suvera-dev ๐Ÿฅฆ

AWS ๋ฐฐํฌ์ž๋™ํ™” ๊ตฌ์ถ• _ 5. Route53 / ELB ์—ฐ๊ฒฐ / HTTPS ๋ฆฌ๋‹ค์ด๋ ‰์…˜ ๋ณธ๋ฌธ

Infra/CI CD

AWS ๋ฐฐํฌ์ž๋™ํ™” ๊ตฌ์ถ• _ 5. Route53 / ELB ์—ฐ๊ฒฐ / HTTPS ๋ฆฌ๋‹ค์ด๋ ‰์…˜

suvera 2023. 7. 14. 13:08

ํ˜„์žฌ ์ธํ„ฐ๋„ท ๋ธŒ๋ผ์šฐ์ € ์š”์ฒญ์„ LB๊ฐ€ ๋ฐ›์•„ EC2์— ์š”์ฒญ์„ ๋ณด๋‚ด๊ณ  ์žˆ๋Š” ๊ตฌ์กฐ๋กœ ๋˜์–ด์žˆ๋‹ค. 

์ด๋ฒˆ์—๋Š” ๋„๋ฉ”์ธ์„ ๋ฐœ๊ธ‰ ๋ฐ›๊ณ  AWS์˜ Route53์— ๋“ฑ๋กํ•œ๋’ค, ELB์™€ ์—ฐ๊ฒฐํ•ด์„œ ๋„๋ฉ”์ธ์œผ๋กœ ์ ‘์†ํ•  ๊ฒƒ์ด๋‹ค.

 

 

 

1. ๋„๋ฉ”์ธ ๋ฐœ๊ธ‰ ์‚ฌ์ดํŠธ 

https://www.freenom.com/en/index.html?lang=en 

 

Freenom - A Name for Everyone

Sorry, is not available. IMPORTANT NOTICE: Because of technical issues the Freenom application for new registrations is temporarily out-of-order. Please accept our apologies for the inconvenience. We are working on a solution and hope to resume operations

www.freenom.com

์—ฌ๊ธฐ์„œ ๋ฌด๋ฃŒ ๋„๋ฉ”์ธ์„ ๋ฐœ๊ธ‰ ๋ฐ›์„ ์ˆ˜ ์žˆ๋‹ค. ๋‚˜๋Š” ์‚ฌ์ดํŠธ๊ฐ€ ์ž˜ ์•ˆ๋˜์–ด์„œ ๋‹ค๋ฅธ ์œ ๋ฃŒ ์‚ฌ์ดํŠธ๋ฅผ ์ด์šฉํ–ˆ๋‹ค ( ๊ฐ€์žฅ ์‹ผ 500์›์งœ๋ฆฌ.. )

 

์›น์„ ๋„˜์–ด ํด๋ผ์šฐ๋“œ๋กœ. ๊ฐ€๋น„์•„

๊ทธ๋ฃน์›จ์–ด๋ถ€ํ„ฐ ๋ฉ€ํ‹ฐํด๋ผ์šฐ๋“œ๊นŒ์ง€ ํ•˜๋‚˜์˜ ํด๋ผ์šฐ๋“œ ํ—ˆ๋ธŒ

www.gabia.com

์›ํ•˜๋Š” ๋„๋ฉ”์ธ ์ด๋ฆ„์„ ์ ๊ณ , ๋„๋ฉ”์ธ์„ ๋ฐœ๊ธ‰ ๋ฐ›์œผ๋ฉด ๋œ๋‹ค !

 

2. ๋ฐœ๊ธ‰ ๋ฐ›์€ ๋„๋ฉ”์ธ์„ Route53 ์— ๋“ฑ๋ก

๋Œ€์‹œ๋ณด๋“œ์—์„œ ํ˜ธ์ŠคํŒ… ์˜์—ญ ์ƒ์„ฑ์„ ๋ˆ„๋ฅธ๋‹ค.

 

๋ฐœ๊ธ‰๋ฐ›์€ ๋„๋ฉ”์ธ์„ ์ž…๋ ฅํ•˜๊ณ , ํผ๋ธ”๋ฆญ ํ˜ธ์ŠคํŒ… ์˜์—ญ์„ ์„ ํƒํ•œ๋‹ค. 

 

๋„ค์ž„ ์„œ๋ฒ„๊ฐ€ ์ƒ์„ฑ์ด ๋˜์—ˆ๊ณ , ๋„๋ฉ”์ธ ์‚ฌ์ดํŠธ์— ์ ‘์†ํ•ด์„œ DNS ์„ค์ •์„ ๋ณ€๊ฒฝํ•ด์ค˜์•ผํ•œ๋‹ค. 

๊ฐ ์‚ฌ์ดํŠธ์— ๋ณด๋ฉด ๋„๋ฉ”์ธ ๊ด€๋ฆฌ ํŽ˜์ด์ง€์— ๋„ค์ž„์„œ๋ฒ„๋ฅผ ์„ค์ •ํ•˜๋Š” ๋ถ€๋ถ„์ด ์žˆ์„ ๊ฒƒ์ด๋‹ค 

์œ„์— Route53์ฝ˜์†”์—์„œ ๋„ค์ž„์„œ๋ฒ„ ns์œ ํ˜•์˜ ๋ผ์šฐํŒ… ๋Œ€์ƒ์„ ํ•˜๋‚˜์”ฉ ๋„ฃ์–ด์ค€๋‹ค !

์†Œ์œ ์ž ์ธ์ฆ ์™„๋ฃŒ ํ›„ ์ ์šฉํ•ด์ค€๋‹ค.  

๊ฐ ์„œ๋ฒ„๋งˆ๋‹ค ๊ณ ์œ ํ•œ IP ์ฃผ์†Œ๋ฅผ ๊ฐ–๊ณ  ์žˆ๋Š”๋ฐ, ๋„ค์ž„์„œ๋ฒ„๋Š” ์ด IP ์ฃผ์†Œ์™€ ๋„๋ฉ”์ธ์„ ์—ฐ๊ฒฐํ•ด์ฃผ๋Š” ์—ญํ• ์„ ํ•œ๋‹ค. 

DNS ๊ฐœ๋…์— ๋Œ€ํ•ด ์•„๋ž˜ ์„ค๋ช…์„ ์ถ”๊ฐ€ํ•ด๋‘์—ˆ๋‹ค !

 

[๋„คํŠธ์›Œํฌ/๊ธฐ๋ณธ] ๋„๋ฉ”์ธ๊ณผ DNS - ๋„ค์ž„์„œ๋ฒ„๋ž€? - ๊ฐœ๋…ํŽธ - ํ•˜๋‚˜๋ชฌ

โ—๏ธ๊ฒฐ๋ก  ๋„๋ฉ”์ธ์€ IP ์ฃผ์†Œ๋ฅผ ๋Œ€์‹ ํ•˜์—ฌ ์‚ฌ์šฉํ•˜๋Š” ์ฃผ์†Œ์ด๋‹ค. DNS๋ผ๋Š” ์‹œ์Šคํ…œ์„ ์ด์šฉํ•ด์„œ IP์™€ ๋„๋ฉ”์ธ์„ ๋งค์นญํ•œ๋‹ค. DNS๋ž€ ์›น์‚ฌ์ดํŠธ์˜ IP ์ฃผ์†Œ์™€ ๋„๋ฉ”์ธ ์ฃผ์†Œ๋ฅผ ์ด์–ด์ฃผ๋Š” ํ™˜๊ฒฝ/์‹œ์Šคํ…œ์ด๋‹ค. DNS ์‹œ์Šคํ…œ

hanamon.kr

 

DNS๋ž€ ๋ญ๊ณ , ๋„ค์ž„์„œ๋ฒ„๋ž€ ๋ญ”์ง€ ๊ฐœ๋…์ •๋ฆฌ | ์‚ด์‚ด์‚ด๋ฆผ

DNS๋ž€ ๊ฑด ๋ญ๊ณ , DNS ์„œ๋ฒ„๋ž€ ๊ฑด ๋ญ๊ณ , ๋„ค์ž„์„œ๋ฒ„๋ž€ ๊ฑด ๋ญ๊ณ  ์ด๋ฆ„๋ถ€ํ„ฐ ํ˜ผ๋ž€์Šค๋Ÿฌ์šด ๊ฐœ๋…. ์‚ฌ์šฉ์ž์˜ ์ž…์žฅ์—์„œ ์™œ DNS ์—ญํ• ์ด ํ•„์š”ํ•œ์ง€์™€ ์ถ”์ฒœํ•  ๋งŒํ•œ ๋ฌด๋ฃŒ ๋„ค์ž„์„œ๋ฒ„์— ๋Œ€ํ•ด์„œ ์•Œ.์•„.๋ณด.์ž.

gentlysallim.com

  • ๋„๋ฉ”์ธ์€ IP ์ฃผ์†Œ๋ฅผ ๋Œ€์‹ ํ•˜์—ฌ ์‚ฌ์šฉํ•˜๋Š” ์ฃผ์†Œ์ด๋‹ค.
  • DNS๋ผ๋Š” ์‹œ์Šคํ…œ์„ ์ด์šฉํ•ด์„œ IP์™€ ๋„๋ฉ”์ธ์„ ๋งค์นญํ•œ๋‹ค.
  • DNS๋ž€ ์›น์‚ฌ์ดํŠธ์˜ IP ์ฃผ์†Œ์™€ ๋„๋ฉ”์ธ ์ฃผ์†Œ๋ฅผ ์ด์–ด์ฃผ๋Š” ํ™˜๊ฒฝ/์‹œ์Šคํ…œ์ด๋‹ค.
  • DNS ์‹œ์Šคํ…œ ์•ˆ์—์„œ IP์™€ ๋„๋ฉ”์ธ ๋งค์นญ์„ ํ•˜๋Š” ์—ญํ• ์„ ํ•˜๋Š” ๊ฒƒ์ด DNS ์„œ๋ฒ„์ด๋‹ค.
  • DNS ์„œ๋ฒ„์™€ ๋„ค์ž„์„œ๋ฒ„๋Š” ๊ฐ™์€ ์˜๋ฏธ์ด๋‹ค.

 

 

3. ๋“ฑ๋กํ•œ ๋„๋ฉ”์ธ์— ELB ์—ฐ๊ฒฐ

- Route53 ์ฝ˜์†”์—์„œ ์ƒˆ๋กœ์šด ๋ ˆ์ฝ”๋“œ๋ฅผ ์ƒ์„ฑํ•ด์ค€๋‹ค.

- ์ด๋ฆ„ : www

- ์œ ํ˜• : A

- ๋ณ„์นญ true : Application/Classic Load Balancer์— ๋Œ€ํ•œ ๋ณ„์นญ => ALB ์—ฐ๊ฒฐ !

 

์ด์ œ ์ƒ์„ฑํ•ด์ฃผ๊ณ , www.hlicloudtest.shop ์œผ๋กœ ์ ‘์†ํ•ด๋ณด์ž. 

-> ๋” ์ด์ƒ ELB์˜ DNS ์ฃผ์†Œ๊ฐ€ ์•„๋‹Œ ๋„๋ฉ”์ธ์œผ๋กœ ์ ‘์†์ด ๊ฐ€๋Šฅํ•˜๋‹ค !

 

** ๋„๋ฉ”์ธ์„ ๋“ฑ๋กํ•˜๊ณ  ์ผ์ • ์‹œ๊ฐ„๋™์•ˆ ์ ‘์†์ด ์•ˆ๋  ์ˆ˜ ์žˆ๋‹ค. ์ „ ์„ธ๊ณ„ DNS ์„œ๋ฒ„์—์„œ ํ•ด๋‹น ๋„๋ฉ”์ธ์— ๋Œ€ํ•ด ์—…๋ฐ์ดํŠธ ํ•˜๋Š” ์‹œ๊ฐ„ ์†Œ์š”.

๋„๋ฉ”์ธ์œผ๋กœ ์ ‘์† ์™„๋ฃŒ !

 

 

 

4. HTTPS ๋ฆฌ๋‹ค์ด๋ ‰์…˜

ํ˜„์žฌ๋Š” ๋กœ๋“œ๋ฐธ๋Ÿฐ์„œ์˜ ๋ฆฌ์Šค๋„ˆ๋Š” HTTP:80 ํฌํŠธ์˜ ์ ‘๊ทผ๋งŒ ์ถ”๊ฐ€๋˜์–ด ์žˆ๋‹ค. 

๊ทธ๋ž˜์„œ HTTP ์ ‘๊ทผ๋งŒ ๊ฐ€๋Šฅํ•œ ์ƒํƒœ์ด๋‹ค. 

 

https ์ ‘๊ทผ์„ ํ–ˆ์„ ๋•Œ๋Š” ์œ„์™€ ๊ฐ™์ด ์ฐจ๋‹จ๋˜์–ด์žˆ๋Š” ์ƒํƒœ.

https ์ ‘๊ทผ์„ ์œ„ํ•ด์„œ๋Š” ์•„๋ž˜์˜ ๊ณผ์ •์ด ํ•„์š”ํ•˜๋‹ค.

 

1) AWS Certificate Manager ๋กœ SSL ์ธ์ฆ์„œ ๋ฐœ๊ธ‰

2) ๋กœ๋“œ๋ฐธ๋Ÿฐ์„œ ๋ฆฌ์Šค๋„ˆ ์ˆ˜์ • : http -> https ๋ฆฌ๋‹ค์ด๋ ‰์…˜

 

4-1. ACM - SSL ์ธ์ฆ์„œ ๋ฐœ๊ธ‰

ACM ์ฝ˜์†” - ์ธ์ฆ์„œ ์š”์ฒญ

 

๋„๋ฉ”์ธ ์ด๋ฆ„ ๋„ฃ๊ณ , DNS ๊ฒ€์ฆ -> ์š”์ฒญ

 

์ธ์ฆ์„œ ์ƒ์„ธ ํŽ˜์ด์ง€์— ๋“ค์–ด์™€์„œ Route53์—์„œ ๋ ˆ์ฝ”๋“œ ์ƒ์„ฑ ํด๋ฆญ

 

๋ ˆ์ฝ”๋“œ ์ƒ์„ฑํ•˜๊ธฐ !

 

์ธ์ฆ์„œ ๋ฐœ๊ธ‰ ์™„๋ฃŒ :__)

 

4-2. ELB ๋ฆฌ์Šค๋„ˆ์— HTTPS ์ถ”๊ฐ€

๋กœ๋“œ๋ฐธ๋Ÿฐ์„œ ์ƒ์„ธ์—์„œ ๋ฆฌ์Šค๋„ˆ ์ถ”๊ฐ€๋ฅผ ๋ˆŒ๋Ÿฌ์ค€๋‹ค !

 

HTTPS ์„ ํƒ - ๋Œ€์ƒ๊ทธ๋ฃน์œผ๋กœ ์ „๋‹ฌ - ๋Œ€์ƒ ๊ทธ๋ฃน ์„ ํƒ 

 

์•„๋ž˜ ๋ณด์•ˆ ๋ฆฌ์Šค๋„ˆ ์„ค์ •์—์„œ ์ƒ์„ฑํ•œ ์ธ์ฆ์„œ๋ฅผ ์„ ํƒํ•ด์ค€๋‹ค.

 

https๋กœ ์ ‘๊ทผ ์„ฑ๊ณต ! 

 

 

4-3. HTTP -> HTTPS ๋ฆฌ๋‹ค์ด๋ ‰์…˜

- http ์ ‘๊ทผ์ด ์•„์ง ๊ฐ€๋Šฅํ•˜๊ธฐ ๋•Œ๋ฌธ์—, ๋ณด์•ˆ์ƒ์˜ ์ด์Šˆ๋ฅผ ๊ณ ๋ คํ•˜์—ฌ http ํ˜ธ์ถœ์„ https๋กœ ๋ฆฌ๋‹ค์ด๋ ‰ํŠธ ํ•  ๊ฒƒ์ด๋‹ค.

- http ๋Š” ์•”ํ˜ธํ™”๊ฐ€ ๋˜์ง€ ์•Š๋Š” ํ‰๋ฌธ ๋ฐ์ดํ„ฐ๋ฅผ ์ „์†กํ•˜๋Š” ํ”„๋กœํ† ์ฝœ์ด๊ธฐ์— ๊ฐœ์ธ์ •๋ณด ์œ ์ถœ ๊ฐ€๋Šฅ์„ฑ์ด ์žˆ๋‹ค.

80 ํฌํŠธ๋ฅผ ํŽธ์ง‘ํ•ด์ฃผ์ž. - URL๋กœ ๋ฆฌ๋””๋ ‰์…˜

http๋กœ ์ ‘๊ทผํ•˜๊ฒŒ ๋  ๊ฒฝ์šฐ, ์•„๋ž˜์™€ ๊ฐ™์ด 301 ์‘๋‹ต์ฝ”๋“œ๋กœ ๋ฆฌ๋‹ค์ด๋ ‰ํŠธ ๋œ๋‹ค.

Comments