Ãë¾àÁ¡ID |
14103 |
À§Çèµµ |
40 |
Æ÷Æ® |
22 |
ÇÁ·ÎÅäÄÝ |
TCP |
ºÐ·ù |
LSC |
»ó¼¼¼³¸í |
ħÀÔÀÚ¿¡ ÀÇÇÑ Æнº¿öµå *¹«ÀÛÀ§ ´ëÀÔ °ø°Ý(Brute Force Attack)À̳ª Æнº¿öµå ÃßÃø °ø°Ý(Password Guessing) ¹ß»ý ½Ã ¾ÏÈ£ÀÔ·Â ½ÇÆРȽ¼ö¸¦ ÀûÁ¤ÇÏ°Ô Á¦ÇÑÇÔÀ¸·Î½á ÀÚµ¿°ø°ÝÀ» Â÷´ÜÇÏ°í °ø°Ý ½Ã°£À» Áöü½ÃÄÑ Æнº¿öµå À¯Ãâ À§ÇèÀ» ÁÙÀÏ ¼ö ÀÖ´Ù.
* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû: UNIX, Linux |
ÇØ°áÃ¥ |
´ÙÀ½°ú °°ÀÌ Á¶Ä¡ÇÏ¿© °èÁ¤Àá±Ý ÀÓ°è°ªÀ» ¼³Á¤ÇÑ´Ù.
*Solaris 1. vi ÆíÁý±â¸¦ ÀÌ¿ëÇÏ¿© "/etc/default/login" ÆÄÀÏÀ» ¿¬ ÈÄ 2. ¾Æ·¡¿Í °°ÀÌ ¼öÁ¤ ¶Ç´Â, ½Å±Ô »ðÀÔ (¼öÁ¤ Àü) #RETRIES=2 DISABLETIME=180 LOCK_AFTER_RETRIES=NO (¼öÁ¤ ÈÄ) RETRIES=5 DISABLETIME=1800 LOCK_AFTER_RETRIES=YES
*Linux 1. vi ÆíÁý±â¸¦ ÀÌ¿ëÇÏ¿© "/etc/pam.d/system-auth" ÆÄÀÏÀ» ¿¬ ÈÄ 2. ¾Æ·¡¿Í °°ÀÌ ¼öÁ¤ ¶Ç´Â, ½Å±Ô »ðÀÔ auth required /lib/security/pam_tally.so deny=4 unlock_time=1800 no_magic_root reset account required /lib/security/pam_tally.so no_magic_root reset
*AIX 1. vi ÆíÁý±â¸¦ ÀÌ¿ëÇÏ¿© "/etc/security/user" ÆÄÀÏÀ» ¿¬ ÈÄ 2. ¾Æ·¡¿Í °°ÀÌ ¼öÁ¤ ¶Ç´Â, ½Å±Ô »ðÀÔ (¼öÁ¤ Àü) loginretries = 0 (¼öÁ¤ ÈÄ) loginretries = 5
*HP Æ®·¯½ºÆ® ¸ðµå 1. vi ÆíÁý±â¸¦ ÀÌ¿ëÇÏ¿© "/tcb/files/auth/system/default" ÆÄÀÏÀ» ¿¬ ÈÄ 2. ¾Æ·¡¿Í °°ÀÌ ¼öÁ¤ ¶Ç´Â, ½Å±Ô »ðÀÔ (¼öÁ¤ Àü) u_maxtries# (¼öÁ¤ ÈÄ) u_maxtries#5
ÀϹݸðµå 1. vi ÆíÁý±â¸¦ ÀÌ¿ëÇÏ¿© "/etc/default/security" ÆÄÀÏÀ» ¿¬ ÈÄ 2. ¾Æ·¡¿Í °°ÀÌ ¼öÁ¤ ¶Ç´Â, ½Å±Ô »ðÀÔ (¼öÁ¤ Àü) AUTH_MAXTRIES=0 (¼öÁ¤ ÈÄ) AUTH_MAXTRIES=5 |
°ü·Ã URL |
(CVE) |
°ü·Ã URL |
(SecurityFocus) |
°ü·Ã URL |
(ISS) |
|