¸¼ºµË´Ï´Ù.

ÀÌ ¹èÆ÷¿¡¼­ °ÔÀÌÆ®¿þÀÌ Àü¹æ¿¡ Ÿ»çÀÇ ¿ª ÇÁ¶ô½Ã°¡ »ç¿ëµÈ´Ù¸é °ÔÀÌÆ®¿þÀÌÀÇ URL ´ë½Å ¿ª ÇÁ¶ô½ÃÀÇ URL·Î ÀÀ´äÀ» ´Ù½Ã ½á¾ß ÇÕ´Ï´Ù. À̸¦ À§ÇØ ´ÙÀ½ ±¸¼ºÀÌ ÇÊ¿äÇÕ´Ï´Ù.

    ¿ª ÇÁ¶ô½Ã¸¦ »ç¿ë ¼³Á¤ÇÏ·Á¸é
  1. ·çÆ®·Î ·Î±×ÀÎÇÏ¿© ÇÊ¿äÇÑ °ÔÀÌÆ®¿þÀÌ ÀνºÅϽºÀÇ platform.conf ÆÄÀÏÀ» ÆíÁýÇÕ´Ï´Ù.
  2. /etc/opt/SUNWps/platform.conf.gateway-profile-name

  3. ´ÙÀ½ Ç׸ñÀ» Ãß°¡ÇÕ´Ï´Ù.
  4. gateway.virtualhost=fully-qualified-gateway-host gateway-ip-address fully- qualified-reverse-proxyhost

    gateway.enable.customurl=true (ÀÌ °ªÀº ±âº»ÀûÀ¸·Î false·Î ¼³Á¤µË´Ï´Ù.)

    gateway.httpurl=http reverse-proxy-URL

    gateway.httpsurl=https reverse-proxy-URL

    gateway.httpurlÀº °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ¿¡¼­ HTTP Æ÷Æ®·Î ³ª¿­µÈ Æ÷Æ®¿¡¼­ ¼ö½ÅµÈ ¿äû¿¡ ´ëÇÑ ÀÀ´äÀ» ´Ù½Ã ¾²´Âµ¥ »ç¿ëµË´Ï´Ù.

    gateway.httpsurlÀº °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ¿¡¼­ HTTPS Æ÷Æ®·Î ³ª¿­µÈ Æ÷Æ®¿¡¼­ ¼ö½ÅµÈ ¿äû¿¡ ´ëÇÑ ÀÀ´äÀ» ´Ù½Ã ¾²´Âµ¥ »ç¿ëµË´Ï´Ù.

  5. °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  6. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start

°ªÀÌ ÁöÁ¤µÇ¾î ÀÖÁö ¾ÊÀ¸¸é °ÔÀÌÆ®¿þÀÌ¿¡¼­´Â ÀÏ¹Ý ÀÛµ¿À¸·Î ±âº»°ªÀ» ¼³Á¤ÇÕ´Ï´Ù.


Ŭ¶óÀÌ¾ðÆ® Á¤º¸ °¡Á®¿À±â

°ÔÀÌÆ®¿þÀÌ¿¡¼­ Ŭ¶óÀÌ¾ðÆ® ¿äûÀ» ÀÓÀÇ ¼­¹ö·Î Àü´ÞÇÒ ¶§ HTTP Çì´õ¸¦ HTTP ¿äû¿¡ Ãß°¡ÇÕ´Ï´Ù. ÀÌ Çì´õ¸¦ »ç¿ëÇÏ¿© Ãß°¡ Ŭ¶óÀÌ¾ðÆ® Á¤º¸¸¦ °¡Á®¿À°í °ÔÀÌÆ®¿þÀ̰¡ ÀÖ´ÂÁö °¨ÁöÇÒ ¼ö ÀÖ½À´Ï´Ù.

HTTP ¿äû Çì´õ¸¦ º¸·Á¸é platform.conf ÆÄÀÏÀÇ Ç׸ñÀ» gateway.error=message·Î ¼³Á¤ÇÑ ´ÙÀ½ servlet API¿¡¼­ request.getHeader()¸¦ »ç¿ëÇÕ´Ï´Ù.

ù ¹øÂ° ¿­¿¡´Â Çì´õ ·¹À̺íÀÌ ³ª¿­µÇ°í, µÎ ¹øÂ° ¿­Àº °¢ Çì´õ¿¡ ´ëÇÑ ±¸¹®À» ÁöÁ¤ÇÏ¸ç ¼¼ ¹øÂ° ¿­Àº Çì´õ ·¹À̺íÀ» ¼³¸íÇÕ´Ï´Ù.

Ç¥ 2-3  HTTP Çì´õÀÇ Á¤º¸

Çì´õ

±¸¹®

¼³¸í

PS-GW-PDC

PS-GW-PDC: true/false

°ÔÀÌÆ®¿þÀÌ¿¡¼­ PDCÀÇ »ç¿ë ¼³Á¤ ¿©ºÎ¸¦ ³ªÅ¸³À´Ï´Ù.

PS-Netlet

PS-Netlet:enabled=true/false

°ÔÀÌÆ®¿þÀÌ¿¡¼­ NetletÀÇ »ç¿ë ¼³Á¤ ¿©ºÎ¸¦ ³ªÅ¸³À´Ï´Ù.

»ç¿ë ¼³Á¤µÈ °æ¿ì ¾Ïȣȭ ¿É¼ÇÀÌ Ã¤¿öÁ®¼­ °ÔÀÌÆ®¿þÀ̰¡ HTTPS(encryption=ssl) ¶Ç´Â HTTP ¸ðµå(encryption=plain) Áß ¾î´À ÂÊ¿¡¼­ ½ÇÇà ÁßÀÎÁö º¸¿©ÁÝ´Ï´Ù.

¿¹:

PS-Netlet: enabled=false

NetletÀÌ »ç¿ë ÇØÁ¦µÇ¾ú½À´Ï´Ù.

PS-Netlet: enabled=true; encryption=ssl

°ÔÀÌÆ®¿þÀ̰¡ SSL ¸ðµå¿¡¼­ ½ÇÇàµÇ¸ç NetletÀÌ »ç¿ë ¼³Á¤µÇ¾ú½À´Ï´Ù.

encryption=ssl/plainÀº NetletÀÌ »ç¿ë ¼³Á¤µÇÁö ¾ÊÀº °æ¿ì¿¡´Â ä¿öÁöÁö ¾Ê½À´Ï´Ù.

PS-GW-URL

PS-GW-URL: http(s)://gatewayURL(:port)

Ŭ¶óÀÌ¾ðÆ®°¡ ¿¬°áµÈ URLÀ» ³ªÅ¸³À´Ï´Ù.

ºñÇ¥ÁØ Æ÷Æ®ÀÎ °æ¿ì(Áï, Æ÷Æ® 80/443ÀÌ ¾Æ´Ñ »óÅ·Π°ÔÀÌÆ®¿þÀ̰¡ HTTP/HTTPS ¸ðµå¿¡ ÀÕ´Â °æ¿ì) ":port"µµ ä¿öÁý´Ï´Ù.

PS-GW-Rewriting-URL

PS-GW-URL: http(s)://gatewayURL(:port)/[SessionInfo]

 

°ÔÀÌÆ®¿þÀ̰¡ ¸ðµç ÆäÀÌÁö¸¦ ´Ù½Ã ¾²´Â URLÀ» ³ªÅ¸³À´Ï´Ù.

1.  ºê¶ó¿ìÀú¿¡¼­ Äí۸¦ Áö¿øÇÏ´Â °æ¿ì ÀÌ Çì´õ °ªÀº PS-GW-URL Çì´õ¿Í °°½À´Ï´Ù.

2.  ºê¶ó¿ìÀú°¡ Äí۸¦ Áö¿øÇÏÁö ¾Ê°í

  • ´ë»ó È£½ºÆ®°¡ "ÄíŰ URL Àü´Þ" ¸ñ·Ï¿¡ ÀÖÀ¸¸é ÀÌ °ªÀº °ÔÀÌÆ®¿þÀ̰¡ ÆäÀÌÁö¸¦ ´Ù½Ã ¾²°Ô µÇ´Â ½ÇÁ¦ URLÀ» ³ªÅ¸³À´Ï´Ù(ÀÎÄÚµùµÈ SessionID info Æ÷ÇÔ).
  • ¶Ç´Â ´ë»ó È£½ºÆ®°¡ ÄíŰ URL Àü´Þ ¸ñ·Ï¿¡ ÀÖÁö ¾ÊÀ¸¸é SessionInfo ¹®ÀÚ¿­Àº "$SessionID"°¡ µË´Ï´Ù.

Âü°í: ÀÀ´äÀÇ ÀϺηΠ»ç¿ëÀÚÀÇ Identity Server sessionId°¡ º¯°æµÇ¸é(ÀÎÁõ ÆäÀÌÁö¿¡¼­ ¿À´Â ÀÀ´ä°ú °°ÀÌ) ÆäÀÌÁö´Â ÀÌÀü¿¡ Çì´õ¿¡ Ç¥½ÃµÈ °ªÀÌ ¾Æ´Ñ ±× °ªÀ¸·Î ´Ù½Ã ¾²¿©Áý´Ï´Ù.

¿¹:

  • ºê¶ó¿ìÀú¿¡¼­ Äí۸¦ Áö¿øÇÏ´Â °æ¿ì

PS-GW-Rewriting-URL: https://siroe.india.sun.com:10443/

  • ºê¶ó¿ìÀú°¡ ÄíŰ´Â Áö¿øÇÏÁö ¾ÊÁö¸¸ endserver°¡ "ÄíŰ URL Àü´Þ" ¸ñ·Ï¿¡ ÀÖ´Â °æ¿ì

PS-GW-Rewriting-URL: https://siroe.india.sun.com:10443/SessIDValCustomEncodedValue/

  • ºê¶ó¿ìÀú°¡ ÄíŰ´Â Áö¿øÇÏÁö ¾Ê°í endserver°¡ "ÄíŰ URL Àü´Þ" ¸ñ·Ï¿¡ ¾ø´Â °æ¿ì

PS-GW-Rewriting-URL: https://siroe.india.sun.com:10443/$SessionID

PS-GW-CLientIP

 

PS-GW-CLientIP: IP

°ÔÀÌÆ®¿þÀ̰¡ recievedSocket.getInetAddress().getHostAddress()·ÎºÎÅÍ °¡Á®¿Â IPÀÔ´Ï´Ù.

ÀÌ IP´Â °ÔÀÌÆ®¿þÀÌ¿¡ Á÷Á¢ ¿¬°áµÇ¸é Ŭ¶óÀ̾ðÆ®ÀÇ IP°¡ µË´Ï´Ù.

Âü°í: JSS/NSS ¹ö±×·Î ÀÎÇØ ÇöÀç Á¸ÀçÇÏÁö´Â ¾Ê½À´Ï´Ù.


ÀÎÁõ üÀÌ´× »ç¿ë

ÀÎÁõ üÀÌ´×Àº ÀÎÁõÀÇ ÀÏ¹Ý ¸ÞÄ¿´ÏÁò¿¡¼­ º¸¾ÈÀ» ÇÑÃþ ³ôÀº ¼öÁØÀ¸·Î °­È­ÇÕ´Ï´Ù. »ç¿ëÀÚ°¡ 2°³ ÀÌ»ó ÀÎÁõ ¸ÞÄ¿´ÏÁò¿¡ ´ëÇØ ÀÎÁõ ¹Þµµ·Ï ¼³Á¤ÇÒ ¼ö ÀÖ½À´Ï´Ù.

¿©±â¿¡ ¼³¸íµÈ ÀýÂ÷´Â °ÔÀÌÆ®¿þÀÌ¿¡¼­ PDC ÀÎÁõ°ú ÇÔ²² ÀÎÁõ üÀÌ´×À» »ç¿ëÇÏ´Â °æ¿ì¿¡¸¸ Àû¿ëµË´Ï´Ù. °ÔÀÌÆ®¿þÀÌ¿¡¼­ PDC ÀÎÁõÀ» »ç¿ëÇÏÁö ¾Ê´Â ÀÎÁõ üÀ̴׿¡ ´ëÇØ¼­´Â Sun ONE Identity Server Administration Guide¸¦ ÂüÁ¶ÇϽʽÿÀ.

¿¹¸¦ µé¾î, PDC, Unix ¹× Radius ÀÎÁõ ¸ðµâÀ» üÀÎ ¿¬°áÇÏ¸é »ç¿ëÀÚ°¡ Æ÷ÅÐ µ¥½ºÅ©Å¾¿¡ ¾×¼¼½ºÇÏ·Á¸é ÀÌ 3°³ ¸ðµâ¿¡ ´ëÇÑ ÀÎÁõÀ» ¸ðµÎ °ÅÃÄ¾ß ÇÕ´Ï´Ù.


Âü°í

PDC´Â »ç¿ë ¼³Á¤µÈ °æ¿ì »ç¿ëÀÚ¿¡°Ô Ç×»ó °¡Á¤ ¸ÕÀú Á¦½ÃµÇ´Â ÀÎÁõ ¸ðµâÀÔ´Ï´Ù.


    ±âÁ¸ PDC ÀνºÅϽº¿¡ ÀÎÁõ ¸ðµâÀ» Ãß°¡ÇÏ·Á¸é
  1. Identity Server °ü¸® Äֿܼ¡ °ü¸®ÀÚ·Î ·Î±×ÀÎÇÕ´Ï´Ù.
  2. ÇÊ¿äÇÑ Á¶Á÷À» ¼±ÅÃÇÕ´Ï´Ù.
  3. [º¸±â] µå·Ó´Ù¿î ¸Þ´º¿¡¼­ [¼­ºñ½º]¸¦ ¼±ÅÃÇÕ´Ï´Ù.
  4. ¿ÞÂÊ Ã¢¿¡ ¼­ºñ½º°¡ Ç¥½ÃµË´Ï´Ù.

  5. [ÀÎÁõ ±¸¼º] ¿·ÀÇ È­»ìÇ¥¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  6. ¼­ºñ½º ÀνºÅϽº ¸ñ·ÏÀÌ Ç¥½ÃµË´Ï´Ù.

  7. gatewaypdc¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  8. Gatewaypdc ¼Ó¼º ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  9. [ÀÎÁõ ±¸¼º] ¾ÕÀÇ [ÆíÁý]À» Ŭ¸¯ÇÕ´Ï´Ù.
  10. [¸ðµâ Ãß°¡]°¡ ³ªÅ¸³³´Ï´Ù.

  11. [¸ðµâ À̸§]À» ¼±ÅÃÇϰí [Ç÷¡±×]¸¦ [ÇÊ¿ä]·Î ¼³Á¤ÇÕ´Ï´Ù. ºó Ä­À¸·Î ³²°ÜµÖµµ µË´Ï´Ù.
  12. [È®ÀÎ]À» Ŭ¸¯ÇÕ´Ï´Ù.
  13. ¸ðµâÀ» Çϳª ÀÌ»ó Ãß°¡ÇÑ ´ÙÀ½ [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  14. gatewaypdc ¼Ó¼º ÆäÀÌÁö¿¡¼­ [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  15. º¯°æ ³»¿ëÀ» Àû¿ëÇÏ·Á¸é °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  16. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start


¿ÍÀϵåÄ«µå ÀÎÁõ »ç¿ë

¿ÍÀϵåÄ«µå ÀÎÁõ¿¡¼­´Â ¿ÏÀüÇÑ Á¤±Ô DNS È£½ºÆ® À̸§¿¡ ¿ÍÀϵåÄ«µå ¹®ÀÚ°¡ ÀÖ´Â ´ÜÀÏ ÀÎÁõÀ» ¼ö¶ôÇÕ´Ï´Ù.

±×·¯¸é °°Àº µµ¸ÞÀο¡¼­ ¿©·¯ È£½ºÆ®¿¡°Ô ÀÎÁõÀ» Çã¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¾î, *.domain.com¿¡ ´ëÇÑ ÀÎÁõÀ» abc.domain.com ¹× abc1.domain.com¿¡ »ç¿ëÇÒ ¼ö ÀÖ½À´Ï´Ù. »ç½Ç ÀÌ ÀÎÁõÀº domain.com µµ¸ÞÀο¡ ÀÖ´Â ¸ðµç È£½ºÆ®¿¡ À¯È¿ÇÕ´Ï´Ù.

¿ÏÀüÇÑ Á¤±Ô È£½ºÆ® À̸§¿¡ *¸¦ ÁöÁ¤ÇØ¾ß ÇÕ´Ï´Ù. ¿¹¸¦ µé¾î, ¿ÏÀüÇÑ Á¤±Ô È£½ºÆ® À̸§ÀÌ abc.florizon.comÀÎ °æ¿ì ÀÌ À̸§À» *.florizon.comÀ¸·Î ÁöÁ¤ÇϽʽÿÀ. ÀÌÁ¦ »ý¼ºµÈ ÀÎÁõ¼­°¡ florizon.com µµ¸ÞÀο¡ ÀÖ´Â ¸ðµç È£½ºÆ® À̸§¿¡ À¯È¿ÇÕ´Ï´Ù.


ºê¶ó¿ìÀú ij½Ì »ç¿ë ÇØÁ¦

°ÔÀÌÆ®¿þÀÌ ±¸¼º ¿ä¼Ò´Â À¥ ºê¶ó¿ìÀú¸¦ »ç¿ëÇÏ¿© ¾î´À À§Ä¡¿¡¼­µç ¹é¿£µå ±â¾÷ µ¥ÀÌÅÍ¿¡ ¾ÈÀüÇÏ°Ô ¾×¼¼½ºÇϹǷΠŬ¶óÀÌ¾ðÆ®¿¡ ÀÇÇØ Á¤º¸°¡ ·ÎÄ÷Πij½ÌµÇÁö ¾Ê¾Æ¾ß ÇÕ´Ï´Ù.

ƯÁ¤ °ÔÀÌÆ®¿þÀÌÀÇ platform.conf ÆÄÀÏ¿¡ ÀÖ´Â ¼Ó¼ºÀ» ¼öÁ¤ÇÏ¿© °ÔÀÌÆ®¿þÀ̸¦ ÅëÇØ ¸®µð·º¼ÇµÈ ÆäÀÌÁöÀÇ Ä³½ÌÀ» »ç¿ë ÇØÁ¦ÇÒ ¼ö ÀÖ½À´Ï´Ù.

ÀÌ ¿É¼ÇÀ» »ç¿ë ÇØÁ¦ÇÏ¸é °ÔÀÌÆ®¿þÀÌ ¼º´É¿¡ ¿µÇâÀÌ ÀÖÀ» ¼ö ÀÖ½À´Ï´Ù. Æ÷ÅÐ µ¥½ºÅ©Å¾À» »õ·Î °íÄ¥ ¶§¸¶´Ù °ÔÀÌÆ®¿þÀÌ´Â ºê¶ó¿ìÀú¿¡¼­ ÀÌÀü¿¡ ij½ÌÇÑ À̹ÌÁö¿Í °°ÀÌ ÆäÀÌÁö¿¡¼­ ÂüÁ¶µÇ´Â ¸ðµç Ç׸ñÀ» °Ë»öÇØ¾ß ÇÕ´Ï´Ù. ±×·¯³ª ÀÌ ±â´ÉÀ» »ç¿ë ¼³Á¤ÇÏ¸é ¿ø°Ý ¾×¼¼½º º¸¾È ÄÁÅÙÆ®°¡ Ŭ¶óÀÌ¾ðÆ® »çÀÌÆ®¿¡ ij½ÌµÈ DzÇÁ¸°Æ®¸¦ ³²±âÁö ¾Ê½À´Ï´Ù. ±â¾÷ ³×Æ®¿öÅ©°¡ ÀÎÅÍ³Ý Ä«Æä¿¡¼­ ¶Ç´Â ±â¾÷ IT Á¦¾î¸¦ ¹ÞÁö ¾Ê´Â À¯»çÇÑ ¿ø°Ý À§Ä¡¿¡¼­ ¾×¼¼½ºµÇ´Â °æ¿ì ÀÌ ÀÌÁ¡Àº ¼º´É»óÀÇ ºÒÀÌÀÍ º¸´Ù ÈξÀ Å®´Ï´Ù.

    ºê¶ó¿ìÀú ij½ÌÀ» »ç¿ë ÇØÁ¦ÇÏ·Á¸é
  1. ·çÆ®·Î ·Î±×ÀÎÇÏ¿© ÇÊ¿äÇÑ °ÔÀÌÆ®¿þÀÌ ÀνºÅϽºÀÇ platform.conf ÆÄÀÏÀ» ÆíÁýÇÕ´Ï´Ù.
  2. /etc/opt/SUNWps/platform.conf.gateway-profile-name

  3. ´ÙÀ½ ¶óÀÎÀ» ÆíÁýÇÕ´Ï´Ù.
  4. gateway.allow.client.caching=true

    ÀÌ °ªÀº ±âº»ÀûÀ¸·Î true·Î ¼³Á¤µÇ¾î ÀÖ½À´Ï´Ù. °ªÀ» false·Î º¯°æÇÏ¿© Ŭ¶óÀÌ¾ðÆ® ÂÊ¿¡¼­ ºê¶ó¿ìÀú ij½ÌÀ» »ç¿ë ÇØÁ¦ÇÕ´Ï´Ù.

  5. °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  6. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start


°ÔÀÌÆ®¿þÀÌ ¼­ºñ½º »ç¿ëÀÚ ÀÎÅÍÆäÀ̽º »ç¿ëÀÚ Á¤ÀÇ

ÀÌ ºÎºÐ¿¡¼­´Â ÆíÁýÇÒ ¼ö ÀÖ´Â ¿©·¯ ¼Ó¼º ÆÄÀÏ¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù. °ü¸® ÄܼÖÀÇ °ÔÀÌÆ®¿þÀÌ ¼­ºñ½º¿¡ ´ëÇÑ ·¹À̺í, ¿À·ù ¸Þ½ÃÁö ¶Ç´Â ·Î±× Á¤º¸ ¼ø¼­¸¦ ÆíÁýÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿©·¯ ·ÎÄÌ¿¡¼­ Á¦Ç°À» »ç¿ëÀÚ Á¤ÀÇÇϰíÀÚ ÇÒ ¶§ À¯¿ëÇÕ´Ï´Ù.

´ÙÀ½ ÆÄÀÏÀ» »ç¿ëÀÚ Á¤ÀÇÇÒ ¼ö ÀÖ½À´Ï´Ù.

portal-server-install-root/SUNWam/locale/srapGatewayAdminConsole.properties

portal-server-installl-dir/SUNWps/locale/srapGateway.properties

portal-server-install-root/SUNWps/web-src/WEB-INF/classes/srapgwadminmsg.properties


Âü°í

¿©·¯ ·ÎÄÌ ¼³Á¤ÀÌ ÀÖ´Â °æ¿ì ÀÌ ÆÄÀÏÀÇ °¢ º¹»çº»À» °¢°¢ locale µð·ºÅ丮¿¡ ÀúÀåÇØ¾ß ÇÕ´Ï´Ù.


srapGatewayAdminConsole.properties ÆÄÀÏ

°ü¸® ÄܼÖÀÇ °ÔÀÌÆ®¿þÀÌ ¼­ºñ½º¿¡ ³ªÅ¸³ª´Â Çʵå À̸§À» º¯°æÇÏ·Á¸é ÀÌ Çʵ带 ÆíÁýÇÕ´Ï´Ù.

srapGateway.properties File

ÀÌ ÆÄÀÏÀº ´ÙÀ½°ú °°Àº °æ¿ì ÆíÁýÇÕ´Ï´Ù.

srapgwadminmsg.properties ÆÄÀÏ

ÀÌ ÆÄÀÏÀº ´ÙÀ½°ú °°Àº °æ¿ì ÆíÁýÇÕ´Ï´Ù.


¿¬ÇÕ °ü¸® »ç¿ë

¿¬ÇÕ °ü¸®¸¦ »ç¿ëÇÏ¸é »ç¿ëÀÚ°¡ ÇϳªÀÇ ³×Æ®¿öÅ© ¾ÆÀ̵𸦠°¡Áú ¼ö ÀÖµµ·Ï ·ÎÄà ¾ÆÀ̵𸦠Áý°èÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¬ÇÕ °ü¸®¿¡¼­´Â ³×Æ®¿öÅ© ¾ÆÀ̵𸦠»ç¿ëÇÏ¿© »ç¿ëÀÚ°¡ ÇÑ ¼­ºñ½º °ø±ÞÀÚÀÇ »çÀÌÆ®¿¡ ·Î±×ÀÎÇÒ °æ¿ì ¾ÆÀ̵𸦠ÀçÀÎÁõ ¹ÞÁö ¾Ê°íµµ ´Ù¸¥ ¼­ºñ½º °ø±ÞÀÚÀÇ »çÀÌÆ®¿¡ ¾×¼¼½ºÇÒ ¼ö ÀÖµµ·Ï ÇØÁÝ´Ï´Ù. À̸¦ ´ÜÀÏ »çÀοÂÀ̶ó ÇÕ´Ï´Ù.

¿¬ÇÕ °ü¸®´Â Portal Server¿¡¼­ °³¹æ ¸ðµå ¹× º¸¾È ¸ðµå·Î ±¸¼ºÇÒ ¼ö ÀÖ½À´Ï´Ù. Sun ONE Portal Server Administrator’s Guide¿¡¼­´Â °³¹æ ¸ðµå·Î ¿¬ÇÕ °ü¸®¸¦ ±¸¼ºÇÏ´Â ¹æ¹ý¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù. ¿¬ÇÕ °ü¸®¸¦ º¸¾È ¿ø°Ý ¾×¼¼½º¸¦ »ç¿ëÇÏ¿© º¸¾È ¸ðµå¿¡¼­ ±¸¼ºÇÏ·Á¸é °³¹æ ¸ðµå¿¡¼­ ¿Ã¹Ù·Î ÀÛµ¿ÇÏ´ÂÁö È®ÀÎÇØ¾ß ÇÕ´Ï´Ù. »ç¿ëÀÚ°¡ °°Àº ºê¶ó¿ìÀú¿¡¼­ °³¹æ ¸ðµå¿Í º¸¾È ¸ðµå ¸ðµÎ¿¡¼­ ¿¬ÇÕ °ü¸®¸¦ »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ÇÏ·Á¸é Äí۸¦ Áö¿ì°í ºê¶ó¿ìÀú·ÎºÎÅÍ Ä³½ÌÇØ¾ß ÇÕ´Ï´Ù.

¿¬ÇÕ °ü¸®¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº Sun ONE Identity Server Customization and API Guide¸¦ ÂüÁ¶ÇϽʽÿÀ.

¿¬ÇÕ °ü¸® ½Ã³ª¸®¿À

»ç¿ëÀÚ°¡ ÃÖÃÊ ¼­ºñ½º °ø±ÞÀÚ¿¡°Ô ÀÎÁõÀ» ¹Þ½À´Ï´Ù. ¼­ºñ½º °ø±ÞÀÚ´Â À¥ ±â¹Ý ¼­ºñ½º¸¦ Á¦°øÇÏ´Â »ó¾÷Àû Á¶Á÷À̰ųª ºñ¿µ¸® Á¶Á÷À» ¸»ÇÕ´Ï´Ù. ÀÌ·¸°Ô ³ÐÀº ¹üÁÖ¿¡´Â ÀÎÅÍ³Ý Æ÷ÅÐ, ´ë¸®Á¡, ¿î¼Û °ø±ÞÀÚ, ±ÝÀ¶ ±â°ü, ¿£ÅÍÅ×ÀÎ¸ÕÆ® ȸ»ç, µµ¼­°ü, ´ëÇÐ ¹× Á¤ºÎ ±â°üÀÌ ¸ðµÎ Æ÷Ç﵃ ¼ö ÀÖ½À´Ï´Ù.

¼­ºñ½º °ø±ÞÀÚ´Â Äí۸¦ »ç¿ëÇÏ¿© Ŭ¶óÀÌ¾ðÆ® ºê¶ó¿ìÀú¿¡ »ç¿ëÀÚÀÇ ¼¼¼Ç Á¤º¸¸¦ ÀúÀåÇÕ´Ï´Ù. ÄíŰ¿¡µµ »ç¿ëÀÚÀÇ Identity °ø±ÞÀÚ°¡ Æ÷Ç﵃ ¼ö ÀÖ½À´Ï´Ù.

Identity °ø±ÞÀÚ´Â ÀÎÁõ ¼­ºñ½º¸¦ Àü¹®ÀûÀ¸·Î Á¦°øÇÏ´Â ¼­ºñ½º °ø±ÞÀÚ¸¦ ¸»ÇÕ´Ï´Ù. ÀÎÁõÀ» À§ÇÑ °ü¸® ¼­ºñ½º·Î Identity °ø±ÞÀÚ´Â ¾ÆÀ̵ð Á¤º¸¸¦ À¯Áö °ü¸®Çϱ⵵ ÇÕ´Ï´Ù. Identity °ø±ÞÀÚ¿¡ ÀÇÇØ Çã°¡µÈ ÀÎÁõÀº Á¦ÈÞ °ü°è¿¡ ÀÖ´Â ¸ðµç ¼­ºñ½º °ø±ÞÀÚ¿¡°Ô À¯È¿ÇÕ´Ï´Ù.

»ç¿ëÀÚ°¡ Identity °ø±ÞÀÚ¿Í Á¦ÈÞµÇÁö ¾ÊÀº ¼­ºñ½º¿¡ ¾×¼¼½ºÇÏ·Á°í Çϸé Identity °ø±ÞÀÚ´Â Äí۸¦ ºñÁ¦ÈÞ ¼­ºñ½º °ø±ÞÀÚ¿¡°Ô Àü´ÞÇÕ´Ï´Ù. ±×¸®°í ³ª¸é ÀÌ ¼­ºñ½º °ø±ÞÀÚ°¡ ÄíŰ¿¡ ¸í¸íµÈ Identity °ø±ÞÀÚ¿¡°Ô ¾×¼¼½ºÇÒ ¼ö ÀÖ½À´Ï´Ù.

±×·¯³ª ÄíŰ´Â ¿©·¯ DAN µµ¸ÞÀο¡¼­ ÀÐÀ» ¼ö ¾ø±â ¶§¹®¿¡ ¼­ºñ½º °ø±ÞÀÚ¸¦ ¿Ã¹Ù¸¥ Identity °ø±ÞÀÚ¿¡°Ô ¸®µð·º¼ÇÇÏ¿© »ç¿ëÀÚ¿¡°Ô ´ÜÀÏ »çÀοÂÀÌ °¡´ÉÇϵµ·Ï °ø¿ë µµ¸ÞÀÎ ÄíŰ ¼­ºñ½º¸¦ »ç¿ëÇÕ´Ï´Ù.

¿¬ÇÕ °ü¸® ¸®¼Ò½º ±¸¼º

¿¬ÇÕ ¸®¼Ò½º, ¼­ºñ½º °ø±ÞÀÚ, Identity °ø±ÞÀÚ, Identity °ø±ÞÀÚ ¹× °ø¿ë µµ¸ÞÀÎ ÄíŰ ¼­ºñ½º(CDCS)´Â »óÁÖÇØ ÀÖ´Â À§Ä¡¸¦ ±âÁØÀ¸·Î °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ¿¡ ±¸¼ºÇÕ´Ï´Ù. ÀÌ ºÎºÐ¿¡¼­´Â 3°¡Áö ½Ã³ª¸®¿À¸¦ ±¸¼ºÇÏ´Â ¹æ¹ý¿¡ ´ëÇØ ¼³¸íÇÕ´Ï´Ù.

  1. ¸ðµç ¸®¼Ò½º°¡ ±â¾÷ ÀÎÆ®¶ó³Ý ¾È¿¡ ÀÖ´Â °æ¿ì.
  2. ¸ðµç ¸®¼Ò½º°¡ ±â¾÷ ÀÎÆ®¶ó³Ý¿¡ ÀÖÁö ¾Ê°Å³ª Identity °ø±ÞÀÚ°¡ ÀÎÅͳݿ¡ »óÁÖÇÏ´Â °æ¿ì.
  3. ¸ðµç ¸®¼Ò½º°¡ ±â¾÷ ÀÎÆ®¶ó³Ý¿¡ ÀÖÁö ¾Ê°Å³ª ¼­ºñ½º °ø±ÞÀÚ´Â ÀÎÅͳݿ¡ »óÁÖÇϴ Ÿ»çÀ̰í Identity °ø±ÞÀÚ´Â °ÔÀÌÆ®¿þÀÌ¿¡¼­ º¸È£µÇ´Â °æ¿ì.

±¸¼º 1

ÀÌ ±¸¼º¿¡¼­´Â ¼­ºñ½º °ø±ÞÀÚ, Identity °ø±ÞÀÚ ¹× °ø¿ë µµ¸ÞÀÎ ÄíŰ ¼­ºñ½º°¡ °°Àº ±â¾÷ ÀÎÆ®¶ó³Ý¿¡ ¹èÄ¡µÇ°í Identity °ø±ÞÀÚ´Â ÀÎÅÍ³Ý DNS(Domain Name Server)¿¡ °Ô½ÃµÇÁö ¾Ê½À´Ï´Ù. CDCS´Â ¼±Åà »çÇ×ÀÔ´Ï´Ù.

ÀÌ ±¸¼º¿¡¼­´Â °ÔÀÌÆ®¿þÀ̰¡ Portal Server°¡ µÇ´Â ¼­ºñ½º °ø±ÞÀÚ¸¦ ÁöÁ¤ÇÕ´Ï´Ù. ÀÌ ±¸¼ºÀº Portal ServerÀÇ ´ÙÁß ÀνºÅϽº¿¡ À¯È¿ÇÕ´Ï´Ù.

  1. Identity Server °ü¸® Äֿܼ¡ °ü¸®ÀÚ·Î ·Î±×ÀÎÇÕ´Ï´Ù.
  2. °ü¸® Äֿܼ¡¼­ [¼­ºñ½º ±¸¼º] ÅÇÀ» ¼±ÅÃÇÕ´Ï´Ù.
  3. SRA ±¸¼º ¾Æ·¡¿¡¼­ °ÔÀÌÆ®¿þÀÌ ¿·¿¡ ÀÖ´Â È­»ìÇ¥¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  4. °ÔÀÌÆ®¿þÀÌ ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  5. ¼Ó¼ºÀ» ¼³Á¤ÇÒ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ¿·ÀÇ [ÆíÁý...]À» Ŭ¸¯ÇÕ´Ï´Ù.
  6. °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ÆíÁý ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  7. [ÄÚ¾î] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  8. [ÄíŰ °ü¸® »ç¿ë] È®ÀζõÀ» ¼±ÅÃÇϰí ÄíŰ °ü¸®ÀÇ »ç¿ëÀ» ¼³Á¤ÇÕ´Ï´Ù.
  9. [Portal Server ¸ñ·Ï] Çʵå·Î ½ºÅ©·ÑÇϰí Portal Server À̸§À» ÀÔ·ÂÇÏ¿© ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·Ï¿¡ ³ª¿­µÈ /amserver or /portal/dt¿Í °°Àº °ü·Ã URLÀ» »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ÇÕ´Ï´Ù. ¿¹:
  10. http://idp-host:port/amserver/js

    http://idp-host:port/amserver/UI/Login

    http://idp-host:port/amserver/css

    http://idp-host:port/amserver/SingleSignOnService

    http://idp-host:port/amserver/UI/blank

    http://idp-host:port/amserver/postLogin

    http://idp-host:port/amserver/login_images

  11. [Portal Server ¸ñ·Ï] Çʵå·Î ½ºÅ©·ÑÇÏ¿© Portal Server À̸§À» ÀÔ·ÂÇÕ´Ï´Ù. ¿¹¸¦ µé¾î /amserver¸¦ ÀÔ·ÂÇÕ´Ï´Ù.
  12. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  13. [º¸¾È] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  14. ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·ÏÀ¸·Î ½ºÅ©·ÑÇÏ¿© ¿¬ÇÕ ¸®¼Ò½º¸¦ Ãß°¡ÇÕ´Ï´Ù. ¿¹:
  15. /amserver/config/federation

    /amserver/IntersiteTransferService

    /amserver/AssertionConsumerservice

    /amserver/fed_images

    /amserver/preLogin

    /portal/dt

  16. [Ãß°¡]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  17. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  18. À¥ ÇÁ¶ô½Ã¿¡¼­ ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·Ï¿¡ ³ª¿­µÈ URL¿¡ Á¢¼ÓÀÌ ÇÊ¿äÇϸé [ÇÁ¶ô½Ã] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  19. [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] Çʵå·Î ½ºÅ©·ÑÇÏ¿© ÇÊ¿äÇÑ À¥ ÇÁ¶ô½Ã¸¦ ÀÔ·ÂÇÕ´Ï´Ù.
  20. [Ãß°¡]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  21. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  22. ´Ü¸»±â â¿¡¼­ °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  23. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start

±¸¼º 2

ÀÌ ±¸¼º¿¡¼­´Â Identity °ø±ÞÀÚ, Identity °ø±ÞÀÚ ¹× °ø¿ë µµ¸ÞÀÎ ÄíŰ °ø±ÞÀÚ(CDCP)°¡ °°Àº ±â¾÷ ÀÎÆ®¶ó³Ý¿¡ ¹èÄ¡µÇÁö ¾Ê¾Ò°Å³ª Identity °ø±ÞÀÚ°¡ ÀÎÅͳݿ¡ »óÁÖÇϴ Ÿ»ç °ø±ÞÀÚÀÔ´Ï´Ù.

ÀÌ ±¸¼º¿¡¼­´Â °ÔÀÌÆ®¿þÀ̰¡ Portal Server°¡ µÇ´Â ¼­ºñ½º °ø±ÞÀÚ¸¦ ÁöÁ¤ÇÕ´Ï´Ù. ÀÌ ±¸¼ºÀº Portal ServerÀÇ ´ÙÁß ÀνºÅϽº¿¡ À¯È¿ÇÕ´Ï´Ù.

  1. Identity Server °ü¸® Äֿܼ¡ °ü¸®ÀÚ·Î ·Î±×ÀÎÇÕ´Ï´Ù.
  2. °ü¸® Äֿܼ¡¼­ [¼­ºñ½º ±¸¼º] ÅÇÀ» ¼±ÅÃÇÕ´Ï´Ù.
  3. SRA ±¸¼º ¾Æ·¡¿¡¼­ °ÔÀÌÆ®¿þÀÌ ¿·¿¡ ÀÖ´Â È­»ìÇ¥¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  4. °ÔÀÌÆ®¿þÀÌ ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  5. ¼Ó¼ºÀ» ¼³Á¤ÇÒ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ¿·ÀÇ [ÆíÁý...]À» Ŭ¸¯ÇÕ´Ï´Ù.
  6. °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ÆíÁý ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  7. [ÄÚ¾î] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  8. [ÄíŰ °ü¸® »ç¿ë] È®ÀζõÀ» ¼±ÅÃÇϰí ÄíŰ °ü¸®ÀÇ »ç¿ëÀ» ¼³Á¤ÇÕ´Ï´Ù.
  9. [Portal Server ¸ñ·Ï] Çʵå·Î ½ºÅ©·ÑÇÏ°í ¼­ºñ½º °ø±ÞÀÚ Portal Server À̸§À» ÀÔ·ÂÇÏ¿© ºñÀÎÁõ URL ¸ñ·Ï¿¡ ³ª¿­µÈ /amserver or /portal/dt¿Í °°Àº °ü·Ã URLÀ» »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ÇÕ´Ï´Ù.
  10. http://idp-host:port/amserver/js

    http://idp-host:port/amserver/UI/Login

    http://idp-host:port/amserver/css

    http://idp-host:port/amserver/SingleSignOnService

    http://idp-host:port/amserver/UI/blank

    http://idp-host:port/amserver/postLogin

    http://idp-host:port/amserver/login_images

  11. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  12. [º¸¾È] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  13. ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·ÏÀ¸·Î ½ºÅ©·ÑÇÏ¿© ¿¬ÇÕ ¸®¼Ò½º¸¦ Ãß°¡ÇÕ´Ï´Ù. ¿¹:
  14. /amserver/config/federation

    /amserver/IntersiteTransferService

    /amserver/AssertionConsumerservice

    /amserver/fed_images

    /amserver/preLogin

    /portal/dt

  15. [Ãß°¡]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  16. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  17. À¥ ÇÁ¶ô½Ã¿¡¼­ ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·Ï¿¡ ³ª¿­µÈ URL¿¡ Á¢¼ÓÀÌ ÇÊ¿äÇϸé [ÇÁ¶ô½Ã] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  18. [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] Çʵå·Î ½ºÅ©·ÑÇÏ¿© ÇÊ¿äÇÑ À¥ ÇÁ¶ô½Ã¸¦ ÀÔ·ÂÇÕ´Ï´Ù.
  19. [Ãß°¡]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  20. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  21. ´Ü¸»±â â¿¡¼­ °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  22. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start

±¸¼º 3

ÀÌ ±¸¼º¿¡¼­´Â Identity °ø±ÞÀÚ, Identity °ø±ÞÀÚ ¹× °ø¿ë µµ¸ÞÀÎ ÄíŰ °ø±ÞÀÚ(CDCP)°¡ °°Àº ±â¾÷ ÀÎÆ®¶ó³Ý¿¡ ¹èÄ¡µÇÁö ¾Ê¾Ò°Å³ª ¼­ºñ½º °ø±ÞÀÚ°¡ ÀÎÅͳݿ¡ »óÁÖÇϴ Ÿ»çÀ̰í Identity °ø±ÞÀÚ´Â °ÔÀÌÆ®¿þÀÌ¿¡ ÀÇÇØ º¸È£µË´Ï´Ù.

ÀÌ ±¸¼º¿¡¼­´Â °ÔÀÌÆ®¿þÀ̰¡ Portal Server°¡ µÇ´Â Identity °ø±ÞÀÚ¸¦ ÁöÁ¤ÇÕ´Ï´Ù.

ÀÌ ±¸¼ºÀº Portal ServerÀÇ ´ÙÁß ÀνºÅϽº¿¡ À¯È¿ÇÕ´Ï´Ù. ÀÌ ±¸¼ºÀº ÀÎÅͳݿ¡¼­´Â ±¸ÇöµÇ´Â °æ¿ì°¡ °ÅÀÇ ¾øÁö¸¸ ¾î¶² ±â¾÷ ³×Æ®¿öÅ©¿¡´Â ÀÎÆ®¶ó³Ý¿¡ ÀÌ·¯ÇÑ ±¸¼ºÀÌ ÀÖÀ» ¼ö ÀÖ½À´Ï´Ù. Áï, Identity °ø±ÞÀÚ´Â ¹æÈ­º®À¸·Î º¸È£µÇ´Â ¼­ºê ³×Æ®¿¡ ÀÖ°í ¼­ºñ½º °ø±ÞÀÚ´Â ±â¾÷ ³×Æ®¿öÅ© ³»¿¡¼­ Á÷Á¢ ¾×¼¼½º °¡´ÉÇÑ °æ¿ì¸¦ ¸»ÇÕ´Ï´Ù.

  1. Identity Server °ü¸® Äֿܼ¡ °ü¸®ÀÚ·Î ·Î±×ÀÎÇÕ´Ï´Ù.
  2. °ü¸® Äֿܼ¡¼­ [¼­ºñ½º ±¸¼º] ÅÇÀ» ¼±ÅÃÇÕ´Ï´Ù.
  3. SRA ±¸¼º ¾Æ·¡¿¡¼­ °ÔÀÌÆ®¿þÀÌ ¿·¿¡ ÀÖ´Â È­»ìÇ¥¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  4. °ÔÀÌÆ®¿þÀÌ ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  5. ¼Ó¼ºÀ» ¼³Á¤ÇÒ °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ¿·ÀÇ [ÆíÁý...]À» Ŭ¸¯ÇÕ´Ï´Ù.
  6. °ÔÀÌÆ®¿þÀÌ ÇÁ·ÎÇÊ ÆíÁý ÆäÀÌÁö°¡ Ç¥½ÃµË´Ï´Ù.

  7. [ÄÚ¾î] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  8. [ÄíŰ °ü¸® »ç¿ë] È®ÀζõÀ» ¼±ÅÃÇϰí ÄíŰ °ü¸®ÀÇ »ç¿ëÀ» ¼³Á¤ÇÕ´Ï´Ù.
  9. [Portal Server ¸ñ·Ï] Çʵå·Î ½ºÅ©·ÑÇϰí Identity °ø±ÞÀÚ Portal Server À̸§À» ÀÔ·ÂÇÏ¿© ºñÀÎÁõ URL ¸ñ·Ï¿¡ ³ª¿­µÈ /amserver or /portal/dt¿Í °°Àº °ü·Ã URLÀ» »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ÇÕ´Ï´Ù.
  10. http://idp-host:port/amserver/js

    http://idp-host:port/amserver/UI/Login

    http://idp-host:port/amserver/css

    http://idp-host:port/amserver/SingleSignOnService

    http://idp-host:port/amserver/UI/blank

    http://idp-host:port/amserver/postLogin

    http://idp-host:port/amserver/login_images

  11. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  12. [º¸¾È] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  13. ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·ÏÀ¸·Î ½ºÅ©·ÑÇÏ¿© ¿¬ÇÕ ¸®¼Ò½º¸¦ Ãß°¡ÇÕ´Ï´Ù. ¿¹:
  14. /amserver/config/federation

    /amserver/IntersiteTransferService

    /amserver/AssertionConsumerservice

    /amserver/fed_images

    /amserver/preLogin

    /portal/dt

  15. [Ãß°¡]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  16. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  17. À¥ ÇÁ¶ô½Ã¿¡¼­ ÀÎÁõµÇÁö ¾ÊÀº URL ¸ñ·Ï¿¡ ³ª¿­µÈ URL¿¡ Á¢¼ÓÀÌ ÇÊ¿äÇϸé [ÇÁ¶ô½Ã] ÅÇÀ» Ŭ¸¯ÇÕ´Ï´Ù.
  18. [µµ¸ÞÀÎ ¹× ºÎ¼Ó µµ¸ÞÀÎÀÇ ÇÁ¶ô½Ã] Çʵå·Î ½ºÅ©·ÑÇÏ¿© ÇÊ¿äÇÑ À¥ ÇÁ¶ô½Ã¸¦ ÀÔ·ÂÇÕ´Ï´Ù.
  19. [Ãß°¡]¸¦ Ŭ¸¯ÇÕ´Ï´Ù.
  20. [ÀúÀå]À» Ŭ¸¯ÇÕ´Ï´Ù.
  21. ´Ü¸»±â â¿¡¼­ °ÔÀÌÆ®¿þÀ̸¦ ´Ù½Ã ½ÃÀÛÇÕ´Ï´Ù.
  22. gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start



ÀÌÀü      ¸ñÂ÷      »öÀÎ      ´ÙÀ½     


Copyright 2003 Sun Microsystems, Inc. ¸ðµç ±Ç¸®´Â ÀúÀÛ±ÇÀÚÀÇ ¼ÒÀ¯ÀÔ´Ï´Ù.