Skip to main content

๋‚ด๋ถ€ ์‚ฌ์šฉ์ž ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •

ํ•™์Šต ๋ชฉํ‘œ

์ด ๋ชจ๋“ˆ์„ ์™„๋ฃŒํ•˜๋ฉด ๋‹ค์Œ์„ ์ˆ˜ํ–‰ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

  • ์—ฐํ•ฉ ID๋ฅผ ๋งŒ๋“ค ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
  • ํƒ€์‚ฌ ID ๊ณต๊ธ‰์—…์ฒด์˜ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
  • SAML ์š”์ฒญ ๋ฌธ์ œ๋ฅผ ํ•ด๊ฒฐํ•˜๋Š” ๋„๊ตฌ๋ฅผ ์ˆ™์ง€ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
์ฐธ๊ณ 

์ฐธ๊ณ 

ํ•œ๊ตญ์–ด๋กœ ํ•™์Šตํ•˜์‹œ๊ฒ ์–ด์š”? Trailhead playground์—์„œ ํ•œ๊ตญ์–ด๋กœ ์‹ค์Šต ๊ณผ์ œ๋ฅผ ์‹œ์ž‘ํ•˜๊ณ , ๊ด„ํ˜ธ ์•ˆ์— ์ œ๊ณต๋œ ๋ฒˆ์—ญ์„ ์‚ฌ์šฉํ•ด ํƒ์ƒ‰ํ•ด ๋ณด์„ธ์š”. ์˜์–ด ๋ฐ์ดํ„ฐ๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ์‹ค์Šต ๊ณผ์ œ ๊ฒ€์ฆ์ด ์ด๋ฃจ์–ด์ง€๋ฏ€๋กœ ์˜๋ฌธ์œผ๋กœ ํ‘œ์‹œ๋œ ๊ฐ’๋งŒ ๋ณต์‚ฌํ•ด ๋ถ™์—ฌ ๋„ฃ์Šต๋‹ˆ๋‹ค. ํ•œ๊ตญ์–ด ์กฐ์ง์—์„œ ์‹ค์Šต ๊ณผ์ œ๋ฅผ ํ†ต๊ณผํ•˜์ง€ ๋ชปํ•œ ๊ฒฝ์šฐ, (1) ๋กœ์บ˜์„ ๋ฏธ๊ตญ์„ ๋ฐ”๊พธ๊ณ  (2) ์—ฌ๊ธฐ์— ์ œ์‹œ๋œ ์ง€์นจ์— ๋”ฐ๋ผ ์–ธ์–ด๋ฅผ ์˜์–ด๋กœ ๋ฐ”๊พผ ํ›„ (3) "Check Challenge(๊ณผ์ œ ํ™•์ธ)" ๋ฒ„ํŠผ์„ ๋ˆŒ๋Ÿฌ ๋‹ค์‹œ ์ง„ํ–‰ํ•ด ๋ณด์„ธ์š”.

์›ํ•˜๋Š” ์–ธ์–ด๋กœ Trailhead ์‚ฌ์šฉํ•˜๊ธฐ ๋ฑƒ์ง€๋ฅผ ํ™•์ธํ•ด ํ˜„์ง€ํ™”๋œ Trailhead ๊ฒฝํ—˜์„ ํ™œ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์— ๋Œ€ํ•ด ์ž์„ธํžˆ ์•Œ์•„๋ณด์„ธ์š”.

์‹ฑ๊ธ€์‚ฌ์ธ์˜จ

๋‚ด ๋„๋ฉ”์ธ ๋กœ๊ทธ์ธ URL์„ ์‚ฌ์šฉํ•˜๋ฉด ์ง์›๋“ค์ด ์•ˆ์ „ํ•˜๊ณ  ๊ธฐ์–ตํ•˜๊ธฐ ์‰ฌ์šด URL์„ ์‚ฌ์šฉํ•˜์—ฌ Salesforce org์— ํŽธ๋ฆฌํ•˜๊ฒŒ ๋กœ๊ทธ์ธํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.ย 

๋”์šฑ ํŽธ๋ฆฌํ•˜๊ฒŒ ์ง์›๋“ค์ด ์ „ํ˜€ ๋กœ๊ทธ์ธํ•  ํ•„์š”๊ฐ€ ์—†๋„๋ก ํ•˜๊ณ  ์‹ถ์œผ์„ธ์š”? ๊ทธ๋ ‡๋‹ค๋ฉด Single Sign-On(์‹ฑ๊ธ€์‚ฌ์ธ์˜จ)์„ ์„ค์ •ํ•˜์„ธ์š”.

์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์€ ์—ฌ๋Ÿฌ ๊ฐ€์ง€ ์žฅ์ ์ด ์žˆ์Šต๋‹ˆ๋‹ค.

  • ๋น„๋ฐ€๋ฒˆํ˜ธ๋ฅผ ๊ด€๋ฆฌํ•˜๋Š” ๋ฐ ๋ณด๋‚ด๋Š” ์‹œ๊ฐ„์ด ์ค„์–ด๋“ญ๋‹ˆ๋‹ค.
  • ์ง์›๋“ค์ด Salesforce์— ์ˆ˜๋™์œผ๋กœ ๋กœ๊ทธ์ธํ•˜์ง€ ์•Š์•„๋„ ๋˜๋ฉด ์‹œ๊ฐ„์ด ์ ˆ์•ฝ๋ฉ๋‹ˆ๋‹ค. ์‚ฌ์šฉ์ž๊ฐ€ ์˜จ๋ผ์ธ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์— ๋กœ๊ทธ์ธํ•˜๋Š” ๋ฐ 5-20์ดˆ๊ฐ€ ๊ฑธ๋ฆฐ๋‹ค๋Š” ์‚ฌ์‹ค์„ ์•Œ๊ณ  ๊ณ„์…จ๋‚˜์š”? ์ด ์งง์€ ์‹œ๊ฐ„์„ ๋ชจ๋‘ ๋”ํ•˜๋ฉด ๊ฝค ๋งŽ์•„์ง‘๋‹ˆ๋‹ค.
  • ๋” ๋งŽ์€ ์‚ฌ๋žŒ๋“ค์ด Salesforce๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. ์‚ฌ์šฉ์ž๋Š” Salesforce ๋ ˆ์ฝ”๋“œ ๋ฐ ๋ณด๊ณ ์„œ๋กœ ์—ฐ๊ฒฐ๋˜๋Š” ๋งํฌ๋ฅผ ๋ณด๋‚ผ ์ˆ˜ ์žˆ๊ณ , ์ˆ˜์‹ ์ž๋Š” ํด๋ฆญ ํ•œ ๋ฒˆ์œผ๋กœ ๋ ˆ์ฝ”๋“œ์™€ ๋ณด๊ณ ์„œ๋ฅผ ์—ด ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
  • ์ค‘์š”ํ•œ ์ •๋ณด์— ๋Œ€ํ•œ ์•ก์„ธ์Šค๋ฅผ ํ•œ ๊ณณ์—์„œ ๊ด€๋ฆฌํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์ด ์œ ๋‹›์—์„œ๋Š” ์‚ฌ์šฉ์ž๊ฐ€ ๋‹ค๋ฅธ ์œ„์น˜(์˜จํ”„๋ ˆ๋ฏธ์Šค ์•ฑ ๋“ฑ)์—์„œ ๋กœ๊ทธ์ธํ•œ ํ›„ Salesforce์— ๋กœ๊ทธ์ธํ•˜์ง€ ์•Š๊ณ  ์•ก์„ธ์Šคํ•˜๋Š” ์ธ๋ฐ”์šด๋“œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•˜๋Š” ๋ฐฉ๋ฒ•์— ๋Œ€ํ•ด ์„ค๋ช…ํ•ฉ๋‹ˆ๋‹ค. ์‚ฌ์šฉ์ž๊ฐ€ Salesforce์— ๋กœ๊ทธ์ธํ•œ ํ›„ ๋‹ค์‹œ ๋กœ๊ทธ์ธํ•˜์ง€ ์•Š๊ณ  ๋‹ค๋ฅธ ์„œ๋น„์Šค์— ์•ก์„ธ์Šคํ•˜๋Š” ์•„์›ƒ๋ฐ”์šด๋“œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ๋„ ์„ค์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

MFA ๊ณ ๋ คํ•˜๊ธฐ

์ฒซ ๋ฒˆ์งธ ์œ ๋‹›์—์„œ ๋‹ค๋ฃฌ MFA ์š”๊ตฌ ์‚ฌํ•ญ์„ ๊ธฐ์–ตํ•˜์‹œ๋‚˜์š”? ๋งž์Šต๋‹ˆ๋‹ค. ์ด ์š”๊ตฌ ์‚ฌํ•ญ์€ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์‚ฌ์šฉ์ž์—๊ฒŒ๋„ ์ ์šฉ๋ฉ๋‹ˆ๋‹ค. ์ง์›์ด ์˜จํ”„๋ ˆ๋ฏธ์Šค ์•ฑ์ด๋‚˜ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ID ๊ณต๊ธ‰์ž๋ฅผ ํ†ตํ•ด Salesforce์— ์•ก์„ธ์Šคํ•˜๋Š” ๊ฒฝ์šฐ์—๋„ ๋จผ์ € MFA๋ฅผ ์™„๋ฃŒํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

์—ฌ๊ธฐ์—์„œ๋Š” ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์‚ฌ์šฉ์ž์—๊ฒŒ MFA๋ฅผ ์ ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์„ ๋‹ค๋ฃจ์ง€ ์•Š์•„๋„ ์‰ฝ๊ฒŒ ์ ์šฉํ•˜๋Š” ๋ฐฉ๋ฒ•์ด ์žˆ์œผ๋‹ˆ ๊ฑฑ์ •ํ•˜์ง€ ๋งˆ์„ธ์š”. Salesforce์— ํฌํ•จ๋œ MFA ์„œ๋น„์Šค๋ฅผ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •์— ์‚ฌ์šฉํ•˜๋ ค๋ฉด Salesforce ๋„์›€๋ง์—์„œ Salesforce MFA๋ฅผ SSO์— ์‚ฌ์šฉ์„ ํ™•์ธํ•˜์„ธ์š”. ๋˜๋Š” ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ๊ณต๊ธ‰์ž์—์„œ MFA ์„œ๋น„์Šค๋ฅผ ์ œ๊ณตํ•˜๋Š” ๊ฒฝ์šฐ ์‚ฌ์šฉ์ž๊ฐ€ Salesforce์— ์•ก์„ธ์Šคํ•  ๋•Œ ๋Œ€์‹  ๊ณต๊ธ‰์ž์— ๋กœ๊ทธ์ธํ•  ๊ฒฝ์šฐ MFA๋ฅผ ์š”๊ตฌํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

ํƒ€์‚ฌ ID ๊ณต๊ธ‰์ž๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์ธ๋ฐ”์šด๋“œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ๊ตฌ์„ฑ

ํƒ€์‚ฌ ID ๊ณต๊ธ‰์ž๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์ธ๋ฐ”์šด๋“œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ๊ตฌ์„ฑํ•˜๋Š” ์ž‘์—…์„ ์‹œ์ž‘ํ•ด ๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.

Salesforce ์‚ฌ์šฉ์ž๊ฐ€ ์ž์‹ ์˜ Jedeye ๋„คํŠธ์›Œํฌ ์ž๊ฒฉ ์ฆ๋ช…์„ ์‚ฌ์šฉํ•˜์—ฌ Salesforce org์— ๋กœ๊ทธ์ธํ•  ์ˆ˜ ์žˆ๊ฒŒ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•˜๋ผ๊ณ  IT ๋ถ€์„œ์žฅ์ธ Sean Sollo๊ฐ€ ์ง€์‹œํ•ฉ๋‹ˆ๋‹ค. ์—ฌ๊ธฐ์„œ๋Š” Jedeye Tech์˜ ์‹ ์ž… ์‚ฌ์›์ธ Sia Thripio๋ฅผ ์œ„ํ•ด ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•˜๋Š” ์ ˆ์ฐจ๋ฅผ ๋‹จ๊ณ„๋ณ„๋กœ ์„ค๋ช…ํ•ฉ๋‹ˆ๋‹ค. Axiom Heroku ์›น ์•ฑ์„ ID ๊ณต๊ธ‰์ž๋กœ ์‚ฌ์šฉํ•˜์—ฌ ์ธ๋ฐ”์šด๋“œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค.

์–ด๋ ต๊ฒŒ ๋“ค๋ฆฌ๊ธฐ ์‹œ์ž‘ํ•˜๋‚˜์š”? ์ •๋ง ์–ด๋ ต์ง€ ์•Š์Šต๋‹ˆ๋‹ค. ๊ฐ„๋‹จํ•œ ๋‹จ๊ณ„๋กœ ๋‚˜๋ˆ ๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.

  1. ๊ฐ ์‚ฌ์šฉ์ž์˜ ์—ฐํ•ฉ ID๋ฅผ ๋งŒ๋“ญ๋‹ˆ๋‹ค.
  2. Salesforce์—์„œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •์„ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.
  3. ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ๊ณต๊ธ‰์ž์—์„œ Salesforce ์„ค์ •์„ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค.
  4. ๋ชจ๋‘ ์ž‘๋™ํ•˜๋Š”์ง€ ํ™•์ธํ•ฉ๋‹ˆ๋‹ค.

1๋‹จ๊ณ„: ์—ฐํ•ฉ ID ๋งŒ๋“ค๊ธฐ

์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•  ๋•Œ ๊ณ ์œ  ์†์„ฑ์„ ์‚ฌ์šฉํ•˜์—ฌ ๊ฐ ์‚ฌ์šฉ์ž๋ฅผ ์‹๋ณ„ํ•ฉ๋‹ˆ๋‹ค. ์ด ์†์„ฑ์€ Salesforce ์‚ฌ์šฉ์ž๋ฅผ ํƒ€์‚ฌ ID ๊ณต๊ธ‰์ž์™€ ์—ฐ๊ฒฐํ•˜๋Š” ๋งํฌ์ž…๋‹ˆ๋‹ค. ์‚ฌ์šฉ์ž ์ด๋ฆ„, ์‚ฌ์šฉ์ž ID ๋˜๋Š” ์—ฐํ•ฉ ID๋ฅผ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์—ฌ๊ธฐ์„œ๋Š” ์—ฐํ•ฉ ID๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.

์•„๋‹ˆ์š”, ์—ฐํ•ฉ ID๊ฐ€ ์‚ฌ์•…ํ•œ ๊ณ„ํš์ด ์žˆ๋Š” ํ–‰์„ฑ ๊ฐ„ ๋ฐฐ์†ก ์กฐ์ง์˜ ์†Œ์œ ๋Š” ์•„๋‹™๋‹ˆ๋‹ค. IT ์‚ฐ์—…์—์„œ ๊ณ ์œ  ์‚ฌ์šฉ์ž ID๋ฅผ ๋œปํ•˜๋Š” ์šฉ์–ด์ž…๋‹ˆ๋‹ค.

์ผ๋ฐ˜์ ์œผ๋กœ ์‚ฌ์šฉ์ž ๊ณ„์ •์„ ์„ค์ •ํ•  ๋•Œ ์—ฐํ•ฉ ID๋ฅผ ํ• ๋‹นํ•ฉ๋‹ˆ๋‹ค. ํ”„๋กœ๋•์…˜ ํ™˜๊ฒฝ์—์„œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ์„ค์ •ํ•˜๋Š” ๊ฒฝ์šฐ, Salesforce Data Loader ๊ฐ™์€ ๋„๊ตฌ๋ฅผ ์‚ฌ์šฉํ•ด ์—ฌ๋Ÿฌ ์‚ฌ์šฉ์ž์˜ ์—ฐํ•ฉ ID๋ฅผ ํ•œ๊บผ๋ฒˆ์— ํ• ๋‹นํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ง€๊ธˆ์€ Jedeye Tech์˜ ์‹ ์ž… ์‚ฌ์›์ธ Sia Thripio์˜ ๊ณ„์ •์„ ์„ค์ •ํ•ด ๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.

  1. Setup(์„ค์ •)์˜ Quick Find(๋น ๋ฅธ ์ฐพ๊ธฐ) ์ƒ์ž์— Users(์‚ฌ์šฉ์ž)๋ฅผ ์ž…๋ ฅํ•œ ๋‹ค์Œ Users(์‚ฌ์šฉ์ž)๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
  2. Sia์˜ ์ด๋ฆ„ ์˜†์— ์žˆ๋Š” Edit(ํŽธ์ง‘)์„ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
  3. Single Sign On Information(์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์ •๋ณด) ์•„๋ž˜์— Federation ID(์—ฐํ•ฉ ID) sia@jedeye-tech.com์„ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค. ํŒ: ์—ฐํ•ฉ ID๋Š” ์กฐ์ง์˜ ์‚ฌ์šฉ์ž๋งˆ๋‹ค ๊ณ ์œ ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. ์‚ฌ์šฉ์ž ์ด๋ฆ„์€ ๊ณ ์œ ํ•˜๊ธฐ ๋•Œ๋ฌธ์— ์œ ์šฉํ•ฉ๋‹ˆ๋‹ค. ํ•˜์ง€๋งŒ ์‚ฌ์šฉ์ž๊ฐ€ ์—ฌ๋Ÿฌ ์กฐ์ง์— ์†ํ•ด ์žˆ๋Š” ๊ฒฝ์šฐ ๊ฐ ์กฐ์ง์—์„œ ์‚ฌ์šฉ์ž์˜ ๋™์ผํ•œ ์—ฐํ•ฉ ID๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.ย 

Federation ID(์—ฐํ•ฉ ID)๊ฐ€ ๋™๊ทธ๋ผ๋ฏธ๋กœ ํ‘œ์‹œ๋œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ • ํŽ˜์ด์ง€.

  1. Save(์ €์žฅ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.

2๋‹จ๊ณ„: Salesforce์—์„œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ๊ณต๊ธ‰์ž ์„ค์ •

์„œ๋น„์Šค ๊ณต๊ธ‰์ž๋Š” ID ๊ณต๊ธ‰์ž์— ๋Œ€ํ•ด ์•Œ์•„์•ผ ํ•˜๊ณ , ๊ทธ ๋ฐ˜๋Œ€๋„ ๋งˆ์ฐฌ๊ฐ€์ง€์ž…๋‹ˆ๋‹ค. ์ด ๋‹จ๊ณ„๋Š” ID ๊ณต๊ธ‰์ž(์ด ์‚ฌ๋ก€์—์„œ๋Š” Axiom)์— ๋Œ€ํ•œ ์ •๋ณด๋ฅผ ์ œ๊ณตํ•˜๋Š” Salesforce ์ชฝ์—์„œ ์ง„ํ–‰ํ•ฉ๋‹ˆ๋‹ค. ๋‹ค์Œ ๋‹จ๊ณ„์—๋Š” Salesforce์— ๋Œ€ํ•œ Axiom ์ •๋ณด๋ฅผ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.

Salesforce ์ชฝ์—์„œ๋Š” SAML ์„ค์ •์„ ๊ตฌ์„ฑํ•ฉ๋‹ˆ๋‹ค. SAML์€ Salesforce Identity์—์„œ ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ๊ตฌํ˜„ํ•˜๋Š” ๋ฐ ์‚ฌ์šฉํ•˜๋Š” ํ”„๋กœํ† ์ฝœ์ž…๋‹ˆ๋‹ค.

ํŒ: Salesforce Dev ์กฐ์ง๊ณผ Axiom ์•ฑ์—์„œ ๋ชจ๋‘ ์ž‘์—…์„ ์ˆ˜ํ–‰ํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค. ์กฐ์ง๊ณผ ์•ฑ ์‚ฌ์ด์—์„œ ๋ณต์‚ฌํ•˜๊ณ  ๋ถ™์—ฌ ๋„ฃ์„ ์ˆ˜ ์žˆ๊ฒŒ ์กฐ์ง๊ณผ ์•ฑ์„ ๋ชจ๋‘ ๊ฐ์ž ๋‹ค๋ฅธ ๋ธŒ๋ผ์šฐ์ € ์ฐฝ์—์„œ ๊ณ„์† ์—ด์–ด ๋‘์„ธ์š”.

  1. ์ƒˆ ๋ธŒ๋ผ์šฐ์ € ์ฐฝ์—์„œ https://axiomsso.herokuapp.com์œผ๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค.
  2. SAML Identity Provider & Tester(SAML ID ๊ณต๊ธ‰์ž ๋ฐ ํ…Œ์Šคํ„ฐ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
  3. Download the Identity Provider Certificate(ID ๊ณต๊ธ‰์ž ์ธ์ฆ์„œ ๋‹ค์šด๋กœ๋“œ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค. ์ด ์ธ์ฆ์„œ๋Š” ๋‚˜์ค‘์— Salesforce org์— ์—…๋กœ๋“œํ•  ๊ฒƒ์ด๋ฏ€๋กœ ์ €์žฅ ์œ„์น˜๋ฅผ ๊ธฐ์–ตํ•ด ๋‘์„ธ์š”.
  4. Salesforce org์—์„œ Setup(์„ค์ •)์˜ Quick Find(๋น ๋ฅธ ์ฐพ๊ธฐ) ์ƒ์ž์— Single์„ ์ž…๋ ฅํ•œ ํ›„ Single Sign-On Settings(์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •)๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
  5. Edit(ํŽธ์ง‘)์„ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
  6. SAML Enabled(SAML ์‚ฌ์šฉ)๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
  7. Save(์ €์žฅ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
  8. SAML Single Sign-On Settings(SAML ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •)์—์„œ ๋‹ค์Œ ์ž‘์—…์„ ์ˆ˜ํ–‰ํ•ฉ๋‹ˆ๋‹ค.
    • New(์ƒˆ๋กœ ๋งŒ๋“ค๊ธฐ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
    • ๋‹ค์Œ ๊ฐ’์„ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค.
      • Name(์ด๋ฆ„): Axiom Test App
      • Issuer(๋ฐœ๊ธ‰์ž): https://axiomsso.herokuapp.com
      • Identity Provider Certificate(ID ๊ณต๊ธ‰์ž ์ธ์ฆ์„œ): 3๋‹จ๊ณ„์— ๋‹ค์šด๋กœ๋“œํ–ˆ๋˜ ํŒŒ์ผ์„ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
      • Request Signature Method(์š”์ฒญ ์„œ๋ช… ๋ฉ”์„œ๋“œ): RSA-SHA1๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
      • SAML Identity Type(SAML ID ์œ ํ˜•): Assertion contains the Federation ID from the User object(์–ด์„ค์…˜์— ์‚ฌ์šฉ์ž ๊ฐœ์ฒด์˜ ์—ฐํ•ฉ ID๊ฐ€ ํฌํ•จ๋˜์–ด ์žˆ์Œ)๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
      • SAML Identity Location(SAML ID ์œ„์น˜): Identity is in the NameIdentifier element of the Subject statement(ID๊ฐ€ Subject ๋ฌธ์˜ NameIdentifier ์š”์†Œ์— ์žˆ์Œ)๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
      • Service Provider Initiated Request Binding(์„œ๋น„์Šค ๊ณต๊ธ‰์ž๊ฐ€ ์‹œ์ž‘ํ•œ ์š”์ฒญ ๋ฐ”์ธ๋”ฉ): HTTP Redirect(HTTP ๋ฆฌ๋””๋ ‰์…˜)๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค.
      • Entity ID(์—”ํ‹ฐํ‹ฐ ID): ์กฐ์ง์˜ My Domain Setup(๋‚ด ๋„๋ฉ”์ธ ์„ค์ •) ํŽ˜์ด์ง€์— ํ‘œ์‹œ๋˜๋Š” ๋‚ด ๋„๋ฉ”์ธ URL์„ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค. ์—”ํ‹ฐํ‹ฐ ID๋Š” โ€˜httpsโ€™๋ฅผ ํฌํ•จํ•˜๊ณ  Salesforce ๋„๋ฉ”์ธ์„ ์ฐธ์กฐํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. ๋‹ค์Œ๊ณผ ๊ฐ™์ด ํ‘œ์‹œ๋˜์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. https://mydomain-dev-ed.develop.my.salesforce.com.

๊ฐ’์ด ์ฑ„์›Œ์ง„ SAML Single Sign-On ์„ค์ • ํŽ˜์ด์ง€.

  1. Save(์ €์žฅ)๋ฅผ ํด๋ฆญํ•˜๊ณ  ๋ธŒ๋ผ์šฐ์ € ํŽ˜์ด์ง€๋ฅผ ์—ด์–ด ๋‘ก๋‹ˆ๋‹ค.

Salesforce๊ฐ€ ID ๊ณต๊ธ‰์ž(Axiom)์— ๋Œ€ํ•ด ์•Œ๋„๋ก ๊ตฌ์„ฑํ–ˆ์œผ๋ฏ€๋กœ, ์ด์ œ ์„œ๋น„์Šค ๊ณต๊ธ‰์ž(Salesforce)์— ๋Œ€ํ•ด ์•Œ๋„๋ก ID ๊ณต๊ธ‰์ž๋ฅผ ํ•™์Šต์‹œํ‚ต๋‹ˆ๋‹ค.

๋‹ค์Œ Axiom ์–‘์‹์—์„œ ํ•„๋“œ๋ฅผ ๋ช‡ ๊ฐœ ์ž…๋ ฅํ•˜๋ฉด ๋ฉ๋‹ˆ๋‹ค. ์•„์ฃผ ์‰ฝ์Šต๋‹ˆ๋‹ค. Salesforce ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •์„ ์ œ๊ณตํ•˜๋ ค๊ณ  ํ•˜๋ฏ€๋กœ, ๋‘ ๋ธŒ๋ผ์šฐ์ € ์ฐฝ(Salesforce ํ•˜๋‚˜์™€ Axiom ํ•˜๋‚˜)์„ ๋ชจ๋‘ ์—ด์–ด ๋‘์„ธ์š”.

  1. Axiom ์›น ์•ฑ์œผ๋กœ ๋Œ์•„๊ฐ‘๋‹ˆ๋‹ค. ์ด ์•ฑ์ด ๋ธŒ๋ผ์šฐ์ € ์ฐฝ์— ์—ด๋ ค ์žˆ์ง€ ์•Š์œผ๋ฉด https://axiomsso.herokuapp.com์œผ๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค.
  2. SAML Identity Provider & Tester(SAML ID ๊ณต๊ธ‰์ž ๋ฐ ํ…Œ์Šคํ„ฐ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
  3. Generate a SAML response(SAML ์‘๋‹ต ์ƒ์„ฑ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.
  4. ๋‹ค์Œ ๊ฐ’์„ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค. ๋‚˜๋จธ์ง€ ํ•„๋“œ๋Š” ๊ทธ๋Œ€๋กœ ๋†”๋‘ก๋‹ˆ๋‹ค.
    • SAML Version(SAML ๋ฒ„์ „): 2.0
    • Username or Federated ID(์‚ฌ์šฉ์ž ์ด๋ฆ„ ๋˜๋Š” ์—ฐํ•ฉ ID): Sia์˜ Salesforce ์‚ฌ์šฉ์ž ํŽ˜์ด์ง€์—์„œ ์„ค์ •ํ•œ ์—ฐํ•ฉ ID
    • Issuer(๋ฐœ๊ธ‰์ž): https://axiomsso.herokuapp.com
    • Recipient URL(์ˆ˜์‹ ์ž URL): Salesforce SAML Single Sign-On Settings(SAML ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •) ํŽ˜์ด์ง€์—์„œ ์„ค์ •ํ•œ URL ๋ณด์ด์ง€ ์•Š๋‚˜์š”? ํŽ˜์ด์ง€ ํ•˜๋‹จ์˜ Endpoints(์—”๋“œํฌ์ธํŠธ) ์„น์…˜์— Login URL(๋กœ๊ทธ์ธ URL)์ด๋ผ๊ณ  ํ‘œ์‹œ๋œ ๋ถ€๋ถ„์— ์žˆ์Šต๋‹ˆ๋‹ค.
    • Entity ID(์—”ํ‹ฐํ‹ฐ ID): Salesforce SAML Single Sign-On Settings(SAML ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ ์„ค์ •) ํŽ˜์ด์ง€์— ์žˆ๋Š” ์—”ํ‹ฐํ‹ฐ ID

Entity ID(์—”ํ‹ฐํ‹ฐ ID)์™€ Login URL(๋กœ๊ทธ์ธ URL)์ด ๋™๊ทธ๋ผ๋ฏธ๋กœ ํ‘œ์‹œ๋œ ์ €์žฅ ํ›„ Single Sign-On ์„ค์ • ํŽ˜์ด์ง€.

๋งˆ์น˜๋ฉด Axiom ์„ค์ • ํŽ˜์ด์ง€๊ฐ€ ๋‹ค์Œ๊ณผ ๊ฐ™์ด ํ‘œ์‹œ๋ฉ๋‹ˆ๋‹ค.

๊ฐ’์ด ์ฑ„์›Œ์ง„ Axiom ์„ค์ • ํŽ˜์ด์ง€.

4๋‹จ๊ณ„: ๋ชจ๋‘ ์ž‘๋™ํ•˜๋Š”์ง€ ํ™•์ธ

์ž, ์ด์ œ ๋ชจ๋“  ๊ฒƒ์ด ๋‹ค ๊ตฌ์„ฑ๋˜์—ˆ์œผ๋‹ˆ ์ œ๋Œ€๋กœ ์ž‘๋™ํ•˜๋Š”์ง€ ํ™•์ธํ•ด ๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค. ์ฆ๊ฑฐ๋Š” ๋ฌด์—‡์ผ๊นŒ์š”? ๋ฌผ๋ก  ์„ฑ๊ณต์ ์ธ ๋กœ๊ทธ์ธ์ž…๋‹ˆ๋‹ค.

  1. Axiom ์„ค์ • ๋ธŒ๋ผ์šฐ์ € ์ฐฝ์—์„œ Request SAML Response(SAML ์‘๋‹ต ์š”์ฒญ)๋ฅผ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค. (ํ•˜๋‹จ๊นŒ์ง€ ์•„๋ž˜๋กœ ์ญ‰ ๋‚ด๋ ค๊ฐ€๋ฉด ์žˆ์Šต๋‹ˆ๋‹ค.)
  2. Axiom์€ SAML ์–ด์„ค์…˜์„ XML๋กœ ์ƒ์„ฑํ•ฉ๋‹ˆ๋‹ค. ์™ธ๋”ด ์ „์ดˆ ๊ธฐ์ง€์˜ ์ˆ˜๋ถ„ ์ฆ๋ฐœ๊ธฐ์™€ ํ†ต์‹ ํ•˜๋Š” ๋กœ๋ด‡์ด ์‚ฌ์šฉํ•˜๋Š” ์–ธ์–ด์ฒ˜๋Ÿผ ์ƒ๊ฒผ๋‚˜์š”? ๋‹ค์‹œ ๋ณด์„ธ์š”. ๊ทธ๋ ‡๊ฒŒ ๋‚˜๋น  ๋ณด์ด์ง€ ์•Š๋Š”๋‹ค๋Š” ๊ฒƒ์„ ํ™•์ธํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๊ด€์‹ฌ ์ •๋ณด๋ฅผ ์ฐพ๊ธฐ ์œ„ํ•ด XML์„ ์Šคํฌ๋กคํ•ฉ๋‹ˆ๋‹ค.ย 

Axiom์—์„œ ์ƒ์„ฑ๋œ SAML ์‘๋‹ต.

  1. Login(๋กœ๊ทธ์ธ)์„ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.

๋ชจ๋“  ๊ฒƒ์ด ์ •์ƒ์ด๋ฉด Salesforce ํ™ˆ ํŽ˜์ด์ง€์— Sia๋กœ ๋กœ๊ทธ์ธ๋ฉ๋‹ˆ๋‹ค. Axiom ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์—์„œ๋Š” ์—ฐํ•ฉ ID๊ฐ€ ํ• ๋‹น๋œ ์‚ฌ์šฉ์ž๋กœ Salesforce org์— ๋กœ๊ทธ์ธ๋ฉ๋‹ˆ๋‹ค.

์ถ•ํ•˜ํ•ฉ๋‹ˆ๋‹ค! ๋‹ค๋ฅธ ์•ฑ์—์„œ Salesforce์— ์•ก์„ธ์Šคํ•˜๋Š” ์‚ฌ์šฉ์ž๋ฅผ ์œ„ํ•ด Salesforce ์‹ฑ๊ธ€์‚ฌ์ธ์˜จ์„ ๊ตฌ์„ฑํ•˜์…จ์Šต๋‹ˆ๋‹ค.

๋ฆฌ์†Œ์Šค

Salesforce ๋„์›€๋ง์—์„œ Trailhead ํ”ผ๋“œ๋ฐฑ์„ ๊ณต์œ ํ•˜์„ธ์š”.

Trailhead์— ๊ด€ํ•œ ์—ฌ๋Ÿฌ๋ถ„์˜ ์˜๊ฒฌ์— ๊ท€ ๊ธฐ์šธ์ด๊ฒ ์Šต๋‹ˆ๋‹ค. ์ด์ œ Salesforce ๋„์›€๋ง ์‚ฌ์ดํŠธ์—์„œ ์–ธ์ œ๋“ ์ง€ ์ƒˆ๋กœ์šด ํ”ผ๋“œ๋ฐฑ ์–‘์‹์„ ์ž‘์„ฑํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์ž์„ธํžˆ ์•Œ์•„๋ณด๊ธฐ ์˜๊ฒฌ ๊ณต์œ ํ•˜๊ธฐ