DOI QR코드

DOI QR Code

A Study on How to Build a Disaster Recovery System that can Minimize Recovery Time Objective(RTO) and Recovery Point Objective(RPO) to Ensure Business Continuity

비즈니스 연속성 보장을 위한 복구 시간 목표(RTO) 및 복구 지점 목표(RPO)를 최소화할 수 있는 재해복구시스템 구축 방안 연구

  • 강현선 (남서울대학교 교양대학부)
  • Received : 2021.11.16
  • Accepted : 2021.12.20
  • Published : 2021.12.31

Abstract

In the current business environment where dependence on IT has increased rapidly, the risk from disasters or cyber-attacks is also increasing. Business continuity, the ability to continue to provide service in the event of a business disruption caused by a disaster, is essential. In other words, you need to have a plan in place to keep your core business functions uninterrupted with rapid recovery within a predetermined Recovery Time Objective (RTO) and Recovery Point Objective (RPO) time frame. In this paper, we propose a disaster recovery system construction method that can minimize RTO and RPO to ensure business continuity. The system configuration adopts Tier 7 disaster recovery model, synchronous storage replication, hot disaster recovery site, and operation management automation solution. This ensures continuity of core business with virtually no data loss and minimal RTO and RPO.

IT 의존도가 급격히 높아진 현재 비즈니스 환경에서 재해 또는 사이버 공격으로 인한 위험도 점차 증가하고 있다. 각종 재해로 인해 비즈니스 중단이 초래된 상황에서 서비스를 계속 제공할 수 있는 능력인 비즈니스 연속성은 필수적이다. 즉, 미리 정해진 복구시간목표(RTO)와 복구지점목표(RPO) 시간 내에 신속한 복구로 핵심 비즈니스 기능을 중단 없이 유지할 수 있는 계획을 세워야 한다. 본 논문에서는 비즈니스 연속성 보장을 위한 RTO, RPO를 최소화할 수 있는 재해복구시스템 구축방안을 제시한다. 재해복구시스템 구성은 Tier 7의 재해복구 모델 및 동기식 스토리지 복제, Hot 재해복구 사이트, 운영관리 자동화 솔루션을 채택하였다. 이를 통해 데이터 손실이 거의 없고 RTO 및 RPO를 최소화함으로써 핵심 비즈니스의 연속성을 보장한다.

Keywords

Acknowledgement

이 논문은 2021년도 남서울대학교 학술연구비 지원에 의해 연구되었음

References

  1. Nijaz Bajgoric, "Business continuity management: asystemic framework for implementation", Kybernetes, Vol. 43 No. 2, pp.156-177, Feb. 2014. https://doi.org/10.1108/K-11-2013-0252
  2. Paul Kirvan, Sonia Lelii, "Data center disaster recovery plan template and guide", TechTarge, Nov. 2017. https://searchdisasterrecovery.techtarget.com/Data-center-disaster-recovery-plan-template-and-guide
  3. Vyshnavi Jorrigala, "Business Continuity and Disaster Recovery Plan for Information Security", Submitted to the Graduate Faculty of Saint Cloud State University, Graduate dissertation. Saint Cloud State University, Saint Cloud, Dec. 2017. https://repository.stcloudstate.edu/cgi/viewcontent.cgi?article=1068&context=msia_etds
  4. Hyun-Sun Kang, "A study in Information System and Disaster Recovery System for Business Continuity", Journal of Security Engineering, 15(5), 319-332, Oct. 2018. DOI: 10.14257/jse.2018.10.04
  5. TTA (Telecommunications Technology Association), "A Guide to the Contingency and Disaster Recovery Plan for Public Information Systems", Bundang: TTA, Dec. 2013. http://www.tta.or.kr/data/ttas_view.jsp?rn=1&pk_num=TTAK.KO-12.0009/R1&nowSu=1
  6. Yasin AKILLI, Ali Gunes, "Disaster Recovery Planning for Data Centers and IT Services", International Advanced Research Journal in Science, Engineering and Technology (IARJSET), 3(6), 145-149, June 2016. DOI: 10.17148/IARJSET.2016.3627.145
  7. ISO/TC 292 Security and resilience, "Security and resilience-Business continuity management systems-Requirements", Geneva: International Organization for Standardization, Oct. 2019. https://www.iso.org/standard/75106.html
  8. ISO/TC 292 Security and resilience, "Societal Security-Business Continuity Management Systems-Requirements", Geneva: International Organization for Standardization, May 2012. https://www.iso.org/standard/50038.html
  9. ISO/TC 262 Risk management, "Risk management-Guidelines", Geneva: International Organization for Standardization, Feb. 2018. https://www.iso.org/standard/65694.html
  10. Ellis Holman, "A Business Continuity Solution Selection Methodology", IBM Corporation, March 2012. https://share.confex.com/Handout/ Session10387
  11. Marek Zdrojewski, "Business continuity/disaster recovery", default reasoning, Dec. 2013. https://defaultreasoning.com/2013/12/10/rpo-rto-wrt-mtdwth/
  12. Charlotte Brooks et al., "IBM System Storage Business Continuity: Part 1Planning Guide", IBM Corporation, Mar. 2007. https://www.redbooks.ibm.com/redbooks/pdfs/sg246547.pdf
  13. Chongsoo Cheung, Woonggyu Choi, "A Study on the Framework of Quick-Hit for BIA and RA in BCMS", J. Korean Soc. Hazard Mitig 2019, 19(4), 81-87, Aug. 2019. DOI: https://doi.org/10.9798/KOSHAM.2019.19.4.81
  14. Young-Hee Jeong, Jung-Hoon Lee, Eun-Young Kim, "A Study on the Critical Success Factors and Practical Method of Information System Disaster Recovery: Assuring Business Continuity of Information System Interface Specification Modeling", Journal of the Korea society of IT services, 10(4), 83-101, Dec. 2011. DOI: 10.9716/KITS.2011.10.4.083
  15. Honglin Han, Lin Li, Dehai ZhuH, "Research and Implementation on Remote Disaster Recovery System", International Conference on Computer Science and Service System, Aug. 2012, Nanjing, China. DOI: 10.1109/CSSS.2012.223