[CS๐Ÿ“–] HTTP์™€ HTTPS์˜ ์ฐจ์ด

๊น€๋‹ค์Šฌยท2021๋…„ 8์›” 3์ผ
1

Introduction

์›น์˜ ๋™์ž‘ ์›๋ฆฌ๋ฅผ ๋ฐฐ์šฐ๋˜ ์ค‘ http์™€ https์˜ ์ฐจ์ด์— ๋Œ€ํ•ด ๊ถ๊ธˆํ•ด์กŒ๋‹ค.
๊ฐ„๋‹จํžˆ ๋งํ•˜์ž๋ฉด https๊ฐ€ http์— ๋น„ํ•ด ๋ณด์•ˆ์ด ์šฐ์ˆ˜ํ•˜๋‹ค๋Š” ์žฅ์ ์ด ์žˆ๋Š”๋ฐ,
๊ทธ ๊ณผ์ •์„ ํ™•์‹คํžˆ ์ตํžˆ๊ณ  ๋„˜์–ด๊ฐ€๊ณ ์ž ํฌ์ŠคํŒ…์„ ์ž‘์„ฑํ•ด๋ณด์ž!

HTTPS๋ž€ ๋ฌด์—‡์ธ๊ฐ€?

HTTPS(HyperText Transfer Protocol Secure)

  • HTTP์˜ ๋ณด์•ˆ ์ฒ˜๋ฆฌ๊ฐ€ ๋œ ๋ฒ„์ „
  • TCP ์œ„์— SSL/TLS ์ธต์„ ์ถ”๊ฐ€ํ•˜์—ฌ ์•”ํ˜ธํ™”, ์ธ์ฆ ๊ทธ๋ฆฌ๊ณ  ๋ฌด๊ฒฐ์„ฑ ๋ณด์žฅ์„ ํ†ตํ•ด ๋” ์•ˆ์ „ํ•˜๊ฒŒ ๋งŒ๋“ค์–ด ์ฃผ๋Š” ํ”„๋กœํ† ์ฝœ

๊ฒ€์ƒ‰ํ•˜๋˜ ์ค‘ ์ง๊ด€์ ์ธ ์ดํ•ด๊ฐ€ ๊ฐ€๋Šฅํ•œ ์ด๋ฏธ์ง€๋ฅผ ๋ฐœ๊ฒฌํ•˜์˜€๋‹ค.

์ •๋ฆฌํ•˜์ž๋ฉด, https๋Š” http์— SSL/TLS๊ฐ€ ์ถ”๊ฐ€๋œ ํ”„๋กœ์ฝœ์ด๋ผ ๋งํ•  ์ˆ˜ ์žˆ๋‹ค.

SSL/TLS๋ž€ ๋ฌด์—‡์ธ๊ฐ€?

SSL๊ณผ TLS๋Š” ์ด๋ฆ„๋งŒ ๋‹ค๋ฅผ ๋ฟ ๊ฑฐ์˜ ๋™์ผํ•œ ํ”„๋กœํ† ์ฝœ์ด๋ผ ๋ด๋„ ๋ฌด๊ด€ํ•˜๋‹ค.

SSL(Secure Socket Layer)/TLS

  • ์›น์„œ๋ฒ„์™€ ์›น๋ธŒ๋ผ์šฐ์ €๊ฐ„์˜ ์•”ํ˜ธํ™” ํ†ต์‹ ์„ ์œ„ํ•ด ์‘์šฉ๊ณ„์ธต๊ณผ TCP/IP ๊ณ„์ธต์—์„œ ๋™์ž‘ํ•˜๋Š” ํ”„๋กœํ† ์ฝœ
  • ์ธ์ฆ, ์•”ํ˜ธํ™”, ๋ฌด๊ฒฐ์„ฑ, ์ง€์› ํ”„๋กœํ† ์ฝœ์˜ ๊ธฐ๋Šฅ์„ ๊ฐ€์ง

๊ฒฐ๊ตญ SSL์˜ ํ•ต์‹ฌ์€ ์•”ํ˜ธํ™”์ด๋‹ค!

SSL์˜ ์•”ํ˜ธํ™” ๋ฐฉ์‹์€?

๋Œ€์นญํ‚ค ์•”ํ˜ธํ™” ๋ฐฉ์‹

  • ์•”ํ˜ธํ™”๋ฅผ ํ•˜๋Š” ํ‚ค์™€ ๋ณตํ˜ธํ™”๋ฅผ ํ•˜๋Š” ํ‚ค๊ฐ€ ๋™์ผํ•œ ๋ฐฉ์‹
  • ๋Œ€์นญํ‚ค๋ฅผ ์ƒ๋Œ€์—๊ฒŒ ์ „๋‹ฌํ•˜๋Š” ๊ณผ์ •์—์„œ ํ•ดํ‚น์˜ ๋ฆฌ์Šคํฌ ์กด์žฌ

๋น„๋Œ€์นญํ‚ค ์•”ํ˜ธํ™” ๋ฐฉ์‹

  • ๋Œ€์นญํ‚ค ์•”ํ˜ธํ™” ๋ฐฉ์‹์˜ ๋ฌธ์ œ๋ฅผ ํ•ด๊ฒฐํ•˜๊ณ ์ž ๋‚˜์˜จ ๋ฐฉ์‹
  • ๊ณต๊ฐœํ‚ค์™€ ๊ฐœ์ธํ‚ค 2๊ฐœ์˜ ํ‚ค๊ฐ€ ์Œ์œผ๋กœ ์กด์žฌํ•˜๋ฉฐ ๊ฐ๊ฐ ์•”ํ˜ธํ™”, ๋ณตํ˜ธํ™”๋ฅผ ์ˆ˜ํ–‰
  • ๊ณต๊ฐœํ‚ค๋กœ ์•”ํ˜ธํ™”ํ•˜๋Š” ๊ฒฝ์šฐ, ๊ฐœ์ธํ‚ค๋Š” ๋‚˜๋งŒ ๊ฐ€์ง€๊ณ  ์žˆ์œผ๋ฏ€๋กœ ๋‚˜๋งŒ ๋ณผ ์ˆ˜ ์žˆ๋‹ค๋Š” ์žฅ์  ์กด์žฌ
  • ๊ฐœ์ธํ‚ค๋กœ ์•”ํ˜ธํ™”ํ•˜๋Š” ๊ฒฝ์šฐ, ๋‚ด๊ฐ€ ์ธ์ฆํ•œ ์ •๋ณด์ž„์„ ์•Œ๋ ค ์‹ ๋ขฐ์„ฑ ๋ณด์žฅ ๊ฐ€๋Šฅ
  • ํ•œ ์Œ์˜ ํ‚ค๋กœ ์•”ํ˜ธํ™”, ๋ณตํ˜ธํ™”ํ•˜๋Š” ๋ฐฉ์‹ => RSA ์•Œ๊ณ ๋ฆฌ์ฆ˜

๋Œ€์นญํ‚ค์™€ ๋น„๋Œ€์นญํ‚ค ๋ฐฉ์‹์„ ํ•จ๊ป˜ ์‚ฌ์šฉํ•˜๋Š” ์ด์œ ๋Š”?

  • ๋น„๋Œ€์นญํ‚ค ์•”ํ˜ธํ™” ๋ฐฉ์‹์˜ ๊ฒฝ์šฐ ๋ณต์žกํ•œ ์ˆ˜ํ•™์  ์›๋ฆฌ๋กœ ์ด๋ฃจ์–ด์ ธ์žˆ์–ด,
    CPU ๋ฆฌ์†Œ์Šค๋ฅผ ํฌ๊ฒŒ ์†Œ๋ชจํ•œ๋‹ค๋Š” ๋‹จ์  ์กด์žฌ!

HTTP์™€ HTTPS

๊ฒฐ๋ก ์ ์œผ๋กœ, HTTPS๋Š” HTTP๋ณด๋‹ค ๋ณด์•ˆ์ƒ์˜ ์šฐ์œ„๋ฅผ ์ ํ•˜๊ณ  ์žˆ๋‹ค.
์˜ค์ง ์ •๋ณด ์ „๋‹ฌ๋งŒ์„ ์œ„ํ•œ ์›น์‚ฌ์ดํŠธ๋ผ๋ฉด HTTP๋ฅผ ์ด์šฉํ•ด๋„ ๋˜์ง€๋งŒ, HTTP๋ฅผ ์ด์šฉํ•  ์‹œ ๊ฒ€์ƒ‰ ์—”์ง„ ์ตœ์ ํ™”(SEO)์˜ ํ˜œํƒ์„ ๋ฐ›์ง€ ๋ชปํ•œ๋‹ค.
๋™์ผํ•œ ํ‚ค์›Œ๋“œ์˜ ์‚ฌ์ดํŠธ๊ฐ€ ์žˆ๋‹ค๊ณ  ํ•  ๋•Œ, ์‚ฌ์šฉ์ž๊ฐ€ ํ‚ค์›Œ๋“œ ๊ฒ€์ƒ‰ ์‹œ ์ƒ์œ„ ๋…ธ์ถœ ๊ธฐ์ค€ ์ค‘ ํ•˜๋‚˜๊ฐ€ ๋ณด์•ˆ ์š”์†Œ์ด๊ธฐ ๋•Œ๋ฌธ์— HTTPS ์‚ฌ์ดํŠธ๊ฐ€ ์šฐ์„  ๊ฒ€์ƒ‰ ๋œ๋‹ค.

Comment

์ •๋ณด์ฒ˜๋ฆฌ๊ธฐ์‚ฌ ์‹œํ—˜ ์ค€๋น„๋ฅผ ํ•˜๋ฉด์„œ SSL/TLS, ๋Œ€์นญํ‚ค์™€ ๋น„๋Œ€์นญํ‚ค ์•”ํ˜ธํ™” ๋ฐฉ์‹์— ๋Œ€ํ•ด ํ•œ๋ฒˆ ๊ณต๋ถ€ํ•œ ์ ์€ ์žˆ์ง€๋งŒ, ์ด๋ ‡๊ฒŒ ๊นŠ๊ฒŒ ์ดํ•ดํ•˜์ง„ ๋ชปํ–ˆ์—ˆ๋‹ค.
ํฌ์ŠคํŒ…์„ ํ•˜๋ฉฐ ์•”ํ˜ธํ™” ๋ฐฉ์‹์€ ๋ฌผ๋ก  http์™€ https์— ๋Œ€ํ•ด ํ™•์‹คํžˆ ์ตํžˆ๋Š” ์‹œ๊ฐ„์ด ๋˜์—ˆ๋‹ค.

์ฐธ๊ณ  ์‚ฌ์ดํŠธ

https์˜ ๋™์ž‘ ์›๋ฆฌ
https://mysterico.tistory.com/30
SSL์ด๋ž€?
https://devdic.tistory.com/20
SSL ์•”ํ˜ธํ™” ๋ฐฉ์‹
https://babbab2.tistory.com/4
http์™€ https์˜ ์ฐจ์ด
https://post.naver.com/viewer/postView.nhn?volumeNo=16561296&memberNo=1834

profile
์ธ์ƒ์€ ์šฉ๊ธฐ์˜ ์–‘์— ๋”ฐ๋ผ ์ค„์–ด๋“ค๊ฑฐ๋‚˜, ๋Š˜์–ด๋‚œ๋‹ค

0๊ฐœ์˜ ๋Œ“๊ธ€