--- kind: CONCEPT slug: messaging-security-c06 title: 종료 시 자격증명을 소거하는 코드가 없다 topic: state-machines-and-ownership project: clean-architecture-backend-template status: 게시 전 sourceRevision: 21234e38cdb9a926cbc92bb97a2aee2e4a7d2916 rootTreeNode: concept:messaging-security-c06 evidenceCapturedOn: 2026-09-01 assets: - key: messaging-security-c06 file: ../../../final/evidence/rendered/messaging-security-c06.svg evidence: - ../../../final/evidence/raw/messaging-security-c06.txt source: - 원본 분석 절은 final/document.md#a19-messaging-security#L359 이다. module: messaging-security --- # 종료 시 자격증명을 소거하는 코드가 없다 수명주기 참여는 `clearAll()`뿐이고 javadoc이 "for shutdown"이라고 적는데, 그것을 부르는 코드가 저장소에 없다. ## 관계 - **배선된 게이트는 자기 leaf 레인에서 검증한다** 같은 분석 리프에서 끌어낸 규칙이다. - **같은 술어가 두 타입에 있으면 하나가 다른 하나를 부른다** 같은 분석 리프에서 끌어낸 규칙이다. - **가변 필드로 상태 전이를 표현하면 가시성을 함께 정한다** 같은 분석 리프에서 끌어낸 규칙이다. - **맵 갱신 함수 안에서 I/O를 하면 그 지연이 락 범위가 된다** 같은 분석 리프에서 끌어낸 규칙이다. ## 본문 레코드 여섯(`BrokerSecurityProfile`, `BrokerCredentialProfile` 5변형, `DestinationAccessPolicy`, `BrokerAclManifest`, `CredentialRotationPlan`)은 전부 불변이다. `BrokerTlsPolicy`·`MessageSecurityValidator`·`DestinationAccessValidator`는 상태가 없거나 불변 참조만 갖는다. ## BrokerSecurityProfile 참조 위치 :::evidence key="messaging-security-c06" alt="코드베이스에서 BrokerSecurityProfile 를 검색한 출력 26줄. 이 기록이 세는 참조가 그 출력에 그대로 보인다." caption="BrokerSecurityProfile 코드베이스 검색 — 26줄 · exit 0" zoom="true" ::: ## 부르는 코드가 없는 수명주기 훅 수명주기 참여는 `clearAll()`뿐이고 "for shutdown"이라고 javadoc이 적는다. **그것을 부르는 코드가 저장소에 없다** — 종료 시 자격증명이 소거되지 않는다. §17.