시작하기무료로 시작하기

Rank the private half by who holds a copy

The internal admin service on admin.example.internal goes live this week. The name resolves only inside the VPC, so no public authority can validate it and the certificate is being issued from your own AWS Private CA. That much is settled.

What is not settled is the private half. The service needs a TLS private key for the certificate and an SSH private key for the maintenance host, and five proposals for where those keys will sit are on the table.

A certificate is public and you can hand it to anyone. A private key is not, and the only question worth asking about one is how many copies exist that you cannot count or take back.

이 연습은 강의의 일부입니다

Using AWS Security for Developers

강의 보기

실습형 인터랙티브 연습문제

이론을 실습으로 바꾸는 인터랙티브 연습 중 하나를 만나보세요

연습 시작