The present specification relates to a method for translating a security policy of a policy translator for a network security function interface, and a high-level first security policy from an I2NSF (Interface to Network Security Functions) user. Receiving; Extracting data related to the first security policy based on the first security policy; Converting data related to the first security policy into essential data for a Network Security Function (NSF); And searching for a target NSF based on the essential data, and generating a low-level second security policy related to the target NSF. Including, wherein the policy translator and the I2NSF user are connected through a user-facing interface, and the policy translator and the NSF may translate a security policy connected through an NSF-facing interface.
展开▼