Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 22
No
1

스마트 카드 및 동적 ID 기반 멀티서버 원격 사용자 인증 프로토콜의 취약점 분석 KCI 등재

권순형, 변해원, 최윤성

한국융합보안학회 융합보안논문지 제23권 제4호 2023.10 pp.43-52

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

많은 기업과 단체들은 원격 접근을 위해 스마트카드 기반 사용자 인증을 사용한다. 그 동안 다양한 연구를 통하여 사용자 와 서버 간의 연결을 보호하기 위해 분산된 다중 서버 환경에 대한 동적 ID 기반 원격 사용자 인증 프로토콜들이 제안되었다. 그 중, Qiu 등은 상호 인증 및 키 동의, 사용자 익명성, 다양한 종류의 공격에 대한 저항을 제공하는 효율적인 스마트카드 기 반 원격 사용자 인증 프로토콜을 제안하였다. 이후, Andola 등은 Qiu 등이 제안된 인증 프로토콜에 대한 다양한 취약점을 찾 아내었고, 그들의 인증 프로토콜에 대한 결점을 극복하고 사용자가 서버에 로그인하기를 원할 때마다 로그인하기 전에 사용자 ID가 동적으로 변경되는 향상된 인증 프로토콜을 제안하였다. 본 논문에서는 Andola 등이 제안한 프로토콜의 동작 과정 및 취약점을 분석하여, Andola 등이 제안한 프로토콜이 offline smart card attack, dos attack, lack of perfect forward secrecy, session key attack에 취약하다는 것을 밝혔다.

Many businesses and organizations use smartcard-based user authentication for remote access. In the meantime, through various studies, dynamic ID-based remote user authentication protocols for distributed multi-server environments have been proposed to protect the connection between users and servers. Among them, Qiu et al. proposed an efficient smart card-based remote user authentication system that provides mutual authentication and key agreement, user anonymity, and resistance to various types of attacks. Later, Andola et al. found various vulnerabilities in the authentication scheme proposed by Qiu et al., and overcame the flaws in their authentication scheme, and whenever the user wants to log in to the server, the user ID is dynamically changed before logging in. An improved authentication protocol is proposed. In this paper, by analyzing the operation process and vulnerabilities of the protocol proposed by Andola et al., it was revealed that the protocol proposed by Andola et al. was vulnerable to offline smart card attack, dos attack, lack of perfect forward secrecy, and session key attack.

2

Controller Area Network 의 실시간 서비스 품질 향상을 위한 동적 ID 할당 알고리즘 개발

이석, 하경남, 이경창

[Kisti 연계] 한국정밀공학회 한국정밀공학회지 Vol.26 No.10 2009 pp.40-46

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Recently CAN (Controller Area Network) is widely used as an in-vehicle networking protocol for intelligent vehicle. The identifier field (ID) of CAN is used not only to differentiate the messages but also to give different priorities to access the bus. This paper presents a dynamic 10 allocation algorithm in order to enhance the real-time quality-of-service (QoS) performance. When the network traffic is increased, this algorithm can allocate a network resource to lower priority message without degradation of the real-time QoS performance of higher priority message. In order to demonstrate the algorithm's feasibility, message transmission delays have been measured with and without the algorithm on an experimental network test bed.

3

스마트카드 및 동적 ID 기반 전기 자동차 사용자 인증 스킴 KCI 등재

정수영, 곽진

한국디지털정책학회 디지털융복합연구 제11권 제7호 2013.07 pp.141-148

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

스마트그리드는 정보통신기술을 이용하여 전력공급자와 소비자의 양방향통신을 가능하게 한다. 또한 동적인 전력 공급이 가능하기 때문에 전기 자동차 기술과 접목시킬 경우 전기 자동차 충전 인프라를 활성화시키고 전기 자동차의 배터리를 가정용 축전지로 활용하여 재판매할 수도 있다. 이러한 전기 자동차 충전 인프라는 가정, 아파트, 건물, 기타 충전소 등에 고정적으로 위치하여 있고 사용자만 유동적으로 서비스를 이용한다. 만약 유동적으로 서비스를 이용하는 사용자에 대해 인증이 이루어지지 않을 경우 전력 서비스의 불법적인 사용, 전력 정보 유출, 불법적인 전력 요금 변경 등의 피해가 발생할 수 있다. 본 논문에서는 스마트그리드 환경에서 안전하게 전기 자동차 관련 서비스를 이용하기 위해 스마트카드 및 동적 ID 기반 사용자 인증 스킴을 제안한다.

Smart grid can two-way communication using ICT(Information & Communication Technology). Also, smart grid can supply to dynamic power that grafted to electric vehicle can activate to electric vehicle charging infrastructure and used to storage battery of home. Storage battery of home can resale to power provider. These electric vehicle charging infrastructure locate fixed on home, apartment, building, etc charging infrastructure that used fluid on user. If don't authentication for user of fluid user use to charging infrastructure, electric charging service can occurred to illegal use, electric charges and leakgage of electric information. In this paper, we propose smartcard and dynamic ID based user authentication scheme for used secure to electric vehicle service in smart grid environment.

4

Multi-server environments are that the user registers the single registration server and since the user uses the service to authenticate on multi-server. For this, many user authentication schemes have been proposed for multi-server environments. In 2013, Li, et al., proposed dynamic ID based remote user authentication scheme for multi-server environments. Unfortunately, their scheme is vulnerable to forgery attacks and replay attacks. In this paper, we analyze the security vulnerabilities of Li et al.’s scheme, and propose dynamic ID based remote user authentication scheme for multi-server environments. The proposed scheme ensures the safety to various attacks such as forgery attacks and replay attacks. Just like the existing schemes, our scheme is efficient at using the hash function and exclusive-OR operation.

5

A New Remote User Authentication Scheme based on Graphical Password using Smart Card SCOPUS

Khanjan Ch. Baruah, Subhasish Banerjee, Manash P. Dutta, Chandan T. Bhunia

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.9 No.12 2015.12 pp.237-244

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Remote user authentication schemes provide a system to verify the legitimacy of remote users’ login request over insecure communication channel. Since last few years many authentication schemes have been proposed including several new features and ideas. But, due to the advancement of computational process they are suffering from various possible attacks. This is the reason because of which attaining the security becomes a prime issue and major challenge among the researchers. In this paper, we have proposed a new user friendly authentication scheme that can provide the higher security at lower computational cost. This scheme provides extra level of security by adopting the user-defined image for password generation. Finally, the security analysis and performance evaluation are made to proof the efficiency of our scheme.

6

Improvement of the more efficient & secure ID-based remote mutual authentication with key agreement scheme for mobile devices on ECC

Toan-Thinh TRUONG, Minh-Triet TRAN, Anh-Duc DUONG

한국정보기술융합학회 JoC Volume3 Number2 2012.06 pp.19-30

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Mobile devices (e.g., PDAs, mobile phones and note book PCs) are a necessary convenience in modern life. They can be used to access many applications, such as online shopping, mobile pay TV and internet banking, which are easily accessible on the internet or wireless networks. Therefore, secure communication in such wireless environments is increasingly important because it protects transactions between users and servers from illegal adversaries. Users are people vulnerable to attack and there have been many authentication schemes proposed to guarantee their security. Recently, Islam and Biswas have proposed a more efficient and secure ID-based scheme to enhance security and authentication for mobile devices on ECC. They claim that their scheme is more secure and able to resist various attacks than previous ones. However, thisisn’t true, because their scheme is vulnerable to known session-specific temporary information attack and denial of service resulting from leaking server’s database attacks. In this paper, we present an improvement to their scheme in order to overcome such problems

7

Security on Dynamic ID-based Authentication Schemes SCOPUS

Jingxuan Zhai, Tianjie Cao, Xiuqing Chen, Shi Huang

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.9 No.1 2015.01 pp.387-396

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Dynamic ID-based authentication schemes based on password and smart card are widely used to provide two-factor authentication and user anonymity. However, these schemes have one or the other possible security weaknesses. In this paper, we analyze the schemes of Li et al. and Wang et al. published in recent years. After the analysis, we demonstrates that Li et al.’s schemes are vulnerable to off-line password guessing attack if the user’s identity is compromised, Li et al.’s scheme cannot withstand the impersonation attack and linkability attack, Wang et al.’s schemes cannot resist off-line password guessing attack if the attacker steals a smart card, Wang et al.’s schemes fail to provide forward security. Our result shows that none of the existing dynamic ID based authentication schemes can achieve all the desirable security goals.

8

An Improved Secure Dynamic ID-based Remote User Authentication Scheme with Key Agreement using Symmetric Cryptology SCOPUS

Mijin Kim, Junghyun Nam, Dongho Won

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.7 No.3 2013.05 pp.143-152

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

A dynamic ID-based user authentication scheme is designed to protect leakage of a user’s partial information from intruders while enabling authenticated users to be granted access to the network service. In 2012, Wen and Li proposed a dynamic ID-based remote user authentication scheme with key agreement and claimed that their scheme resisted impersonation attacks and avoided leakage of partial information. However, Kim, et al., described that Wen and Li’s scheme could leak some key information to an adversary and is vulnerable to a man-in-the-middle attack launched by any adversary. In this paper, we show how to solve the vulnerabilities in Wen and Li’s scheme.

9

An Improved Secure Dynamic ID Based Remote User Authentication Scheme for Multi-Server Environment SCOPUS

Cheng-Chi Lee, Yan-Ming Lai, Chun-Ta Li

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.6 No.2 2012.04 pp.203-210

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Recently, Lee et al. proposed a secure dynamic ID based remote user authentication scheme for multi-server environment. They claimed their scheme can remedy the weaknesses of prior schemes and is thus more effective. However, we find Lee et al.'s scheme still fails to achieve the anonymity and has the security weakness of a smart card clone. In this article, we shall propose a new scheme to improve Lee et al.’s scheme. Our scheme not only overcomes the weaknesses of Lee et al.'s scheme, but also maintains a high efficiency standard.

10

A Novel Approach for Dynamic Message ID Allocation in Application Specific can Architecture

Maandvi Sharma, Navdeep Prashar

보안공학연구지원센터(IJSIP) International Journal of Signal Processing, Image Processing and Pattern Recognition Vol.8 No.8 2015.08 pp.169-176

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Scheduling messages on the controller area network (CAN) corresponds to assigning identifiers (ID’s) to messages according to their priorities. This paper presents a technique of dynamic scheduling in cars using CAN architecture. Static scheduling Id allocation method has several problems like delay, starvation and less accuracy. To overcome these problems the Dynamic approach of message id allocation from message id window is proposed in this paper, which increases the randomness and decreases the biasness by dynamically changing priorities in a CAN network. CAN based architecture is presented and design is implemented using Xilinx device.

11

동적 ID 기반 원격 사용자 인증 스킴의 보안성 개선 KCI 등재

주영도, 안영화

국제인공지능학회(구 한국인터넷방송통신학회) 한국인터넷방송통신학회 논문지 제11권 제6호 2011.12 pp.303-310

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

최근에 사용자 인증과정의 보안 취약점을 개선시킨 스마트 카드 기반의 사용자 인증 스킴들이 소개되었다. 2009년에 Wang[10]등은 Das[5]의 스킴의 보안 문제점을 개선하여 보다 효율적이고 안전성 있는 동적 ID 기반 원격사용자 스킴을 제안하였다. Wang 등은 자신들의 스킴이 인증과정에서 패스워드 독립성에 기인한 위협요인으로부터 안전할 뿐 아니라, 사용자와 원격 인증 서버 간 상호인증을 제공하고 있다고 주장한다. 본 논문은 Wang 등의 보안 스킴을 분석하고, 제안된 스킴이 중간자 공격 및 off-line 패스워드 추측 공격에 취약하다는 것을 증명한다. 또한 그들의 스킴이 상호인증을 제공하지 못함을 보여준다. 또한 본 논문에서는, 비록 스마트 카드의 비밀정보가 노출된다 하더라도, 이와같은 보안 문제점들을 해결한 개선된 스킴을 제안한다. 제안된 스킴은 사용자 위장 공격, 서버 위장 공격 그리고 off-line 패스워드 추측 공격에 안전하고, 계산 복잡도에서 Wang등의 스킴보다 효율적임을 알 수 있다.

Recently, many user authentication schemes using smart cards have been proposed to improve the security weaknesses in user authentication process. In 2009, Wang et al.[10] proposed a more effective and secure dynamic ID-based remote user authentication scheme to improve the security weakness of Das et al.’s scheme[5], and asserted that the improved scheme is secure against independent of password in authentication phase and provides mutual authentication between the user and the remote server. However, in this paper, we analyze the security of Wang et al. scheme and demonstrate that Wang et al.’s scheme is vulnerable to the man-in-the-middle attack and the off-line password guessing attack. In addition, we show that Wang et al. scheme also fails to provide mutual authentication. Accordingly, we propose an improved scheme to overcome these security weakness even if the secrete information stored in the smart card is revealed. Our proposed scheme can withstand the user impersonation attack, the server masquerading attack and off-line password guessing attack. Furthermore, this improved scheme provides the mutual authentication and is more effective than Wang et al.’s scheme in term of the computational complexities.

12

취근에, 멀티서버 환경을 위한 스마트 카드를 이용한 사용자 인증 방식이 실질적인 응용 분야에서 적용되고 있다. 2009년도에 Liao-Wang은 멀티서버를 위한 안전한 동적 ID 기반 원격 사용자 인증 방식을 제안하였다. 이 방식 은 여러 종류의 가능한 공격에 안전하면서 사용자 익명성 보장하였다. 본 논문에서 우리는 Liao-Wang의 방식에 대한 안정성을 분석하고, Liao-Wang의 방식이 위조 공격, 패스워트 추측 공격, 세션키 공격 그리고 내부자 공격에 취약하 다는 것을 보여준다. 추가로 Liao-Wang의 방식이 사용자와 서버간의 사용자 익명성 역시 제공하지 못한다는 것을 증 명한다.

Recently, user authentication schemes using smart cards for multi-server environment have been proposed for practical applications. In 2009, Liao-Wang proposed a secure dynamic ID based remote user authentication scheme for multi-server environment that can withstand the various possible attacks and provide user anonymity. In this paper, we analyze the security of Liao-Wang’s scheme, and we show that Liao-Wang’s scheme is still insecure against the forgery attack, the password guessing attack, the session key attack, and the insider attack. In addition, Liao-Wang’s scheme does not provide user anonymity between the user and the server.

13

동적 ID 할당과 샘플링 주기 결정 기법을 결합한 CAN 기반 제어시스템의 효율적인 네트워크 관리기법 KCI 등재후보

안현식, 기영훈, 안봉주, 문찬우, 정구민, 김도현, 이영대

국제인공지능학회(구 한국인터넷방송통신학회) 한국인터넷방송통신학회 논문지 제7권 제6호 2007.12 pp.37-44

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

현재 차량 내 네트워크에서 주로 쓰이는 CAN 프로토콜은 네트워크 내에 다수의 노드가 연결되어 동작하는 경우 우선순위가 낮은 메시지의 전송지연이 심각하게 발생할 수 있다. 이를 해결하기 위해 다양한 제어 방법들이 제안되어 시험되고 있는데, 본 논문에서는 동적 ID 할당 기법을 연료전지 하이브리드 자동차 네트워크 시스템에 적용하여 각 장치들 간의 메시지 전송 지연문제를 해결 하며, 또한 이로 인해 발생하는 차량 내 네트워크 시스템의 수행 주기 변화의 문제점을 샘플링 주기 결정 기법을 이용하여 효율적으로 해결하였다.

To improve efficiency of inter-module communication in vehicle, a new CAN-based control system and scheduling algorithm which uses dynamic ID allocation and sampling period decision method is proposed. Experiments are conducted to evaluate the properties of the proposed system using a hardware simulator.

14

Random Dynamic ID를 이용한 광고제거 방지 기법

한소정, 용환승

[Kisti 연계] 한국정보과학회 한국정보과학회 학술대회논문집 2006 pp.612-615

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

오늘날 사람들은 점차 인터넷 사용에 익숙해져 가고 있으며, 소비자들로 하여금 공유와 참여를 적극적으로 유도하는 웹 2.0 시대가 본격화 되면서, 사이트에 묶여있던 컨텐츠를 브라우저상에서 마음대로 변형시킬 수 있는 그리스몽키가 등장하였다. 사용자들은 그리스몽키의 유저스크립트를 통해, 보기 싫은 광고를 제거하거나 보고자 하는 대로 변형시킴으로써 광고를 기반으로 사이트를 운영하는 기업이나, 사이트 운영자들은 사용자들에게 꼭 전달해야 하는 광고를 전달하지 못하는 경우가 발생하여 사이트를 운영 하는데 큰 손실을 줄 수가 있기 때문에, 광고제거 방지를 위한 연구가 필요하다. 본 논문에서는 이러한 그리스몽키의 광고제거 방지방법에 관하여 제안한다.

15

Dynamic ID randomization for user privacy in mobile network

Arijet Sarker, SangHyun Byun, Manohar Raavi, Jinoh Kim, Jonghyun Kim, Sang-Yoon Chang

[Kisti 연계] 한국전자통신연구원 ETRI journal Vol.44 No.6 2022 pp.903-914

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Mobile and telecommunication networking uses temporary and random identifiers (IDs) to protect user privacy. For greater intelligence and security o the communications between the core network and the mobile user, we design and build a dynamic randomization scheme for the temporary IDs for mobile networking, including 5G and 6G. Our work for ID randomization (ID-RZ) advances the existing state-of-the-art ID re-allocation approach in 5G in the following ways. First, ID-RZ for ID updates is based on computing, as opposed to incurring networking for the re-allocation-based updates, and is designed for lightweight and low-latency mobile systems. Second, ID-RZ changes IDs proactively (as opposed to updating based on explicit networking event triggers) and provides stronger security (by increasing the randomness and frequency of ID updates). We build on the standard cryptographic primitives for security (e.g., hash) and implement our dynamic randomization scheme in the 5G networking protocol to validate its design purposes, which include time efficiency (two to four orders of magnitude quicker than the re-allocation approach) and appropriateness for mobile applications.

16

Analysis and Improvement of Andola et al.'s Dynamic ID based User Authentication Scheme

Mi-Og Park

[Kisti 연계] 한국컴퓨터정보학회 Journal of the Korea society of computer and information Vol.28 No.7 2023 pp.67-75

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 논문에서는 Andola 등이 제안한 멀티서버 환경에서 동적 ID를 제공하는 사용자 인증 방식에 대한 안전성과 설계상의 문제점을 분석한다. 본 논문에서 Andola 등의 인증 방식을 분석한 결과, 스마트카드 분실 공격에 안전하지 않고, 이 공격으로 인하여 사용자의 패스워드 추측 공격이 가능하고, 결국 공격자는 세션키까지 생성할 수 있다. 본 논문에서는 이러한 문제를 해결하기 위해서 개선된 인증 방식을 제안하고, 이에 대한 안전성 분석한 결과 스마트카드 분실 공격, 패스워드 추측 공격, 사용자 가장 공격 등 여러 공격에 안전하였다. 또한 개선된 인증 방식은 안전한 동적 ID를 제공할 뿐만 아니라 해시함수의 계산 복잡도 측면에서도 효율적이다. 게다가 개선된 인증 방식은 전송량도 크게 증가하지 않아 전송비용의 측면에서도 효율적인 인증 방식이라고 할 수 있다.

In this paper, we analyze the problem of the user authentication scheme that provides dynamic ID in a multi-server environment proposed by Andola et al. and propose an improved authentication one to solve this problem. As a result of analyzing the authentication scheme of Andrea et al. in this paper, it is not safe for smart card loss attack, and this attack allows users to guess passwords, and eventually, the attacker was able to generate session key. This paper proposed an improved authentication scheme to solve these problems, and as a result of safety analysis, it was safe from various attacks such as smart card loss attack, password guess attack, and user impersonation attack. Also the improved authentication scheme not only provides a secure dynamic ID, but is also effective in terms of the computational complexity of the hash function. In addition, the improved authentication scheme does not significantly increase the amount of transmission, so it can be said to be an efficient authentication scheme in terms of transmission cost.

17

Design Errors and Cryptanalysis of Shin's Robust Authentication Scheme based Dynamic ID for TMIS

Park, Mi-Og

[Kisti 연계] 한국컴퓨터정보학회 Journal of the Korea society of computer and information Vol.26 No.10 2021 pp.101-108

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 논문에서는 Shin이 제안한 TMIS를 위한 동적 ID 기반의 강력한 사용자 인증기법을 분석하고, Shin의 인증 기법이 스마트카드 분실 공격에 취약하여, 공격자가 사용자의 ID를 획득할 수 있고, 이로 인하여 사용자 가장 공격 등이 가능함을 보인다. 2019년에 Shin이 제안한 인증 기법은 ECC를 사용하여 강력한 난수 생성을 시도함으로써, 난수 ri를 모르면 ECC 알고리즘의 난이도에 의하여 난수 r'i를 계산해낼 수 없어서, 스마트카드를 분실하여도 안전하다고 주장하였다. 그러나 본 논문에서 Shin의 인증 기법을 분석한 결과, 전송 메시지와 스마트카드를 사용하면 난수 r'i를 쉽게 계산할 수 있고, 이로 인하여 공격자는 세션키 생성도 가능하였다. 또한 Shin의 인증 기법은 안전성 분석에 대한 취약점뿐만 아니라, 서버의 ID인 SID를 사용자들에게 전달하는 방식의 부재, 사용 시마다 약간씩 다른 템플릿을 가지는 생체정보의 특성을 고려하지 않은 점 등 다수의 설계상의 오류들이 존재하였고, 서버에서 사용자의 ID를 계산해내는 시간 복잡도가 다른 인증 기법들에 비하여 상당히 큰 오버헤드를 가진 것으로 분석되었다.

In this paper, we analyze Shin's proposed dynamic ID-based user authentication scheme for TMIS(Telecare Medicine Information System), and Shin's authentication scheme is vulnerable to smart card loss attacks, allowing attackers to acquire user IDs, which enables user impersonation attack. In 2019, Shin's proposed authentication scheme attempted to generate a strong random number using ECC, claiming that it is safe to lose a smart card because it is impossible to calculate random number r'i due to the difficulty of the ECC algorithm without knowing random number ri. However, after analyzing Shin's authentication scheme in this paper, the use of transmission messages and smart cards makes it easy to calculate random numbers r'i, which also enables attackers to generate session keys. In addition, Shin's authentication scheme were analyzed to have significantly greater overhead than other authentication scheme, including vulnerabilities to safety analysis, the lack of a way to pass the server's ID to users, and the lack of biometric characteristics with slightly different templates.

18

동적 ID 할당을 기반으로 하는 RFID 보안 프로토콜

이한권, 유현중, 박병수, 조태경

[Kisti 연계] 한국산학기술학회 한국산학기술학회 학술대회논문집 2006 pp.433-436

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

RFID(Radio Frequency Identification) 시스템은 유비쿼터스 사회를 만들어 가기 위한 핵심 기술로서 기초기반 기술 및 사회기반 기술의 정비가 진행되어 가고 있으며, 우리나라에서도 IT839 전략의 신성장 동력의 하나로 추진되고 있다. 하지만 RFID에 대한 보안 문제로 인하여 적용 범위와 시기에 대하여 논란이 일고 있다. RFID 시스템은 정보 유출의 위험성을 내포하고 있으며, 개인의 위치 추적이나, 비접근 권한자의 위장행세 등의 사용자 프라이버시 보호에 대한 많은 문제점들을 수반한다. 본 논문에서는 리더와 태그간의 통신에서 태그 고유 ID를 사용하지 않고 리더로부터 사용할 임의 ID를 할당받아 통신을 수행함으로써 프라이버시를 보호할 수 있는 보안 프로토콜을 제안하고 있다.

19

동적 ID 할당과 샘플링 주기 결정 기법을 결합한 CAN 기반 제어시스템의 효율적인 네트워크 관리기법

기영훈, 안봉주, 정구민, 안현식, 김도현

[Kisti 연계] 대한전기학회 대한전기학회 학술대회논문집 2007 pp.125-127

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

현재 차량 내 네트워크에서 주로 쓰이는 CAN 프로토콜은 네트워크 내에 다수의 노드가 연결되어 동작하는 경우 우선순위가 낮은 메시지의 전송지연이 심각하게 발생할 수 있다. 이를 해결하기 위해 다양한 제어 방법들이 제안되어 시험되고 있는데, 본 논문에서는 동적 ID 차당 기법을 연로전지 하이브리드 자동차 네트워크 시스템에 적용하여 각 장치들간의 메시지 전송 지연문제를 해결 하며, 또한 이로 인해 발생하는 차량 내 네트워크 시스템의 수행 주기 변화의 문제점을 샘플링 주기 결정 기법을 이용하여 효율적으로 해결하였다.

20

저 전력 모바일 환경에서 방송 콘텐츠 서비스를 위한 ID-기반의 인증된 동적 그룹 키 교환 프로토콜

최규영, 이동훈

[Kisti 연계] 한국방송공학회 한국방송공학회 학술대회논문집 Vol.2007 2007 pp.169-172

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

최근 DMB 서비스와 같이 저 전력 무선 환경에서 유료 콘텐츠 서비스가 활발히 이루어지고 있다. 이러한 콘텐츠 서비스를 정당한 서비스 수신자에게 제공하기 위해서는 서비스 제공자와 수신자 사이에 안전한 키 교환이 필요하다. 본 논문에서는 모바일 콘텐츠 서비스를 위한 효율적 인 ID-기반의 그룹 키 교환, 즉 다수의 서비스 수신자들(클라이언트)과 서비스 제공자(서버) 사이의 인증된 동적 그룹 키 교환 프로토콜을 제안한다 제안한 프로토콜은 클라이언트의 계산량이 낮아 저 전력 모바일 환경에 적합하며, 또한 가입과 탈퇴 발생 시에도 효율적으로 키 교환을 수행할 수 있다. 제안한 그룹 키 교환 프로토콜은 랜덤 오라클 모델에서 그 안전성을 제공한다.

 
1 2
페이지 저장