> For the complete documentation index, see [llms.txt](https://docs.plura.io/ko/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.plura.io/ko/fn/comm/mgmt/security.md).

# 보안

{% hint style="info" %}
**PLURA 보안 설정 안내**

클라우드 서비스는 계정 공격의 위험이 높기 때문에, PLURA는 강력한 보안 시스템을 제공하여 이러한 위협으로부터 사용자를 보호합니다.\
보안 설정은 **관리자 전용 메뉴**에서 가능합니다.

메뉴 이동: 관리 > 보안
{% endhint %}

<div align="center"><figure><img src="/files/nuv4jTjDlalojFnl2jzs" alt=""><figcaption></figcaption></figure></div>

### 1. 비밀번호 변경 <a href="#id-1" id="id-1"></a>

* **비밀번호 변경 시점**: 비밀번호 변경 안내가 표시되는 시점을 설정합니다.
* **다음 변경 시점**: "나중에 변경하기"를 선택한 경우, 다시 변경 안내가 표시될 시점을 설정합니다.

<figure><img src="https://qubitsec.github.io/docs/images/Manual/common/manage/security/8.png" alt="" width="563"><figcaption></figcaption></figure>

### 2. 인증 설정 <a href="#id-2" id="id-2"></a>

* **비밀번호 실패 횟수**: 비밀번호 입력 실패 횟수를 설정합니다.
* **실패 시 접속 제한**: 설정한 실패 횟수 초과 시 로그인 접속 제한 시간을 설정합니다.
  * 예) 5회 실패 시 5분간 접속 제한
  * 예) 10회 실패 시 영구적으로 접속 제한
* **접속 제한 해제**: 관리자가 접속 제한을 해제할 수 있습니다.

<figure><img src="https://qubitsec.github.io/docs/images/Manual/common/manage/security/2.png" alt="" width="563"><figcaption></figcaption></figure>

### 3. 세션 설정 <a href="#id-3" id="id-3"></a>

* **세션 유지 시간**: 로그인 후 세션이 유지되는 시간을 설정합니다.
  * 옵션: 10분, 30분, 1시간, 2시간, 24시간
  * 설정한 시간이 경과하면, 재로그인이 필요합니다.

<figure><img src="https://qubitsec.github.io/docs/images/Manual/common/manage/security/3.png" alt="" width="563"><figcaption></figcaption></figure>

### 4. 로그인 허용 IP 주소 <a href="#id-4" id="id-4"></a>

* **특정 IP 주소로 접속 제한**: 계정이 접속할 수 있는 IP 주소를 지정합니다.
  * [**공개 (Public) IP 주소 사용**](https://docs.plura.io/ko/faq/common/ipcheck)
* **GeoIP**를 사용하여 특정 국가의 접속을 제한할 수 있습니다.

<figure><img src="https://qubitsec.github.io/docs/images/Manual/common/manage/security/011.png" alt="" width="563"><figcaption></figcaption></figure>

* **IP 주소 추가**
  * 기본값: 현재 접속 중인 공개 IP 주소가 기본값으로 표시됩니다.
  * 기본값 변경 시 **"초기화"** 버튼을 사용합니다.
  * **주의**: 개별 IP 주소만 등록할 수 있으며, IP 범위 등록은 불가능합니다.
  * 이 설정은 ISMS 및 국가 정보 보안 지침을 준수합니다.

<figure><img src="/files/XuXUcbZ8gt1wtPHqf3DM" alt=""><figcaption></figcaption></figure>

### 5. 2차 인증: PIN 번호 <a href="#id-5" id="id-5"></a>

* **PIN 번호 설정**: 계정 로그인 시 추가로 입력해야 하는 6자리 PIN 번호를 설정합니다.
* **인증 실패 횟수 설정**: PIN 번호 인증 실패 시 로그인 제한 조건을 설정할 수 있습니다.
* **관리자 권한**
  * 멤버에게 PIN 번호 일괄 등록 가능
  * 모든 멤버에게 PIN 번호 일괄 적용
* **멤버 권한**
  * 각자 PIN 번호 변경 가능

<figure><img src="https://qubitsec.github.io/docs/images/Manual/common/manage/security/6.png" alt="" width="563"><figcaption></figcaption></figure>

### 6. 2차 인증: OTP 이메일 <a href="#id-6" id="id-6"></a>

* **OTP 인증 절차**
  * 이메일로 발송된 OTP 인증 번호를 확인하여 입력 후 로그인 진행
* **인증 실패 횟수 설정**: OTP 인증 실패 시 로그인 제한 조건을 설정할 수 있습니다.

<figure><img src="https://qubitsec.github.io/docs/images/Manual/common/manage/security/10.png" alt="" width="563"><figcaption></figcaption></figure>

* **OTP 이메일 예시**

<figure><img src="/files/1Xl0tP37agQM06YjsmEt" alt=""><figcaption></figcaption></figure>

<figure><img src="/files/IK8ZqgOaeeDDZJzepUrB" alt="" width="563"><figcaption></figcaption></figure>

### 7. 동영상 안내  <a href="#id-7" id="id-7"></a>

{% embed url="<https://youtu.be/NbaEKIuQqa0>" %}
<https://youtu.be/NbaEKIuQqa0>
{% endembed %}
