Browse > Article
http://dx.doi.org/10.33778/kcsa.2021.21.3.025

Enhancement of a Secure Remote Working Environment using CloudHSM and edge-DRM Proxy  

Kim, Hyunwoo (상명대학교 정보보안공학과)
Lee, Junhyeok (상명대학교 정보보안공학과)
Park, Wonhyung (상명대학교 정보보안공학과)
Publication Information
Abstract
Due to the current COVID-19 pandemic, companies and institutions are introducing virtual desktop technology, one of the logical network separation technologies, to establish a safe working environment in a situation where remote work is provided. With the introduction of virtual desktop technology, companies and institutions can operate the network separation environment more safely and effectively, and can access the business network quickly and safely to increase work efficiency and productivity. However, when introducing virtual desktop technology, there is a cost problem of high-spec server, storage, and license, and it is necessary to supplement in terms of operation and management. As a countermeasure to this, companies and institutions are shifting to cloud computing-based technology, virtual desktop service (DaaS, Desktop as a Service). However, in the virtual desktop service, which is a cloud computing-based technology, the shared responsibility model is responsible for user access control and data security. In this paper, based on the shared responsibility model in the virtual desktop service environment, we propose a cloud-based hardware security module (Cloud HSM) and edge-DRM proxy as an improvement method for user access control and data security.
Keywords
Daas(Desktop as s Service); CloudHSM; edge-DRM proxy; Remote Work;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 공동 책임 모델, https://aws.amazon.com/ko/compliance/shared-responsibility-model/, AWS, 2021.
2 AWS 클라우드상의 관리형 하드웨어 보안 모듈(HSM), https://aws.amazon.com/ko/cloudhsm/, AWS, 2021.
3 박장수. "내부정보유출 방지를 위한 통합 모니터링에 관한 연구." 국내박사학위논문 순천향대학교, 2017. pp.1-49.
4 THALES. "2021 data threat report apac edition a4 ko." 2021. pp.5-8.
5 이상현. "클라우드 환경에서의 사용자 인증 방안에 관한 연구" 국내석사학위논문 숭실대학교 정보과학대학원. 2016. pp.1-37.
6 K-ICT 클라우드혁신센터, 2020년 5월 7일 수정, 2021년 8월 24일 접속, https://www.cloud.or.kr/software/market-case/?pageid=8&mod=document&uid=550.
7 Cisco. "Future fo Secure Remote work Report". 2020. pp. 5.
8 조원용, "차세대 방화벽을 이용한 안전한 원격근무 환경 구성", Cyber security Conference 2021 pp.6.
9 정종길, 업무 환경 디지털 전환, 안정성.보안 갖춘 VDI가 적격, https://www.comworld.co.kr/news/article-View.html?idxno=49903, 컴퓨터월드, 2020.7.
10 한컴-아마존 '클라우드PC' 연합군 뜬다[한국경제] 기사, https://www.hankyung.com/it/article/2021033096581, 2021.3.
11 재택 근무 보안 방안, 안랩의 해답은?, https://blog.naver.com/softinfoblog/222262011172, 안랩, 2021.3.
12 서비스형 데스크탑(DaaS)이란?, https://www.critix.com/ko-kr/glossary/what-is-desktop-as-a-service-dass.html, 시트릭스, 2020.
13 Cloud HSM 아키텍처, https://cloud.google.com/security/cloud-hsm-architecture, AWS, 2021.6.
14 이혜주, 허창수, 서창호, 신상욱. "DRM 클라우드 서비스를 위한 DRM Proxy 설계 및 구현 ". 정보처리학회논문지. v.2 no.12. 2013. pp. 553 - 560.   DOI
15 AWS 및 온프레미스에서 AWS 리소스 및 애플리케이션의 관찰 기능, https://aws.amazon.com/ko/cloudwatch/, AWS, 2021.
16 한현희, "원격 근무 환경에서의 계정 보안 강화", Cyber security Conference 2021 pp.7-18.