Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 79
No
1

네트워크 보안시스템 보안성 평가 연구

김점구

한국융합보안학회 융합보안논문지 제9권 제2호 2009.06 pp.33-39

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

네트워크 보안시스템을 단일 요소로 구분하여 점검하고 있는 현실의 문제점을 개선하기 위해 본 논문은 네트워크 보안시스템 점검은 취약성을 찾는 것이 아니라, 네트워크 보안시스템을 이루는 각 보안장비가 유기적으로 잘 작동하는지 종합적으로 점검하는 것임에 착안 네트워크 보안시스템을 점검하는 자동화 방법을 제안하고 이를 구현하였다.

The problems of current network security system, separated by a single element is checked. To improve this, this thesis is to find vulnerabilities in the network security systems, and network security systems, security equipment, organic to make sure each works is a comprehensive review. Automation also offers a way to check it, it was implemented.

2

사회 안전망을 위한 위기관리시스템 설계

김윤호, 강희조

[Kisti 연계] 한국항행학회 한국항행학회논문지 Vol.16 No.5 2012 pp.879-884

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

산업화가 고도화 되면서 인류는 자연재해는 물론이고 기술적 실수, 금융문제 등, 다양한 위기를 경험하고 있다. 국제표준에 근거한 위기관리 시스템 설계는 조직이 예방, 대비 및 대응을 강화시킬 수 있는 가능성을 점진적으로 증가시킬 수 있는 기본 틀을 제공해 준다. 본 연구에서는 사회 안전망을 위한 다양한 분야의 위기관리 시스템 설계를 소개하였다. 먼저 ISO/TC223의 역할과 현재 진행 중인 표준화 이슈들을 정리하였고 잠재적 위험을 저감시키며 조직의 회복력을 증가시킬 수 있는 효과적인 위기관리 시스템을 설계하였다.

In accelerating the industrialization, human being have been frequently experiencing man-made crisis such as technology failures, financial problem as well as natural disaster. Emergency management system based on international standard can provide an organization with a framework for continual improvement to increase the possibility of enhancing anticipation, prevention and response as well. In this paper, we introduced the emergency management system design of various organizations for societal security network. In the first, the main role of ISO/TC223 is reviewed and then, current issues of under going standardization in ISO are also addressed. Finally, we have designed a efficient disaster prevention system to minimize the potential risk as well as to improve the organizational resilience.

3

차세대통신망(NGN) Infrastructure에서의 정보보호시스템 고가용성 차단구조 설계

노시춘, 방기천

[Kisti 연계] 한국디지털콘텐츠학회 디지털콘텐츠학회 논문지 Vol.8 No.4 2007 pp.483-489

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

NGN인프라 환경에서의 정보보호시스템 고가용성 구조는 정보보호 인프라스트럭쳐에 우선적으로 적용되어야 한다. 왜냐하면 NGN 환경의 정보시스템 상에서는 접속점의 다원화와 접속기술의 다양성으로 인하여 정보보호에 위배되는 침입 발생가능성이 현저하게 높아짐으로 인하여 매 순간마다 더욱 정밀한 침입차단 장치와 기능이 요구되기 때문이다. NGN인프라 환경에서 정보보호 고가용성 기능 확보는 정보시템 보안을 위한 선결과제로서 정보보호 인프라스트럭 구조와 기능 재설계를 통해 보증될 수 있다. 정보보호 인프라스트럭쳐 시스템상의 active-active 고가용성 구조는 정보시스템 운용구조상에서 구조설계와 기능상 failover 메커니즘을 구현하므로서 확보된다. 본 연구에서 제안한 정보보호고가용성 인프라 구조를 적용할 경우 트러블패킷에 의한 시스템오버로드를 감소시키고 SNMP polling trap 과 ICMP transport factor 소통을 향상시키고 있음이 실험을 통해 검증 되었다.

The high availability of information security system shall be primarily studied in relation to the Next Generation Network(NGN) Information Security infrastructure, because it is very important to maintain availability at each moment as a variety of intrusions occur continuously. The high availability of the security system can be realized with the topology and configuration properly defined to fully utilize the recovery function of the security system in the thoroughly planned optimized method. The active-active high availability on the NGN information security infrastructure system in is assured by letting the failover mechanism operate upon the entire structure through the structural design and the implementation of functions. The proposed method reduces the system overload rating due to trouble packets and improves the status of connection by SNMP polling trap and the ICMP transport factor by ping packet.

4

Mobile Ad Hoc Network에서 시스템 보안 기법에 관한 연구

양환석

[Kisti 연계] 한국디지털콘텐츠학회 디지털콘텐츠학회 논문지 Vol.9 No.1 2008 pp.33-39

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Ad Hoc Network는 인프라스트럭처 기반의 네트워크가 아니고 노드들이 분포되어 있기 때문에 공격을 받기가 쉽다. 침입탐지시스템은 다른 노드들의 신뢰 수준을 감지하고 노드의 로컬 보안에 대한 검사와 감시 능력을 제공한다. 본 논문에서는 침입 탐지를 하는데 오버헤드를 줄이기 위해 클러스터링 기법을 적용하였다. 그리고 노드들 간의 신뢰도를 측정하기 위해 클러스터 헤드가 멤버 노드로부터 받은 신뢰 정보와 자신의 정보를 조합하여 다른 노드의 신뢰도를 평가한다. 이렇게 함으로써 네트워크내의 노드들의 대한 인증을 정확하게 수행할 수 있게 되어 안전한 데이터 전송을 제공하게 된다.

Mobile Ad Hoc Network is easy to be attacked because nodes are distributed not network based infrastructure. Intrusion detection system perceives the trust values of neighboring nodes and receives inspection on local security of nodes and observation ability. This study applied clustering mechanism to reduce overhead in intrusion detection. And, in order to measure the trust values, it associates the trust information cluster head received from member nodes with its own value and evaluates the trust of neighboring nodes. Secure data transmission is received by proposed concept because the trust of nodes on network is achieved accurately.

5

4,000원

인터넷과 IT 기술이 발전하면서 생활의 편리함을 제공하였다. 그러나, 정보보안에 대한 해결 방법이 지속적으 로 문제화 되고 있다. 인터넷 기반의 정보보안 기술은 사이버 공격 형태가 다양화, 지능화되면서 급속하게 발전하고 있 다. 그러나, 정보보안 관련 소프트웨어, 시스템이 개발되고 실생활에 적용하여도 예측할 수 없는 사이버 공격들로 인해 시스템에 문제를 야기시키고 있다. 특히, 인터넷과 연관된 사이버 공격으로 네트워크 트래픽에 문제가 발생하여 시스 템 사용에 어려움을 겪고 있다. 따라서, 본 논문에서는 패킷 필터링을 이용하여 네트워크 보안 탐지 시스템을 설계하였 다. 이를 위해, 보안 영역에서 하나의 시스템을 대상으로 인터페이스 카드를 promiscuous 모드로 변경하고 패킷 필터링 을 수행하였다. 탐지는 공개용 침입탐지 시스템 snort의 패턴을 기반으로 하였으며 네트워크 상에서 침입탐지에 대한 성능 향상을 가져올 수 있다.

Internet and IT technology developed and provided the convenience of life. However, solutions to information security are continually becoming a problem. Internet-based information security technology is rapidly developing with the form of cyber attacks being diversified and intelligentized. However, information security related software causes problems on the system due to cyber attackers that systems are developed and can not be predicted even when applied to real life. In particular, due to cyber attacks related to the Internet, network traffic problems occurred, experienced difficulty in using the system. Therefore, in this paper, we designed a network security detection system using packet filtering. For this reason, packet filtering was performed by changing the interface card to promiscuous mode for one system from the security zone. Detection is based on the pattern of public intrusion detection system snort, which can improve the performance of intrusion detection on the network.

6

항공기 디지털 네트워크 시스템 보안 문제점과 사이버 대응 전략

임인규, 강자영

[Kisti 연계] 한국항행학회 한국항행학회논문지 Vol.21 No.6 2017 pp.633-637

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

항공기와 항공 네트워크에 대한 사이버 공격은 일반적으로 지상 산업에서 흔히 볼 수 있는 사이버 공격과 크게 다르지 않다. 항공 교통 인프라스트럭처(infrastructure)는 항공 교통 자원 확보를 위해 디지털 기반 구조로 전환되고 있다. 다양한 종류의 통신 환경과 정보 통신, 항법, 감시 및 기내 엔터테인먼트 시스템이 사이버 테러 위협에 노출될 위험을 가중시키고 있다. 또한 무인항공기의 출현은 사이버 테러에 의해 통제될 수 없는 위험을 내포하고 있다. 차세대 데이터 네트워크 시스템 환경에서 항공기 시스템 및 항공 기반의 인프라스트럭처에 대한 사이버 위협의 취약점을 인식하고 항공 선진국의 사이버 보안 표준과 대응 전략을 분석했다. 그리고 국내 항공 환경에서 고려해야 할 사이버 보안 정책에 대한 포괄적인 방안을 논의하고, 보안 환경에 대한 개념과 신속한 대응 전략 수립 등을 논의하였다.

Cyber attacks on aircraft and aeronautical networks are not much different from cyber attacks commonly found in the ground industry. Air traffic management infrastructure is being transformed into a digital infrastructure to secure air traffic. A wide variety of communication environments, information and communications, navigation, surveillance and inflight entertainment systems are increasingly threatening the threat posed by cyber terrorism threats. The emergence of unmanned aircraft systems also poses an uncontrollable risk with cyber terrorism. We have analyzed cyber security standards and response strategies in developed countries by recognizing the vulnerability of cyber threats to aircraft systems and aviation infrastructure in next generation data network systems. We discussed comprehensive measures for cybersecurity policies to consider in the domestic aviation environment, and discussed the concept of security environment and quick response strategies.

7

4,000원

본 연구는 네트워크 중심전(NCW) 환경하에서 국방정보체계에 대한 정보보호 지침을 마련하고자 수행하였다. 본 연구에서는 국방정보체계 분야에 다년간 근무했던 전문가들로 워킹그룹을 편성하여 그룹의사결정기법을 활용한 연구방법을 통해 네트워크 중심전(NCW)하에서의 정보보호 지침을 제대별, 기능별로 도출하였다. 본 연구에서 제시하는 제대별, 기능별 정보보호 지침을 활용하여 현존하는 국방정보체계의 정보보호 수준을 평가하고 미흡한 점을 보완한다면 보다 완벽한 정보보호 대책을 마련할 수 있을 것이다.

8

유비쿼터스 네트워크 시스템에서의 미디어 보안에 관한 연구 KCI 등재후보

주민성, 안성수, 우영환, 김용태, 김태훈, 박길철, 김석수

한국융합보안학회 융합보안논문지 제7권 제1호 2007.03 pp.29-34

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

논문에서는 디지털 콘텐츠의 저작권을 보호하기 위하여 공모공격에 강인한 BIBD 기반의 불법공모방지코드를 설계하였다. 또한 핑거프린트 정보는 디지털 콘텐츠의 전송 중 외부 공격 및 잡음 등에 의해 손실이 발생할 수 있는데 이러한 점을 개선하기 위하여 홉필드 신경회로망을 이용하여 손실이 발생한 코드를 정정할 수 있는 핑거프린트 알고리즘을 제안하였다. 제안된 알고리즘은 크게 선형 공모 공격에 강인성을 가지는 BIBD 기반의 불법공모방지코드 설계와 외부공격에 의해 발생한 에러비트를 정정하기 위한 피드백형 연상메모리방식의 홉필드 신경회로망으로 구성되어있다. 실험 결과 BIBD 기반의 불법공모방지코드는 평균화 선형 공모공격에 대해 100% 공모코드 검출이 이루어졌으며, 에러비트 정정을 위해 설계한 (n, k) 코드를 사용한 홉필드 신경회로망은 2비트 이내의 에러비트를 정정할 수 있음을 확인하였다. 결과적으로 제안된 알고리즘은 평균화 공모공격 및 공모코드에 에러비트가 발생되었을 때 공모자를 정확히 검출할 수 있음을 확인하였다

Recently, the distribution and using of the digital multimedia contents are easy by developing the internet application program and related technology. However, the digital signal is easily duplicated and the duplicates have the same quality compare with original digital signal. To solve this problem, there is the multimedia fingerprint which is studied for the protection of copyright. scheme is a technique which supports copyright protection to track redistributers of electronic information using cryptographic techniques. Only regular user can know the inserted fingerprint data in fingerprinting schemes differ from a scheme and the scheme guarantee an anonymous before re-contributed data. In this paper, we present a new scheme which is the detection of colluded multimedia fingerprint by neural network. This proposed scheme is consists of the anti-collusion code generation and the neural network for the error correction.

9

7,900원

여전히 아프가니스탄에서의 정치적 안정과 안보와 치안질서의 구축은 요원해 보인다. 이러한 오늘날 아프가니스탄의 상황은 전통적인 민족국가 단위에 기반을 둔 안보와 치안에 관한 시각에 중요한 의문을 던진다. 이 연구는 이러한 오늘날의 아프간 안보상황이 보여주는 위기에 대한 이해를 구하고자 시도한다. 이를 위해 이 논문은 오늘날 아프가니스탄의 경우 미국과 국제사회가 지원하는 아프간 국가(카르자이 중앙정부)와 탈레반으로 대표되는 이슬람 극단주의 세력 간의 이러한 안보 서비스 제공의 경쟁관계가 나타난다고 가정한다. 그리고 여전히 탈레반의 영향력이 파슈툰 부족지역에서 강하게 유지되는 것은 이 탈레반 세력이 아프간 국가와 비교할 때 보다 더 효과적이고 신뢰성 있는 안보서비스를 제공하기 때문일 것이라고 가정한다. 이 논문은 이러한 가정 하에 현재 실제로 파슈툰 부족의 안보시스템이 어떻게 작동하고 있으며 이것이 탈레반의 영향력 증대와 어떻게 관련되어 있는 지를 살펴보고자 한다. 아프가니스탄 파슈툰 부족의 사례는 전통적인 시각에서 벗어나 안보에 대한 새로운 이해가 필요함을 보여준다. 전통적인 안보는 국가 또는 국가권력을 기본 프레임으로 하여 구축되고 가동되고 있다. 하지만 파슈툰 부족의 사례에서는 이 국가가 부족과 부족민들에게 실효적인 안보 서비스의 제공자로 자리매김하고 있지도 그리고 그러한 기능을 수행하고 있지도 못하고 있는 현실을 보여주고 있다. 한편 오늘날 아프간에서 보여 지는 안보와 관련된 국가 제도화의 증가와 더불어 일어나는 국가의 실효적 안보 서비스 제공 능력의 후퇴는 국가 시스템의 마련과 정착이 곧 국가의 실효적 지배를 통한 안보의 구축으로 이어지지 않는 다는 사실을 보여준다. 때문에 안보의 구축에 있어 제도의 마련과 법안이나 협약의 도출, 그리고 형사사법 시스템 등의 국가 시스템 구축 등에 집중된 통상적인 제도주의적인 안보 구축 접근법에 대한 진지한 검토가 필요할 것이다. 오늘날 파슈툰 부족의 안보시스템의 현실은 이러한 제도주의적 접근에 대한 하나의 비판적 사례가 될 것이다. 이 연구에서 보여주는 파슈툰 부족 사회 안보 시스템의 현실은 아프간 국가권력으로 하여금 제도주의적 접근의 한계를 넘어서 보다 복잡한 방식으로 안보 서비스를 제공하는 시스템을 작동하도록 요구한다. 이런 측면에서 이 논문은 단순한 제도주의적 접근을 넘어서 제도주의적 접근과 구성주의적 접근을 통합한 복합주의적 접근을 제시한다.

Still, Afghanistan is in turmoil with the absence of the political stability and rule of law. This situation threw a question about the conventional perspectives of security and law enforcement based on the nation-state. This study tried to find an understanding of the current crisis of Afghanistan. For doing so, it assumes that the competition of security and law enforcement service appears between the Afghan state and Taleban terror network. It also assumes that Taleban terror forces are far more dominant in the Pashtun tribal region because the latter provides better security and law enforcement service than the former. Upon these assumptions, this article examines how the security and law enforcement system of today’s Pashtun tribes operate in practice and how this system is associated with the increase of Taleban influence in these tribal societies. The Pashtun case of Afghanistan shows the necessity of new comprehension on security. The traditional concept on security has been built and operated by the basic framework of the state power. However, this state power is impotent and malfunctioned in the case of Pashtun tribal society. This tells us an important lesson that the mere construction of the state system, more importantly the criminal justice system, may not guarantee the automatic assurance of security and rule of law. Therefore, we may need a more sincere criticism against the institutionalism approach of security-construction meaning the mere construction of legislation, the state agencies, and the criminal justice system. In this regards, this article suggests a more complex-approach which integrates institutionalism approach with constructivism approach.

10

RFID 출입통제시스템과 연동한 네트워크 이중 접근통제 시스템 KCI 등재후보

최경호, 김종민, 이대성

한국융합보안학회 융합보안논문지 제12권 제3호 2012.06 pp.53-58

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

내부에 있는 정보를 보호하기 위한 노력들 중 하나인 네트워크 접근통제 시스템의 적용은 내부 사용자들의 효과적 제어 및 자동적인 네트워크 관리와 보안을 가능하게 한다. 그러나 이미 허가된 PC 또는 모바일 기기로 위장하거나 자 리를 비운 사용자의 인가된 시스템을 이용하여 내부 네트워크에 접속할 수 있는 문제점이 있다. 또한 허가된 PC 또는 모바일 기기의 악성코드 감염으로 인해 사용자가 직접 사용하는 시간 이외에도 동작하여 비의도적인 정보유출 및 내부 네트워크 공격 등이 발생할 수 있다. 따라서 내부 네트워크에 접속을 허가 받은 이가 인가된 장비를 이용하여 접근정책 에 따른 통신을 수행하고 있는지를 확인해야 한다. 이를 위해 본 연구에서는 RFID 출입통제시스템과 연동한 네트워크 이중 접근통제 시스템을 제안한다. 제안된 시스템은 내부 네트워크 접속 시 이중인증을 수행함으로써 허가된 사용자가 인가된 장비를 이용하여 통신을 수행하는 환경을 제공한다.

Network Access Control System that is one of the efforts to protect the information of internal applies to effectively control of insider and automatic network management and security. However, it has some problems : spoofing the authorized PC or mobile devices, connect to the internal network using a system that authorized users are away. In addition, information leakage due to malicious code in the same system. So in this paper, Network 2-Factor Access Control System based on RFID security control system is proposed for safety communication environment that performing a two-factor authentication using authorized user and devices to connect to the internal network.

11

네트워크 바이오 인증 기반 산업기술 유출방지 시스템에 관한 연구 KCI 등재후보

이대성

한국융합보안학회 융합보안논문지 제11권 제4호 2011.08 pp.31-36

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

첨단기술을 보유하고 있는 기업이나 핵심정보를 처리하는 정보기관은 조직의 기밀이 유출되는 시점에서 막대한 경제적 손실은 물론, 치명적인 피해에 따른 조직의 존립 자체가 흔들리게 된다. 기존의 오프라인으로 유출되던 기밀정보는 최근 유비쿼터스 통신 환경을 기반으로, 다양한 장비를 통해 언제든지 네트워크를 통해 유출이 가능해졌다. 본 논문에서는 네트워크로 전송되는 기밀유출을 차단하기 위해 전송되는 모든 패킷에 대해 실시간으로 패킷을 인증하고 차단하는 통신 프로토콜을 제안한다. 특히, 기밀유출을 시도하는 사용자를 구분하기 위하여 전송되는 패킷마다 사용자 바이오 정보를 투명하게 삽입하는 기법을 제시한다. 또한, 실험을 통해 사용자 바이오 정보를 삽입하고 패킷마다 인증하더라도 효과대비 그 성능이 크게 저하되지 않음을 확인한다.

Enterprise which has a core technology or organization which manages a core information will be walking into a critical situation like a ruins when organization's confidential information is outflowed. In the past confidential information that was leaked to the off-line, recently the outflow made possible through a variety of equipment at any time via the network based on theubiquitous communication environment. In this paper, we propose to authenticate and block all packets transmitted via the network at real-time in order to prevent confidentials outflow. Especially in or der to differentiate between users who attempt to disclose confidentials, we propose to insert user's biometric informaion transparently at per-packet basis, and also verify a performance by simulation

12

4,000원

Assult on power plant Distibuted Control System Network has been sophisticated, 'WHITE LIST' way safety mechanism has been requested, because of existed 'BLACK LIST SEARCH' way has limited condition, based on 'signature' In this paper, gathering and analysis the packet, which can occur on control system, suggest the model, can search the symptom through the 'WHITE LIST RULE' development and adaption

13

네트워크를 위한 보안 시스템의 기술 개발 동향 및 전망 KCI 등재

양경아, 신동우, 김종규, 배병철

국제인공지능학회(구 한국인터넷방송통신학회) 한국인터넷방송통신학회 논문지 제18권 제5호 2018.10 pp.1-8

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

최근 사이버 공격은 진보된 기술을 활용하여 방어 기술의 발전 속도보다 빠르게 고도화되고 있어 그 위험수위가 갈수록 높아지고 있다. 이에 대응하기 위해 학계는 물론 산업계에서도 다양한 방법을 적용한 보안 기술을 개발하고 있으며 이를 기반으로 한 보안 시스템들이 적용되고 있다. 본 논문에서는 세대별로 진화하는 공격들을 살펴보고 이에 대응하여 발전하는 네트워크 보안 관련 현황을 소개한다. 특히, 네트워크 보안 시스템 중 최근까지 가장 큰 비중을 차지하고 있는 UTM과 관련하여 상용 제품을 중심으로 해외 및 국내 기술의 동향과 성능 및 기능에 관한 비교 분석을 수행하였다. 또한 차세대 네트워크 기술의 등장으로 인한 네트워크 인프라 변화에 대한 향후 전망에 대해 논의하고자 한다.

The latest cyber attack utilizing advanced technologies is more rapidly advancing than developing speed of defense technology, thereby escalates the security risk. In responding to this recent threat, academia and industries are developing some sophisticated security technologies applying various methods. Based on these technologies, security systems are used in many fields. This article aims to select noticeable network security related technologies for the security systems. In particular, we compared and analyzed the trend, performance, and functions of both foreign and domestic technologies in regard to UTM having the largest portions among network security systems so far. We will also discuss the prospect for the change in network infrastructure due to the emergence of the next-generation network technology.

14

A Network Security Scanning System for Mobile Internet Based on Android SCOPUS

Guanlin Chen, Lidong Zhang

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.10 No.11 2016.11 pp.99-108

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Recently with the rapid development of smart phones and mobile Internet, network security is more and more important in people’s daily life. In this paper, a network security scanning system based on Android (wScan) is proposed, which aims to make sure users’ mobile terminals are in a secure network environment when they are using these devices. The system is composed of WiFi scanning, router tracking, port scanning, running service detection, virus killing and real-time communication functions, which integrates Java technology, Eclipse platform and SQLite database. Using Nmap toolkit in the system, the wScan can provide valuable information of running services and opening ports in mobile devices based on Android.

15

Implementation of Multi-level Network Security Management System based Middleware Strategy SCOPUS

Yunliang Zou

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.10 No.10 2016.10 pp.77-88

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

This article discusses the related art network security management, the proposed design of multi-level network security management system based on middleware ICE technology, the design of single-level system design and related species module of the overall framework for implementation. It is given based on the communication module ICE technology detailed design, it can be done from the LAN to the WAN, the communication between the various modules. The realization of various kinds at all levels of network security devices and associated host centralized monitor. Centralized configuration, through a variety of security-related information in a timely manner log collection management network species, real-time view of the network security status, dynamically adjusting network security policy comprehensive network security audit information, can effectively improve the overall security of network security management.

16

A Study of 4G Network for Security System

Suk-jin Kim, Hyangran Lee, Malrey Lee

국제문화기술진흥원 International Journal of Advanced Culture Technology(IJACT) Volume 3 Number 2 2015.12 pp.77-86

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

In this paper there is an overview of some standards and security models which are implemented in such an IP-based and heterogeneous networks and we also present some security models in an open environment and finally we obtain that as a result of the nature of 4G networks there are still more security holes and open issues for expert to notice. Our survey shows that a number of new security threats to cause unexpected service interruption and disclosure of information will be possible in 4G due mainly to the fact that 4G is an IP-based, heterogeneous network. Other than that, it tells about the security issues and vulnerabilities present in the above 4G standards are discussed. Finally, we point to potential areas for future vulnerabilities and evaluate areas in 4G security which warrant attention and future work by the research and advanced technology industry.

17

Design and Optimization of Smart Home Security System Using Adaptive Network-Based Fuzzy Inference System (ANFIS) KCI 등재

Jong-Hyun Lee, Sang-Hyun Lee

국제문화기술진흥원 International Journal of Advanced Culture Technology(IJACT) Volume 12 Number 4 2024.12 pp.574-578

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

A smart home refers to a house or building equipped with advanced systems that allow users to remotely control various electronic devices. This paper proposes a novel approach utilizing an Adaptive Network-Based Fuzzy Inference System (ANFIS) to address the nonlinear challenges faced by conventional sensor-based smart home security systems. The proposed system uses multiple sensors to detect internal threats (e.g., fire, gas leaks) and external threats (e.g., theft, intrusion), analyzing sensor data to identify abnormalities. Designed with a multi-output ANFIS model, the system dynamically responds to various scenarios and provides optimal security decisions. Additionally, it features real-time transmission of security analysis results to relevant agencies or users via the internet. The findings demonstrate that ANFIS significantly enhances the efficiency and accuracy of smart home security systems compared to traditional fuzzy logic-based methods.

18

Network Security in Embedded System Using TLS SCOPUS

Vivek Negi, Himanshu Verma, Ipsita Singh, Aditya Vikram, Kanika Malik, Archana Singh, Gaurav Verma

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.10 No.2 2016.02 pp.375-384

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Security in terms of Networks have turn out to be more significant to Organizations, Military and personal computer user’s. Since various kinds of threats are for data from sending it from sender side over internet till it reaches to receiver. Here we will focus on SSL it is a technique used to give client and server authentication, data confidentiality and data integrity. It transform our data into unintelligible form, data which we will be sending can be text or no text form, by encrypting our data we can save it from attacks like eavesdropping, in which interception of communication by unauthorized person, he can either listen or can add malicious information in our data which can lead to catastrophic results. This technique of secure data transmission is very useful in securing the integrity of data sent by the Unmanned Aerial Vehicles in military application to commercially used Electricity meter. Since the above mentioned devices uses microcontroller to send data through internet hence this data is always going to be susceptible to above mentioned threats so it is important to ensure that it doesn’t fall in wrong hands, our objective is that our microcontroller sends the data to remote location has authenticity, confidentiality and integrity. First we will send some meaningful text already stored in controller of STM3240G Eval-board then that data will be sent to server. These encrypted packets will be sending to remote server through Ethernet. At the receiver end this data will be received and decrypted to get the original captured data.

19

A Study on the Integrated Security System based Real-time Network Packet Deep Inspection SCOPUS

Chang-Su Moon, Sun-Hyung Kim

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.8 No.1 2014.01 pp.113-122

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

With the volume of Internet communication continuing to increase, there are more cases of worm and virus intrusion through the network. The security system against external attacks that use various security vulnerabilities consists of firewall and intrusion detection and prevention subsystem, and its functionality is becoming more advanced. As indicated by the recent security issues and intrusion cases, however, APT attacks and worm and hacking must be dealt with continuously. As such, enterprises are investing in various measures for an integrated security system to identify the threats of network security-based security vulnerabilities and cope with theme effectively. This paper proposes a network packet in-depth test-based, integrated security system that analyzes the threat factors through a total study of network packets circulated in realtime and applies various security functions to cope with intelligent security threats in the future.

20

The Construction Research of Security Computer Network System Based on the Distributed Intrusion Detection Technology SCOPUS

Xin Huang, Rongze Wan

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.8 No.6 2014.12 pp.185-196

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

This paper aimed at the actual situation of the difficult of getting a lot of the training sample of the security computer network system in the distributed intrusion detection. In this paper, we studied how to increase the intrusion detection accuracy in the case of small samples, so that processing, maintenance and deal with the invasion of the network timely. In this paper, we proposed a new intrusion detection method based on improved SVM Co - training. The specific implementation process of the algorithm is presented. Through the simulation experiments based on the actual data showed that the method is effective. Apply this method to a classified computer network system, effectively realized the detection to outside intruders and internal intruder.

 
1 2 3 4
페이지 저장