년 - 년
전염성 확산 차단을 위한 음성인식 기반의 출입통제시스템 설계 KCI 등재
한국융합학회 한국융합학회논문지 제11권 제7호 2020.07 pp.19-24
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
WHO는 3월 11일 코로나 19에 대한 세계적 대유행, 팬더믹(pandemic)을 선언하였다. 하지만 경제 및 사회적 활동으로 인하여 면대면 교육이나 세미나를 위해 건물 출입을 해야하는 상황이 발생한다. 코로나 19의 감염여부의 1차 체크 방법으로 체온 측정이 있어 근거리 체온 측정을 통해 1차적인 출입 차단을 실시하고 있다. 그로 인해 일일이 직접 체크하는 것이 번거롭기 때문에 열화상 카메라를 건물 입구에 설치하고, 적외선 카메라를 이용하여 간접적으로 체온을 측정하여 출입 통제를 하고 있다. 중고교나 대학 및 평생교육의 경우 출석체크 등과의 연동이 가능하고, 마스크 착용 여부를 자동으로 인식하고, 수강생의 인증이 가능한 시스템이 필요하다. 제안시스템은 스마트미러에 탐재된 카메라로 마스크 착용 여부를 확인하고, 음성인식 기술을 활용하여 건물안으로 들어오고자 하는 사용자의 목소리 인식을 통해 사용자를 인증하고, 출입 여부를 결정하는 시스템을 제안하고자 한다. 제안 시스템은 근거리 온도 측정과 수강생의 스마 트 폰의 출석체크 APP와 연동을 하게 되면 출석체크도 가능하다.
WHO declared a global pandemic on March 11th for Corona 19. However, there is a situation where you have to go to building for face-to-face education or seminars for economic and social activities. The first check method of COVID-19 infection is to measure body temperature, so the primary entrance and exit is blocked for near-field body temperature measurement. However, since it is troublesome to check directly, thermal camera is installed at the entrance of the building, and body temperature is measured indirectly using the infrared camera to control access. In case of middle and high schools, universities, and lifelong education center, we need a system that is possible to interoperate with attendance checks and automatically recognizes whether to wear masks and can authenticate students. We proposed the system that is to confirm whether to wear a mask with a camera that is embedded in a smart mirror, and that authenticates the user through voice recognition of the user who wants to enter the building by using voice recognition technology and determines whether to enter them or not. The proposed system can check attendance if it is linked with near-field temperature measurement and attendance check APP of student's smart phone.
사법부는 법원 내에서 자행되는 질서유지 방해 행위에 대응하기 위해 자체 보안조직인 법원보안관리대를 두어 법정과 청사의 안전과 질서유지를 담당하도록 하고 있다. 시설 또 는 군중 및 특정인물을 대상으로 한 테러, 요인암살, 음독, 방화 등 다양한 위험요소들이 사회에 만연하고 있어 사법부에 대한 안전 및 질서유지를 위한 출입통제는 더욱 중요하다 고 할 수 있다. 이에 본 연구는 감염병에 대한 방역 및 대응과 무질서를 초래하는 법원 내 불법적인 성격의 각종 집회 시위와 집단 및 개인의 일탈행동을 사전에 예방하고 대응할 수 있는 법원의 출입통제체계에 대한 개선방안을 마련하고자 하는데 의의가 있다. 법원 출입통제시스템의 개선방안으로 첫째, 위반행위자에 대한 철거 및 퇴거조치를 규 정하는 취지를 명확하게 하고 제지·퇴거 후 제재 및 절차수단에 대하여 체계적으로 규정 을 확립 및 개정하여 출입통제업무의 업무범위와 권한의 근거규정에 대한 신설·개정방안 을 제시하였다. 둘째, 각 법원의 업무환경과 일정, 특징에 맞춰 직무교육을 실시해야하며 보안검색 및 장비운용 등 출입통제 업무와 연관성이 높은 교육과목을 지정하고 전문성 있 는 교육이 이뤄질 수 있도록 전문가를 위탁, 초빙하여 교육을 실시해야 하며 자체교육이 가능한 수준의 교관을 양성해야 한다. 셋째, 4차 산업혁명기술이 반영된 최신 보안검색장 비와 지능형CCTV를 적극 도입하여 이러한 장비들이 네트워크로 연동되고 유관기관과 협 조체계가 구축된 출입통제체계를 재구성할 필요가 있다.
The judiciary has its own security organization, the Court Security Management Team, to take charge of the safety and order maintenance of courts and government offices in order to respond to acts of obstruction of order within the courts.Since various risk factors such as terrorism, assassination of factors, poisoning, and arson targeting facilities or crowds and specific persons are prevalent in society, access control for the safety and order maintenance of the judiciary is more important. Therefore, this study is to prepare an improvement plan for the court's access control system that can prevent and respond in advance to the prevention and response of infectious diseases and various illegal gatherings, demonstrations and group and individual deviant behavior in the courts that cause disorder. It makes sense to do it. As a way to improve the court access control system, first, clarify the purpose of stipulating the removal and eviction measures for violators, and systematically establish and amend the regulations regarding sanctions and procedures after deterrence and eviction, so that the scope of access control work New and amended measures for the rules and regulations based on authority were presented. Second, job training should be conducted according to the work environment, schedule, and characteristics of each court. Designate education subjects highly related to access control tasks such as security screening and equipment operation, and entrust and invite experts to provide specialized education. Education should be conducted and instructors should be trained at a level capable of self-education. Third, it is necessary to reorganize the access control system in which the latest security screening equipment and intelligent CCTVs that reflect the 4th industrial revolution technology are actively introduced so that these equipments are linked through a network and a cooperative system with related organizations has been established.
탈중앙화 신원증명을 이용한 출입통제 시스템의 설계 및 구현 KCI 등재
한국융합보안학회 융합보안논문지 제21권 제2호 2021.06 pp.37-46
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
탈중앙화 신원증명(DID, Decentralized Identifier) 기술은 블록체인 기술을 이용하여 개인의 신원증명을 중앙시스템을 통하 지 않고 개인이 소유한 정보를 통해 자신의 신원을 증명하는 기술이다. 본 논문에서는 탈중앙화 신원증명 기술을 이용한 출입 통제 시스템을 제시하고자 한다. 탈중앙화 신원증명 기술을 이용한 출입통제 시스템(이하 DID 출입통제 시스템)은 사용자 자 신의 스마트폰(모바일 사원증)에 저장되어 있는 본인의 정보를 통해 DID 블록체인 서버로부터 신원을 증명하고 증명된 신원 이 출입통제 시스템에 등록된 사용자임을 확인되었을 때 출입을 할 수 있도록 구현된 시스템이다. 이를 통해 개인의 신원을 증명하기 위한 정보를 출입통제 시스템에 저장할 필요 없이 스마트폰(모바일 사원증)과 DID 블록체인 서버와의 신원증명 확 인만으로 출입통제를 관리할 수 있다.
Decentralized Identifier (DID) technology is a technology that uses blockchain technology to prove an individual's identi ty through information owned by the individual rather than through a central system. In this paper, we would like to pres ent an access control system using decentralized identifier technology. The access control system using decentralized ident ifier technology (DID access control system) is a system that allows users to verify their identity from the DID blockchai n server through their smartphone (mobile employee ID) and access when they are confirmed to be registered in the acces s control system. Through this, access control can be managed only by verifying identification with smartphones (mobile employee ID) and DID blockchain servers without having to store information to prove an individual's identity in the acce ss control system.
4,000원
본 논문에서는 90개의 시설을 대상으로 물리적 보안시스템 구축 및 운용수준에 대해 조사 하여 결과를 분석하고 향상방안을 제시하였다. CCTV에 대한 구축수준과 운영수준이 출입 통제시스템이나 침입감지시스템에 비해 높은 것으로 나타났으나 구축된 보안시스템에 대 한 개선이나 유지․관리 수준이 낮게 나타나 구축 후 관리가 부족하게 나타났다. X-ray 검 색기를 설치한 시설이 적게 나타났지만 이는 물품의 반입․반출을 검색에 대한 관심을 보 여주는 것이라 할 수 있다. 물리적 보안시스템을 통합적으로 구축․운영 수준이 비교적 낮게 나왔는데, 물리적 보안시스템의 기능과 보안인력의 기능이 연계될 수 있도록 기술과 운영을 포함한 통합보안운영체계 구축을 확대하는 것이 필요하다. 출입통제시스템의 효과 를 높이기 위하여 구역별 개인별로 세분화 된 형태로 출입통제시스템을 운용하고, 많은 인 원의 출입을 동시에 통제할 수 있고 일정한 경계구역을 설정할 수 있는 스피드게이트와 RFID의 사용을 확대할 필요가 있다.
This study is to present an improvement of physical security system operation by survey on the install and operation of physical security system of 90 facilities. The level of CCTV operation is higher than Access Control system and Intrusion Detection System. But the level of maintenance and management of physical security system is low. The rate of install of X-ray Inspection device show the concern on material detection, although the rate is low. The level of install and operation for the Integration of physical security system is low, so integration of security personnel and security system is necessary for the effective operation. For reinforcement of access control management, security gate and preparing of some obstacles are required with RFID.
RFID 출입통제시스템과 연동한 네트워크 이중 접근통제 시스템 KCI 등재후보
한국융합보안학회 융합보안논문지 제12권 제3호 2012.06 pp.53-58
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
내부에 있는 정보를 보호하기 위한 노력들 중 하나인 네트워크 접근통제 시스템의 적용은 내부 사용자들의 효과적 제어 및 자동적인 네트워크 관리와 보안을 가능하게 한다. 그러나 이미 허가된 PC 또는 모바일 기기로 위장하거나 자 리를 비운 사용자의 인가된 시스템을 이용하여 내부 네트워크에 접속할 수 있는 문제점이 있다. 또한 허가된 PC 또는 모바일 기기의 악성코드 감염으로 인해 사용자가 직접 사용하는 시간 이외에도 동작하여 비의도적인 정보유출 및 내부 네트워크 공격 등이 발생할 수 있다. 따라서 내부 네트워크에 접속을 허가 받은 이가 인가된 장비를 이용하여 접근정책 에 따른 통신을 수행하고 있는지를 확인해야 한다. 이를 위해 본 연구에서는 RFID 출입통제시스템과 연동한 네트워크 이중 접근통제 시스템을 제안한다. 제안된 시스템은 내부 네트워크 접속 시 이중인증을 수행함으로써 허가된 사용자가 인가된 장비를 이용하여 통신을 수행하는 환경을 제공한다.
Network Access Control System that is one of the efforts to protect the information of internal applies to effectively control of insider and automatic network management and security. However, it has some problems : spoofing the authorized PC or mobile devices, connect to the internal network using a system that authorized users are away. In addition, information leakage due to malicious code in the same system. So in this paper, Network 2-Factor Access Control System based on RFID security control system is proposed for safety communication environment that performing a two-factor authentication using authorized user and devices to connect to the internal network.
적외선 기반 피기백킹 방지 기법을 적용한 네트워크 그룹 접근통제 시스템 KCI 등재후보
한국융합보안학회 융합보안논문지 제12권 제4호 2012.09 pp.109-114
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
오늘날과 같은 정보화사회에서는 비인가자의 조직 내 출입 시, 중요 정보자산에 접근이 용이해지기 때문에 통제 상의 어려움이 있다. 비인가자는 고도의 기술을 활용하지 않더라도, 뒤따름(Piggy-backing)과 어깨 너머로 훔쳐보기(Shoulder surfing) 등의 방법을 통해 중요 정보를 획득 할 수 있다. 그러므로 본 연구에서는 비인가자가 조직 내 주요 공간에 위 치 시 연관된 정보통신기기의 네트워크 접속을 차단하여 내부 정보를 열람할 수 있는 권한을 적절히 통제하는 방법을 제시하고자 한다. 제시된 방법은 RFID와 적외선 센서를 결합하여 네트워크 접근통제 시스템에 적용시킨 것으로, 이를 통해 비인가자 출입으로 인한 내부 정보 유출 위협을 차단하여, 인원 보안 측면을 강화한 보다 안전한 내부 네트워크 환경을 제공할 수 있다. 또한 내부 사용자의 보안인식 제고를 위한 수단으로 활용할 수 있는 장점도 있다.
Information society in recent times, lots of important information have been stored in information systems. In this situation, unauthorized person can obtains important information by piggy-backing and shoulder surfing in specific area of organization. Therefore, in this study, we proposed network group access control system by combining RFID and infrared-ray for blocking information leakage due to unauthorized access by internal threats and enhancing personnel security. So it can provides a more secure internal network environment.
분산신원증명(DID) 기반 군부대 출입통제체계 구축방안 연구 KCI 등재
한국융합보안학회 융합보안논문지 제21권 제5호 2021.12 pp.167-176
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
2020년 초 데이터 3법이 국회를 통과하면서 4차 산업혁명 시대의 핵심 자원인 데이터를 활용할 수 있는 법적 근거가 마련 되었고, 개인정보에 대한 활용 및 연구가 활성화됨에 따라 개인정보의 관리가 더욱 중요해졌다. 이와 관련해 신원 관리의 개 념도 과거 개별신원 모델, 연합신원 모델을 거쳐 이제는 개인의 정보를 자신이 직접 관리할 수 있는 자기주권신원 (Self-Sovereign Identity, SSI) 모델로 진화하고 있다. 최근 민간분야에서는 블록체인 기반의 분산신원증명(Distributed Identity, DID) 기술의 개발과 활용이 두드러지게 늘어나고 있으나 상대적으로 군에서는 DID 도입 및 활용이 미진한 상태이 다. 본 논문에서는 사설 블록체인 기반의 국방 DID 기술을 개발하고, 개발된 국방 DID 기술을 활용한 군부대 출입통제체계 구축방안을 제안한다. 또한, 국방 DID 생태계 구축 및 확장을 통해 민·관·군 DID 서비스 확대방안을 제안한다.
As the Data 3 Act passed the National Assembly in early 2020, the legal basis for using data, a key resource in the era of the 4th industrial revolution, was prepared. And as the use and research of personal information became active, the management of personal information became more important. In this regard, the concept of identity management is also evolving into a self-sovereign identity (SSI) model that allows individuals to directly manage personal information by themselves after going through the past individual identity model and federated identity model respectively. Recently, the development and use of blockchain-based distributed identification (DID) technology has been increasing remarkably in the private sector, but the introduction of DID is relatively incomplete in the military domain. In this paper, we develop a private blockchain-based Defense DID technology and propose a method for establishing a military access control system based on the developed Defense DID technology. In addition, we present a plan to link civil, public, and military services through the establishment of the Defense DID ecosystem.
표준기록관리시스템 기능 평가 : 접근관리 기능을 중심으로
[NRF 연계] 한국기록학회 기록학연구 Vol.38 2013.10 pp.3-35
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
실체가 있는 종이기록물은 물리적 접근이나 통제가 비교적 손쉽다. 그러나 전자기록의 경우 권한이 있다면 누구나 접근할 수 있는 활용적 측면이 강조되어 전자기록의 진본성과 무결성을 보장하기 위한 적절한 기준과 안정성이 중요하다. 본 연구는 표준기록관리시스템이 전자기록의 품질요건을 유지하는 데 중요한 역할을 하는 접근관리 기능에 대해 국내외 기능 요건서 및 표준에서 최소한의 필수항목을 추출하여 체크리스트를 작성하였다. 이 체크리스트를 바탕으로 표준기록관리시스템이 접근관리를 위한 기능을 제대로 구현하였는지 평가하고, 실제 기록관리업무에 어떻게 활용되고 있는지 사용현황을 알아보았다. 기록물관리 전문요원은 대체로 접근관리기능을 사용하지 않는데, 이는 기록관리시스템의 활용이 아직 많지 않아서 필요성을 느끼지 못했기 때문인 것으로 드러났다. 표준기록관리시스템이 보다 활성화된 시스템으로 거듭나기 위해서는 기능 통합 등 시스템적인 개선과 더불어 다음의 사항을 고려해야 한다. 첫째, 접근권한 설정에 대한 명확한 규정이 필요하다. 둘째, 문서보안 솔루션을 통해 수행하고 있는 접근 통제를 기록관리시스템에서도 구현할 수 있는 방안이 필요하다. 셋째, 기록관리시스템을 사용하는 기록물관리 전문요원이 지속적인 평가와 개선을 통해 시스템을 진화시켜야 한다. 넷째, 기록관리시스템의 기능개선을 위한 공론화의 장이 필요하다. 그동안 기록관리시스템에 대한 논의는 학계에서 공론화하여 논의를 하기 보다는 불평불만을 직설적으로 말함으로 협력을 통한 소통을 불가능하게 해왔다. 학계, 정부, 그리고 기록학을 공부하는 연구자 모두 서로 발전하는 방향으로 논의를 진행해야 한다.
The physical access or control of records with material entities is relatively easy. However, in the case of electronic records, due to its heightened applicative aspect that allows anyone with the authority to have access over the data, it requires an appropriate standard and stability to ensure the authenticity and integrity of electronic records. This study performed functional evaluation by extracting the minimum critical items from the national functional requirements documents and standards to explore the access control function that play an important role for the standard records management system to maintain quality requirements of electronic records. Based on this checklist, it evaluates whether the standard records management system properly carries out the access control function and investigates the current condition of application to practical records management work. Records managers generally do not use access control function, which may be because they do not feel the necessity, since the application of records management system is not yet actively promoted. In order for the standard records management system to be developed to become a more active system, it requires system improvement as well as considerations for below factors:First, although the necessity of establishing access control conditions is already recognized, it requires a clear stipulation of the regulation. Second, measures must be taken to implement access control in the records management system through document security solution. Third, it requires self-reflection of records manager, who utilizes the records management system. Instead of placing all responsibility on the National Archives, which established the system, professionals must further develop the system through continuous evaluation and improvement. Finally, a general discussion is required to publicize the issue of functional improvement of records management system. Although there is a bulletin board already created for this purpose, its users are extremely limited and it only deals with current problems. A space in online as well as in offline is required to solve the fundamental problems and exchange opinions.
딥러닝 얼굴인식 기술을 활용한 방문자 출입관리 시스템 설계와 구현 KCI 등재
한국디지털정책학회 디지털융복합연구 제19권 제2호 2021.02 pp.245-251
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
1,2인 가구가 꾸준하게 늘어나고 있는 추세에 비어 있는 시간대에 집을 방문하는 외부인이 누구인지 확인하고 싶은 요구가 증가하고 있다. 얼굴인식 기술은 많은 연구를 통해 여러 가지 모델이 제안되었는데 OpenCV의 Harr Cascade와 Dlib의 Hog가 대표적인 오픈소스 모델이다. 두 모델은 사용 환경에 따른 장단점을 가지고 있는데, 본 연구 에서 초점을 둔 실내 현관 앞과 제한된 거리에서는 Dlib의 Hog가 강점을 가진다. 본 논문에서는 딥러닝 오픈 소스인 Dlib에 기반을 둔 얼굴인식 방문자 출입관리 시스템을 설계하고 구현하였다. 전체 시스템은 프론트 모듈과 서버모듈, 모바일모듈로 구성되며 세부적으로는 얼굴등록, 얼굴인식, 실시간 방문자 확인 및 원격제어, 동영상 저장 기능을 포함한 다. 인터넷에서 공개된 사진을 이용하여 거리임계 값의 변화에 따른 정밀도, 특이도, 정확도를 구하고 선행연구 결과와 비교하였다. 실험 결과 구현된 시스템이 정상적으로 동작하는 것을 확인 하였으며 Dlib에서 보고한 것과 비슷한 결과를 보이는 것을 확인 하였다.
As the trend of steadily increasing the number of single or double household, there is a growing demand to see who is the outsider visiting the home during the free time. Various models of face recognition technology have been proposed through many studies, and Harr Cascade of OpenCV and Hog of Dlib are representative open source models. Among the two modes, Dlib's Hog has strengths in front of the indoor and at a limited distance, which is the focus of this study. In this paper, a face recognition visitor access system based on Dlib was designed and implemented. The whole system consists of a front module, a server module, and a mobile module, and in detail, it includes face registration, face recognition, real-time visitor verification and remote control, and video storage functions. The Precision, Specificity, and Accuracy according to the change of the distance threshold value were calculated using the error matrix with the photos published on the Internet, and compared with the results of previous studies. As a result of the experiment, it was confirmed that the implemented system was operating normally, and the result was confirmed to be similar to that reported by Dlib.
4차 산업혁명 시대의 군사기지 출입통제 시스템 개선방안
한국재난정보학회 한국재난정보학회 학술발표대회 중대시민재해방지를 위한 산·학·관·연 재난정보공유방안 2022.10 pp.126-127
NAC 시스템의 시험방법과 평가사례에 관한 연구 KCI 등재
한국디지털정책학회 디지털융복합연구 제12권 제9호 2014.09 pp.159-168
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
인터넷과 이동통신 기기의 발전으로 인해 개인의 경제활동에 관련된 인터넷뱅킹, 인터넷대출, 스마트폰등과 같은 이동통신기기를 이용한 모바일 뱅킹이 활성화되고 있다. 이에 따라 신종 범죄를 막기 위해 보안 시스템들이 새 롭게 선보이고 있으며, 앞으로 보안 시스템의 시장은 날로 늘어날 것으로 보고 이에 따른 보안 시스템들에 대한 질 적인 발전이 지속적으로 요구되고 있다. 따라서 보안시스템 제품의 시장이 지속적으로 성장할 것으로 예상되는 시점 에서 보안 시스템의 품질평가 요구에 대응하기 위해 본 논문에서는 보안 시스템중의 네트워크 접근제어시스템 분야 의 기반기술과 표준을 조사하고, 동향을 분석하여 관련 시스템의 시험과 평가방법을 제안하여 네트워크 접근제어시 스템의 품질평가 방법과 체계를 제안하였다.
With the advancement of internet and mobile communication devices, mobile banking such as internet banking, internet loan and smart phones related to the people's economic activities using mobile communication devices is becoming increasingly more popular. Various security systems to prevent such new crimes are being introduced and the security system market is anticipated to continuously increase substantially in the future. Accordingly, qualitative advancement of the security systems are also in continuous demand. Therefore, this thesis proposes the method and system for quality evaluation of the network access control system by proposing testing and evaluating method for the relevant system through surveying and analyzing the tend in the foundation technologies and standards in the area of network access control system, which is one of the security systems, in order to cope with the demands for the evaluation of the quality of the security system as the security system product market is anticipated to grow continuously.
클라우드 시스템에서 사용자 접근 제어를 위한 자원 그룹 트리 및 계층적 CRT 기반 사용자 접근제어 기법 KCI 등재
한국차세대컴퓨팅학회 한국차세대컴퓨팅학회 논문지 Vol.9 No.6 2013.12 pp.66-77
최근 빅데이터를 신속하게 처리할 수 있는 클라우드 컴퓨팅 시스템이 중요시되고 있다. 그러나 클라우드 컴퓨팅 환경에서 빅데이터를 기반으로 제공되는 서비스는 다수의 사용자를 대상으로 하기 때문에, 사용자 접근 권한 제어를 수행하기 위한 키 관리 비용이 높은 문제점을 지닌다. 이러한 문제점을 해결하기 위해 인증키를 최소화하고, 사용자 권한 갱신 시 업데이트 비용을 최소화하기 위한 기법이 필요하다. 따라서 본 논문에서는 자원 그룹 트리 및 계층적 CRT 기반 사용자 접근제어 기법을 제안한다. 제안하는 기법은 자원 그룹 트리를 기반으로 사용자 접근제어를 위한 키의 개수를 감소시키며, 계층적 CRT 기반 인증을 통해 키 갱신 비용을 감소시킨다. 마지막으로 성능평가를 통해 제안하는 기법이 기존 기법에 비해 키 생성 비용과 키 갱신비용 측면에서 우수함으로 보인다.
Recently, the cloud computing which can quickly process a big data has been attracted. However, services using big data on the cloud computing environment consider a lot of users, there exists a problem that a cost of the key management for the access control is high. To solve these problems, a method for reducing the total number of keys and minimizing the key update cost for users whose access right have been changed are required. Therefore, we, in this paper, propose a minimum spanning tree and a hierarchical CRT based user access control scheme. The proposed scheme reduces the number of authentication keys based on the minimum spanning tree. In addition, the proposed scheme reduces the update costs by applying CRT(Chinese Remainder Theorem) to user groups in a hierarchical manner. Finally, we show from the performance analysis that the proposed scheme outperforms the an existing scheme in terms of the generation costs and updating costs of the authentication keys.
VLAN 환경에서 네트워크 주소 인증을 통한 정책 기반 실시간 시스템 제어 기술 연구 KCI 등재후보
한국융합보안학회 융합보안논문지 제5권 제1호 2005.03 pp.35-43
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
네트워크(IP/MAC) 주소를 관리함에 있어 네트워크의 임의의사용자가 사용자가 사용 중인 네트워크 장비 혹은 PC의 IP 주소나 네트워크 인터페이스 카드를 임의적으로 또는 악의적으로 변경하는 것을 차단할 필요성이 있다. 또한 새로운 네트워크 자원 장비의 도입 시 수많은 네트워크 자원을 임의적으로 할당하지 않고, 관리자가 관리하게 됨으로써 효율적인 자원관리 및 네트워크 문제 발생시 신속한 대처를 할 수 있어야 한다. 이것은 하위레벨에서의 네트워크 관리 및 보안을 유지할 수 있게 한다. 그러나 이러한 작업을 현재는 대부분 관리자에 의한 수작업으로 진행하고 있으며 이로 인한 관리 인력의 낭비와 업무능률의 저하는 관리효율 자체의 저하로 이어진다. 본 논문에서는 기업이나 관공서에서 사용되는 VLAN 환경에서 네트워크 주소 인증을 통해 보안성을 더욱 향상시키기 위한 방안을 제시하고자 한다.
It is need to control network access that a user personally change own IP or network devices in managing network address. Also, When we use new network devices or assign network address, we do them by design, not arbitrarily. And then, we can immediately control network's problems. It could be used network management and security in low level. But most of managers do this works by hand not automatically. This paper propose the solutions that improve the security by network address authentication in VLAN environment, such as corporations and public offices.
멀티 운영체제 기반의 파일 접근 제어 모듈 설계 및 구현 KCI 등재후보
한국융합보안학회 융합보안논문지 제7권 제4호 2007.12 pp.123-131
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 각종 보안 침해 사고는 불특정 다수를 대상으로 발생하고 있으며, 이는 네트워크를 통한 정보의 공유가 가속화되면서 그 피해가 더욱 늘어나고 있다. 이러한 보안 침해 사고는 침입차단시스템, 침입탐지시스템, 가상사설망 등 정보보호시스템의 활용으로 최소화가 가능하지만, 이는 전문가적인 지식이 필요하며 일반 사용자가 운영하기가 쉽지 않다. 본 논문에서는 일반 사용자가 쉽게 사용할 수 있도록 파일 접근 제어 모듈을 설계 및 개발하였고, 이는 공격에 대한 탐지가 아닌 운영체제상에서 공격에 대한 차단할 수 있다. 본 논문에서 구현한 파일 접근 제어 모듈은 윈도우환경 뿐만 아니라 리눅스 환경에서도 적용할 수 있으며, 다중 사용자가 사용하는 운영체제에 따라 파일에 대한 접근 제어를 함으로써 파일에 대한 접근제어, 무결성, 부인 방지를 할 수 있다
Recently, various threat and security incident are occurred for unspecified individuals, and this problem increases as the rapid of information sharing through Internet. The using of Information Security System such as IDS, Firewall, VPN etc. makes this problem minimal. However, profesional knowledge or skil is needed in that case, normal user can’t operate the Information Security System. This paper designs and implements File Access Control to use easily for normal user against malicious threats and attacks. The FACM can exclude from malicious threats and attacks based on operation system rather than detection of threats and attacks. The FACM is working not only Windows System but also Linux System, and the FACM has effect on acces control, integrity and non-repudiation for a file with an access control over files on the each OS that are used by multi-user.
옥상 출입 통제 문제 해결을 위한 지능형 CCTV 기반 비상 상황 감지 시스템 제안 KCI 등재
한국융합보안학회 융합보안논문지 제24권 제1호 2024.03 pp.59-68
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 인공지능 기술의 발전으로 한강 교량이나 건설 현장 등 수많은 환경에 지능형 CCTV가 설치 및 운용되고 있다. 한편 사고 및 범죄 유발의 가능성, 재해 시 대피 공간으로의 활용도로 인해 건축물 옥상 개폐 여부에 대한 대립이 존재한다. 법률에 서는 지정된 건축물 옥상 출입문의 상시 개방을 원칙으로 하고 있지만, 사실상 방범의 이유로 암묵적으로 폐쇄를 허용하고 있 으며 마땅한 법적 조치가 부재하다. 본 연구는 이러한 맥락에서, 지능형 CCTV를 활용하여 옥상에서 발생할 수 있는 비상 상 황에 대응하기 위한 감지 시스템을 제안한다. YOLOv5 객체 탐지 모델을 기반으로 한 폭행 및 투신 상황을 실시간으로 감지하 는 시스템을 구축하였으며, 새로운 메트릭 IoP(Intersection Over Person)를 도입하여 투신 상황을 평가하였다. 실험 결과, 제안 된 시스템은 폭행 및 투신 상황을 신속하게 탐지하며 높은 정확도를 보여주었다. 또한, 옥상 출입문 관리에 관한 법제 분석을 통해 옥상 출입문 개방과 CCTV 설치에 대한 제도적 미비점을 파악하고 개선방안을 제시하였다. 기술적·법적인 개선으로 옥 상 환경에서의 범죄 및 사고 발생이 감소할 것으로 기대된다.
With advancements in artificial intelligence technology, intelligent CCTV systems are being deployed across various environments, such as river bridges and construction sites. However, a conflict arises regarding the opening and closing of rooftop access points due to concerns over potential accidents and crime incidents and their role as emergency evacuation spaces. While the relevant law typically mandates the constant opening of designated rooftop access points, closures are often tacitly permitted in practice for security reasons, with a lack of appropriate legal measures. In this context, this study proposes a detection system utilizing intelligent CCTV to respond to emergencies that may occur on rooftops. We develop a system based on the YOLOv5 object detection model to detect assault and suicide attempts by jumping, introducing a new metric to assess them. Experimental results demonstrate that the proposed system rapidly detects assault and suicide attempts with high accuracy. Additionally, through a legal analysis of rooftop access point management, deficiencies in the legal framework regarding rooftop access and CCTV installation are identified, and improvement measures are proposed. With technological and legal improvements, we believe that crime and accident incidents in rooftop environments will decrease.
학사정보시스템에서 역할기반 접근제어기술 적용을 위한 프라이버시 정책 수립에 관한 연구
한국어정보학회 한국어정보학 제12권 2호 2010.12 pp.41-47
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
The Information of students who are the subjects in educational institution has been being used and recorded under the name of academic management. However, in relation to privacy protection, frequent misuse and abuse of the information has been occurred because their information is used imprudently without consent of the subjects. To prevent violating student’s privacy, we were required to build a personal information protection system which can block reckless access and give restrictively authority to a user who needs access. This paper attempts to apply role-based access control technology to academic affairs information system after researching the status of privacy protection of Chinese students through system of Yanbian University of Science & Technology. Moreover, this thesis introduced role-category and delegation-relations for privacy policy establishment, proposed information flow from the point of view of privacy protection, and established privacy policy to prevent the leaking of personal information caused by frequent delegation.
웹 기반 의료정보시스템 다중 접근제어를 위한 소프트웨어아키텍쳐 설계방법 KCI 등재후보
한국융합보안학회 융합보안논문지 제11권 제4호 2011.08 pp.43-49
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
웹 기반 의료정보는 많은 편리성을 제공하지만 공개된 네트워크 환경에서 나타나는 보안 취약성을 해결하지 않은 채 정보노출의 위험속에 사용이 확대되고 있다. 웹 기반 의료정보 접근시 보안문제에 대한 안전한 방법론 강구없이 기술만 발전시키려한다면 또 다른 위협의 요소를 증가시키는 것이다. 따라서 웹에 기반한 정보활용 보안대책 으로서 웹 기반 의료정보 접근제어 보안 메커니즘 기반 설계가 필요하다. 본 논문은 소프트웨어 아키텍쳐 설계사상을 기반으로 하여 의료정보시스템 접근제어 보안 메커니즘 기반을 설계 하였다. 그 방법론은 새로운 설계절차를 도출하고 아키텍쳐를 설계하며 기능 메커니즘 알고리즘을 구성하는 것 이다. 이를위해서는 웹 기반 다중 환자 정보 접근제어를 위한 보안 아케텍쳐 인프라스트럭가 필요하다. 제안하는 소프트웨어아케텍쳐는 소프트웨어 프레임워크를 도출하고 기능 메커니즘을 구성하는 기반에 관한 구조도를 도출했다. 제안된 시스템를 활용하여 의료정보 어플리케이션을 설계할때 의료정보 사용자는 실시간으로 데이터를 검색하면서도 통합화된 접근제어 알고리즘의 보장하에서 정보관리 안전성을 확보하는 시스템 설계가 가능하다.
Web-based health information provides a lot of conveniences, however the security vulnerabilities that appear in the network environment without the risk of exposure in the use of information are growing. Web-based medical info rmation security issues when accessing only the technology advances, without attempting to seek a safe methodology are to increase the threat element. So it is required. to take advantage of web-based information security measures as a web-based access control security mechanism-based design. This paper is based on software architecture, design, ideas and health information systems were designed based on access control security mechanism. The methodo logies are to derive a new design procedure, to design architecture and algorithms that make the mechanism function. To accomplish this goal, web-based access control for multiple patient information architecture infrastructures is needed. For this software framework to derive features that make the mechanism was derived based on the structure. The proposed system utilizes medical information, medical information when designing an application user retrieves data in real time, while ensuring integration of encrypted information under the access control algorithms, ensuring the safety management system design.
인원 출입 권한과 연계한 스마트폰 카메라 제어 시스템 KCI 등재
한국융합학회 한국융합학회논문지 제8권 제11호 2017.11 pp.93-101
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 연구의 목적은 기업체의 임직원이나 협력사 직원들이 스마트폰 카메라를 이용해 기업의 제품 도면이나 기밀유지가 보장되어야 하는 제품 개발 시 진행되었던 업무 내용이 저장된 문서 등을 스마트폰 카메라로 촬영하여 외부로 유출하는 것을 사전에 차단하고자 한다. 본 연구에서는 허가된 사용자에 대한 사진 촬영과 기업체 내부에서만 촬영된 데이터를 공유할 수 있게 하는 인원 출입 권한과 연계한 스마트폰 카메라 제어시스템을 제안한다. 이를 위해 기업체에 상주하는 임직원, 협력사 직원들과 방문객들의 스마트폰 제어 프로그램(MCS : Mobile Camera Control System) 대한 설치현황을 개발하여 출입이 허가된 지역에서 설치된 스마트폰 제어 프로그램 작동여부를 실험 및 분석한다. 또한, 방문객들이 기업체 방문 시 스마트폰 카메라를 통한 사진 촬영의 방지효과와 스마트폰 카메라 렌즈부분에 부착하는 봉인 스티커 비용의 절감효과가 나타났다.
The purpose of this paper is to investigate the effect of the smart phone camera on the company's employees or employees of partner companies, we want to block things in advance. In this paper, we propose a smart phone camera control system which is connected with the personnel access right which enables to share the photographed image of the authorized user and the data shot only within the enterprise. To this end, we have developed the installation status of smart phone control program (MCS: Mobile Camera Control System) of employees, employees and visitors of company, and experimented and analyzed whether the smart phone control program installed in the authorized area. In addition, when visitors visited the company, the effect of prevention of photograph shooting through smart phone camera and the cost of seal sticker attached to the smart phone camera lens part were reduced.
보안공학연구지원센터(IJCA) International Journal of Control and Automation Vol.8 No.11 2015.11 pp.63-68
※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.
Most of existing doorway systems are directly controlled by a central system. Most of central control systems have the function of fingerprint recognition, biometrics (face, iris), encryption key and so on. However, it costs a lot of money and may be vulnerable to security, and inspection history management is inconvenient because most of I/O devices like readers are connected with external networks. We will study automatic doorway control systems based on authorized encryption key from servers under Bluetooth local networks linked with smart phones. We aimed to construct a doorway Access control system by using smart phones. In addition to this, the server we studied can control automatic doorway systems and access authorization of visitors including inspection history management of engineers. It also provides real time monitoring function by transmitting the status information to smart phones.
0개의 논문이 장바구니에 담겼습니다.
선택하신 파일을 압축중입니다.
잠시만 기다려 주십시오.