
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>Chaos and Order</title>
      <link>https://www.youngju.dev/blog</link>
      <description>천천히 올바르게. AI Researcher &amp; DevOps Engineer Youngju&#39;s blog. GPU/CUDA, LLM, MLOps, Kubernetes AI workloads, and data engineering — plus mindset essays on confidence, routines, health, and sport psychology.</description>
      <language>ko</language>
      <managingEditor>fjvbn2003@gmail.com (Youngju Kim)</managingEditor>
      <webMaster>fjvbn2003@gmail.com (Youngju Kim)</webMaster>
      <lastBuildDate>Sat, 15 Aug 2026 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://www.youngju.dev/tags/보안/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://www.youngju.dev/blog/architecture/2026-08-15-guide-auth-and-authorization.en</guid>
    <title>The Complete Guide to Authentication and Authorization: Ten Misconceptions, Corrected From the Specs</title>
    <link>https://www.youngju.dev/blog/architecture/2026-08-15-guide-auth-and-authorization.en</link>
    <description>OAuth 2.0 is an authorization framework; OIDC is the authentication layer on top of it. This guide corrects the flows that fell out of the recommendations, the illusion of JWT validation, and the real trade-offs of token storage — using the text of RFC 6749, 9700, 7636, 7519, 8725, OIDC Core, and the OWASP cheat sheets. If the existing OAuth deep dive was about how it works, this one is about where it goes wrong.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>인증</category><category>인가</category><category>oauth</category><category>oidc</category><category>jwt</category><category>보안</category><category>세션</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/architecture/2026-08-15-guide-auth-and-authorization.ja</guid>
    <title>認証と認可 完全ガイド: 仕様原文で正す10の誤解</title>
    <link>https://www.youngju.dev/blog/architecture/2026-08-15-guide-auth-and-authorization.ja</link>
    <description>OAuth 2.0 は認可フレームワークであり、その上に認証を載せるのが OIDC です。推奨から外れたフロー、JWT 検証をめぐる錯覚、トークン保存場所のトレードオフを、RFC 6749・9700・7636・7519・8725、OIDC Core、OWASP チートシートの原文で整理します。既存の OAuth 詳解が「どう動くか」なら、この記事は「どこで間違えるか」です。</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>인증</category><category>인가</category><category>oauth</category><category>oidc</category><category>jwt</category><category>보안</category><category>세션</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/architecture/2026-08-15-guide-auth-and-authorization</guid>
    <title>인증과 인가 완전 가이드: 스펙 원문으로 짚는 열 가지 오해</title>
    <link>https://www.youngju.dev/blog/architecture/2026-08-15-guide-auth-and-authorization</link>
    <description>OAuth 2.0은 인가 프레임워크이고 OIDC가 그 위에 인증을 얹습니다. 권장에서 빠진 플로우, JWT 검증에 대한 착각, 토큰 저장 위치의 교환 조건을 RFC 6749·9700·7636·7519·8725와 OIDC Core, OWASP 치트시트 원문으로 정리합니다. 기존 OAuth 심화 글이 &quot;어떻게 동작하는가&quot;였다면 이 글은 &quot;어디서 틀리는가&quot;입니다.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>인증</category><category>인가</category><category>oauth</category><category>oidc</category><category>jwt</category><category>보안</category><category>세션</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-firewall-and-access-control.en</guid>
    <title>A complete guide to Linux firewalls and access control: handling nftables, firewalld, and ufw without locking yourself out</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-firewall-and-access-control.en</link>
    <description>Starts from the structure of nftables and lays out what firewalld and ufw do on top of it. Covers the procedure that keeps you from locking yourself out while changing rules remotely, and the diagnostic order for when rules do not take effect.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>방화벽</category><category>nftables</category><category>firewalld</category><category>보안</category><category>네트워크</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-firewall-and-access-control.ja</guid>
    <title>Linuxファイアウォールとアクセス制御完全ガイド: nftables、firewalld、ufwを締め出されずに扱う</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-firewall-and-access-control.ja</link>
    <description>nftablesの構造から出発し、firewalldとufwがその上で何をしているのかを整理します。リモートでルールを変更する際に自分自身を締め出さない手順と、ルールが適用されないときの診断順序を扱います。</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>방화벽</category><category>nftables</category><category>firewalld</category><category>보안</category><category>네트워크</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-firewall-and-access-control</guid>
    <title>리눅스 방화벽과 접근 제어 완전 가이드: nftables, firewalld, ufw를 잠기지 않고 다루기</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-firewall-and-access-control</link>
    <description>nftables의 구조에서 출발해 firewalld와 ufw가 그 위에서 무엇을 하는지 정리합니다. 원격에서 규칙을 바꾸다 스스로 잠기지 않는 절차와 규칙이 적용되지 않을 때의 진단 순서를 다룹니다.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>방화벽</category><category>nftables</category><category>firewalld</category><category>보안</category><category>네트워크</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-ssh.en</guid>
    <title>The complete guide to SSH operations: from key management to hardening a server without locking yourself out</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-ssh.en</link>
    <description>sshd_config hardening, choosing and distributing key types, ProxyJump and port forwarding, and the layered order to debug a connection that will not come up, organised from an operator viewpoint. Includes the procedure that keeps you from locking yourself out while changing configuration.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>ssh</category><category>보안</category><category>운영</category><category>서버관리</category><category>네트워크</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-ssh.ja</guid>
    <title>SSH運用完全ガイド: 鍵の管理からロックアウト事故のないサーバーハードニングまで</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-ssh.ja</link>
    <description>sshd_config のハードニング、鍵の種類の選択と配布、ProxyJump とポートフォワーディング、接続できないときのデバッグ順序までを運用者の視点で整理します。設定を変更している最中に自分自身をロックアウトしないための手順も含みます。</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>ssh</category><category>보안</category><category>운영</category><category>서버관리</category><category>네트워크</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-ssh</guid>
    <title>SSH 운영 완전 가이드: 키 관리부터 잠금 사고 없는 서버 하드닝까지</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-ssh</link>
    <description>sshd_config 하드닝, 키 종류 선택과 배포, ProxyJump와 포트 포워딩, 접속이 안 될 때의 디버깅 순서까지 운영자 관점에서 정리합니다. 설정을 바꾸다 스스로 잠기지 않는 절차를 포함합니다.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>ssh</category><category>보안</category><category>운영</category><category>서버관리</category><category>네트워크</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-tls-certificates.en</guid>
    <title>The Complete Guide to TLS Certificates: Handling Them End to End with openssl</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-tls-certificates.en</link>
    <description>A purpose-by-purpose reference of the openssl commands for reading certificates, creating CSRs, verifying chains, converting formats, and diagnosing server connections. Also covers how to identify expiry, a missing chain, and a key mismatch in the field.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>tls</category><category>인증서</category><category>openssl</category><category>보안</category><category>운영</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-tls-certificates.ja</guid>
    <title>TLS証明書完全ガイド: opensslコマンドで最後まで扱う</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-tls-certificates.ja</link>
    <description>証明書を読み、CSRを作り、チェーンを検証し、形式を変換し、サーバー接続を診断するopensslコマンドを目的別に整理します。有効期限切れとチェーン欠落、鍵の不一致を現場で判別する方法まで扱います。</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>tls</category><category>인증서</category><category>openssl</category><category>보안</category><category>운영</category>
  </item>

  <item>
    <guid>https://www.youngju.dev/blog/linux/2026-08-15-guide-tls-certificates</guid>
    <title>TLS 인증서 완전 가이드: openssl 명령으로 끝까지 다루기</title>
    <link>https://www.youngju.dev/blog/linux/2026-08-15-guide-tls-certificates</link>
    <description>인증서를 읽고, CSR을 만들고, 체인을 검증하고, 형식을 변환하고, 서버 연결을 진단하는 openssl 명령을 목적별로 정리합니다. 만료와 체인 누락, 키 불일치를 현장에서 판별하는 방법까지 다룹니다.</description>
    <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
    <author>fjvbn2003@gmail.com (Youngju Kim)</author>
    <category>리눅스</category><category>tls</category><category>인증서</category><category>openssl</category><category>보안</category><category>운영</category>
  </item>

    </channel>
  </rss>
