이 가이드에서는 Google Cloud Armor Enterprise의 사용 안내를 제공합니다. 제품에 대해 자세히 알아보려면 Cloud Armor Enterprise 개요를 참고하세요.
필수 IAM 권한
결제 계정을 Cloud Armor Enterprise로 구독하거나 구독의 자동 갱신 설정을 전환하려면 구독 중인 해당 결제 계정에 Identity and Access Management(IAM) 권한 billing.accounts.update가 있는 사용자여야 합니다.
Cloud Armor Enterprise 구독에 프로젝트를 등록하려면 Cloud Armor Enterprise에 등록하려는 현재 선택된 프로젝트에 대해 다음과 같은 IAM 권한이 있어야 합니다.
resourcemanager.projects.createBillingAssignmentresourcemanager.projects.updatecompute.projects.setCloudArmorTier
결제 권한에 대한 자세한 내용은 Cloud Billing 액세스 제어 개요를 참조하세요.
Cloud Armor Enterprise Annual 구독
Cloud Armor Enterprise Annual을 구독하고 현재 프로젝트를 등록하려면 다음 단계를 따르세요.
콘솔
Cloud Armor Enterprise Annual 구독
Google Cloud 콘솔에서 Cloud Armor 서비스 등급 페이지로 이동합니다. 구독이 활성 상태라면 결제 계정에서 이미 구독하고 있는 것입니다.
Cloud Armor Enterprise Annual 창에서 구독 및 등록을 클릭합니다. 확인을 요청하는 대화상자가 표시됩니다.
Cloud Armor Enterprise에 프로젝트 등록
Cloud Armor Enterprise Annual 또는 Paygo에 프로젝트를 등록하려면 다음 단계를 따르세요. 프로젝트가 이미 등록된 경우 새 등록 등급에 등록하여 등록 등급을 변경할 수 있습니다. 예를 들어 프로젝트가 Cloud Armor Enterprise Annual에 등록되어 있으면 Cloud Armor Enterprise Paygo에 등록하여 등록 등급을 변경할 수 있습니다.
콘솔
Cloud Armor Enterprise Annual 등급에 프로젝트 등록하기
Google Cloud 콘솔에서 Cloud Armor 서비스 등급 페이지로 이동합니다.
Cloud Armor Enterprise Annual 창에서 등록을 클릭합니다.
Cloud Armor Enterprise Paygo에 프로젝트 등록
Google Cloud 콘솔에서 Cloud Armor 서비스 등급 페이지로 이동합니다.
Cloud Armor Enterprise Paygo 창에서 등록을 클릭합니다.
gcloud
Cloud Armor Enterprise Annual 등급에 프로젝트 등록하기
다음 명령어를 사용하여 Cloud Armor Enterprise Paygo에 프로젝트를 등록합니다.
gcloud compute project-info update --cloud-armor-tier CA_ENTERPRISE_ANNUAL
Cloud Armor Enterprise Paygo에 프로젝트 등록
다음 명령어를 사용하여 Cloud Armor Enterprise Paygo에 프로젝트를 등록합니다.
gcloud compute project-info update --cloud-armor-tier CA_ENTERPRISE_PAYGO
Cloud Armor Enterprise에서 프로젝트 삭제
Cloud Armor Enterprise에서 프로젝트를 삭제하기 전에 Cloud Armor Enterprise에서 다운그레이드에 대해 숙지하는 것이 좋습니다. Cloud Armor Enterprise에서 프로젝트를 등록 해제한 후 변경사항이 적용되려면 최대 12시간이 걸릴 수 있습니다. 이 기간 동안 계속 다른 프로젝트를 등록 해제 또는 등록할 수 있습니다.
Cloud Armor Enterprise에서 프로젝트를 등록 해제하려면 다음 단계를 따르세요.
콘솔
Cloud Armor Enterprise Annual에서 프로젝트 등록 해제
Google Cloud 콘솔에서 Cloud Armor 서비스 등급 페이지로 이동합니다.
Standard 창에서 등록을 클릭합니다.
Cloud Armor Enterprise Paygo에서 프로젝트 등록 해제
Google Cloud 콘솔에서 Cloud Armor 서비스 등급 페이지로 이동합니다.
Standard 창에서 등록을 클릭합니다.
gcloud
Cloud Armor Enterprise Annual에서 프로젝트 등록 해제
gcloud compute project-info update --cloud-armor-tier CA_STANDARD
Cloud Armor Enterprise Paygo에서 프로젝트 등록 해제
gcloud compute project-info update --cloud-armor-tier CA_STANDARD
등록 정보 보기
다음 섹션에 따라 현재 Cloud Armor Enterprise 등록 등급을 보거나 등록에 포함된 리소스 수를 확인할 수 있습니다.
현재 Cloud Armor Enterprise 등록 등급 보기
다음 안내에 따라 현재 Cloud Armor Enterprise 등록 등급을 확인하세요.
콘솔
Google Cloud 콘솔에서 Cloud Armor 서비스 등급 페이지로 이동합니다.
Cloud Armor Enterprise Annual 및 Cloud Armor Enterprise Paygo를 포함하여 사용 가능한 Cloud Armor Enterprise 서비스 등급이 표시됩니다. 현재 Cloud Armor Enterprise 등록 등급이 강조 표시되고 프로젝트 필드에 '등록됨' 상태가 표시됩니다.
gcloud
현재 Cloud Armor Enterprise 등록 등급을 보려면 다음 gcloud 명령어를 사용하세요.
gcloud compute project-info describe
등록에 적용되는 백엔드 서비스 및 백엔드 버킷 수 보기
Cloud Armor Enterprise에 등록된 각 프로젝트는 Cloud Armor Enterprise 페이지에 적용되는 백엔드 서비스 및 백엔드 버킷 수가 표시됩니다. 표시되는 숫자는 등록 시 적용되는 백엔드 서비스 및 백엔드 버킷의 총 수입니다.
프로젝트가 기본 등급인 Cloud Armor Enterprise Standard에 등록된 경우 이 수는 표시되지 않습니다.
Cloud Armor Enterprise Annual에서 결제 계정 구독 취소
Cloud Armor Enterprise Annual 구독은 자동으로 갱신되는 1년 약정입니다. 1년 약정 기간이 종료될 때 갱신되지 않도록 하려면 자동 갱신을 사용 중지해야 합니다. 자동 갱신을 사용 중지한 후에도 현재 1년 구독 기간은 종료일까지 계속됩니다. 구독 기간이 종료되면 Cloud Armor Enterprise 구독이 갱신되지 않습니다. 프로젝트에 유효한 계층적 보안 정책이 있는 경우 프로젝트가 Cloud Armor Enterprise 종량제로 다운그레이드됩니다. 그렇지 않으면 Cloud Armor Enterprise 연간에 등록된 결제 계정의 모든 프로젝트가 Cloud Armor Enterprise Standard로 되돌아갑니다.