Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 8
No
1

BGPChain: Constructing a Secure, Smart, and Agile Routing Infrastructure based on Blockchain

Zhiwei Yan, 이종혁

[NRF 연계] 한국통신학회 ICT Express Vol.7 No.3 2021.09 pp.376-379

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

As the most fundamental infrastructure in the current Internet, the Border Gateway Protocol (BGP) supports the inter-connectivity of different Autonomous Systems (ASs) and then the reachability can be achieved from any network in the Internet. However, due to the lack of security consideration during its original design, the BGP suffers from multiple security threats. Another challenge is that it cannot support the future sophisticated applications with deterministic routing. In this article, we propose a novel BGP management architecture, namely BGPChain, which is based on the blockchain in order to establish a secure, smart, and agile routing infrastructure for the future Internet.

2

IT Security Strategies for SME’s

Ji-Yeu Park, Rosslin John Robles, Chang-Hwa Hong, Tai-hoon Kim, Sang-Soo Yeo

보안공학연구지원센터(IJSEIA) International Journal of Software Engineering and Its Applications Vol.2 No.3 2008.07 pp.91-98

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Small and medium enterprises (SMEs) is leaning more on their information technology (IT) infrastructure but they lack the means to secure it appropriately due to financial restrictions, limited resources, and adequate know-how. Many SME managers believe that IT security in their company is basically equivalent to having a firewall and updating the antivirus software regularly. Strategic policies, information theft, business continuity, access controls, and many other aspects are only dealt with in case of security incidents. To improve security in a company holistically, four levels (organizational level, workflow level, information level, and technical level) need to be addressed. Parts of existing standards are useful to address issues on the organizational level; Pipkin’s approach is especially useful for SMEs. Modeling of business processes and taking security/dependability into account can improve reliability and robustness of the workflow level. On the information level, role-based access control is state-of the art.

3

안전한 네트워크 인프라를 보장하기 위한 포괄적인 접근 방식에 대한 연구

박종혁

보안공학연구지원센터(JSE) 보안공학연구논문지 Vol.4 No.2 2007.05 pp.45-52

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

본 논문은 안전한 네트워크 인프라를 보장하기 위한 포괄적인 접근 방식에 대한 연구를 소개한다. 오늘날의 기관들은 흩어져서 저장되어 있는 식별 정보들을 관리해야하는 커다란 도전에 직면해 있으며, 기존의 저장된 이러한 식별 정보들은 IT 인프라구조에 대한 관리의 변화에 맞춰서 오랜 시간동안 이리저리 옮겨 다니며 관리되지 못한 채로 존재하고 있는 상황이다. ID관리의 부족은 비즈니스 연속성과 응용 및 네트워크 보안에 영향을 미치고 있는 실정이다. 연합된 ID관리는 전사적인 목표들을 성취하기 위해서 이러한 분산된 기술들을 하나의 조직되고 포괄적인전력으로 통합하고 캡슐화하는 개념이 된다. 본 논문에서는 또한 몇 가지 실제적인 경우에 따른 비즈니스 개념들을 소개함으로써, 각자의 기업에 맞은 ID관리 전략 수립을 돕고자 한다.

This paper introduces research trend on comprehensive approach to ensuring a secure network. Today's organizations pose a great challenge of managing disparate identity stores that disoriented and uncoordinated for period of time due to change of IT infrastructure management and administration. Lack of identity management is affecting business continuity and application & network security. Federated identity management is a strategic concept that encapsulates and integrates these disparate technologies into a coordinated, comprehensive strategy to accomplish enterprise-wide goals. This paper also introduces some practical business case concepts to aid in putting together their own identity management strategies.

4

국가경쟁력 강화를 위한 SOC 확보 방안

박용석

[Kisti 연계] 한국건설관리학회 한국건설관리학회 학술대회논문집 2008 pp.38-43

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

한 국가의 SOC 시설 보유량은 공공서비스의 공급능력을 보여주는 지표로 활용되고 있으며, 국가경쟁력의 원천이 되고 있다. 한국은 SOC 시설이 충분하다는 판단하에 '03년 이후 SOC 투자를 점차 축소하고 있다. 하지만 SOC 투자 축소는 기존 SOC 공사의 공기지연이 발생하고 있으며, 향후에는 국가경쟁력을 저해할 가능성을 갖고 있다. 따라서 충분한 수준의 SOC 투자는 지속되어야 한다. 이를 위해 우선 교통시설특별회계를 최소한 국가기간교통망계획의 계획기간인 '19년까지 연장할 필요가 있다. 또한 민간투자사업을 효과적으로 활용하고, SOC 투자를 완공위주의 집중투자를 해야 한다.

The purpose of this study is to secure reasonable transportation infrastructure stock for enhancing national competitiveness in Korea. National competitiveness may be defined as a country's overall capacity to create the most effective social structure, institutions and policies that allow her company within the national boundary to be more competitive in the world market. If Korea's transportation infrastructure stock is not sufficient and a connection among transportation facilities is not efficient, we should pay the social and economic cost. As a result, we worry that national competitiveness may drop. Some methods to maintain or to increase the national investment for transportation infrastructure that are suggested from this study are as follows: Firstly, we need to operate the Spcial Account for Traffic Facilities. Secondly, the investment should be focused on the facilities and districts in needs. Thirdly, PFI (private finance initiative) policy should be aimed at investing for the highly economic-valued projects.

5

안전한 인터넷 기반제공을 위한 DNS 보안 고도화 연구

김학주, 윤민우, 임형진, 정태명, 송관호

[Kisti 연계] 한국정보보호학회 한국정보보호학회 학술대회논문집 2003 pp.146-152

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

DNS는 인터넷 자원 관리를 위해 사용되고 있는 분산 네이밍 데이터베이스로써 최근보안상의 취약점으로 인해 안전한 인터넷 사용에는 한계가 있다고 지적되었다. 따라서 안전한 인터넷 기반 제공을 위해 DNS의 보안 고도화 연구가 진행되었으며 그 일환으로 BNS 보안 확장(DNSSEC)이 대두되었다. 본 논문에서는 DNSSEC에 대한 이론적인 바탕을 토대로 보다 안전한 인터넷 자원 사용을 위한 방안을 연구하고 이의 적용방안과 안정화를 위한 제반 사항을 기술한다.

6

공개키 기반 구조 기반의 보안 다중 에이전트 엔진

장혜진

[Kisti 연계] 한국산학기술학회 한국산학기술학회논문지 Vol.3 No.4 2002 pp.313-318

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

전자 상거래와 같이 통신 보안이 요구되는 응용 분야에 에이전트 기술을 효과적으로 적용하려면 에이전트 기술과 보안 기술의 결합이 요구된다. 본 논문은 공개키 기반 구조 기술과 에이전트 기술을 결합하여, 기밀성(privacy), 완전성(integrity), 신원 확인(authentication), 부인 방지(non-repudiation)등의 보안 기능을 지원하는 다중 보안 에이전트 엔진 모델을 제안한다. 각 에이전트는 구조적으로 에이전트 엔진 계층과 에이전트 응용 계층으로 구성된다. 제안한 보안 에이전트 모델의 설계에는 자가 송수신 메시지, 보안 채널 그리고 에이전트 응용 계층에서의 KQML(Knowledge Query and Manipulation Language) 메시지와 에이전트 엔진 계층에서의 메시지의 구분이라는 개념들이 사용되었다. 제시된 보안 에이전트 엔진 모델이 제공하는 에이전트 언어는 기존 에이전트 언어인 KQML의 내용층 및 메시지층에 대한 아무런 수정이나 제약 조건 없이 통신 계층만을 확장하여 보안 기능을 표현하며, 에이전트간의 보안 통신은 에이전트 언어 상에서 투명하게 표현되는 보안 채널을 통해 이루어진다는 특징을 갖는다.

The Integration of agent technology and security technology is needed to many application areas like electronic commerce. This paper suggests a model of extended multi-agent engine which supports privacy, integrity, authentication and non-repudiation on agent communication. Each agent which is developed with the agent engine is composed of agent engine layer and agent application layer. We describe and use the concepts self-to-self messages, secure communication channel, and distinction of KQML messages in agent application layer and messages in agent engine layer. The suggested agent engine provides an agent communication language which is extended to enable secure communication between agents without any modifications or restrictions to content layer and message layer of KQML. Also, in the model of our multi-agent engine, secure communication is expressed and processed transparently on the agent communication language.

7

공개키 구조 환경에서 해쉬 알고리즘의 안전성 정도에 상관없는 안전한 디지털 서명 방식

송성근, 윤희용, 이호재, 이형수

[Kisti 연계] 한국정보과학회 한국정보과학회 학술대회논문집 2003 pp.754-756

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

많은 디지털 서명 알고리즘들이 제안되었지만, 내제된 위험 요소들은 여전히 해결되지 않고 있다. 그 중 해쉬 함수의 충돌(Collision)문제가 있는데, 중요한 것은 이 문제로 인해 메시지가 일단 위조되면 어느 누구도 그 메시지의 위법성을 증명할 수 없다는 것이다. 따라서, 본 논문에서는 이 문제를 해결하는 방법에 대해 연구하고 새로운 디지털 서명 방식을 제안한다. 제안된 디지털 서명 방식은 해쉬(Hash) 알고리즘의 안전성 정도에 상관없고 오직 공개키 암호의 안전성에 연관되기 때문에 계산 속도가 빠른 해쉬 알고리즘을 사용할 수 있다. 또한, 이 방식은 기존 디지털 서명 알고리즘과 함께 사용될 수 있어서 E-commerce를 더욱 활성화시킬 것으로 예상된다.

8

공개키 기반 구조에서 ElGamal 방식의 ECC를 이용한 안전한 인스턴트 메시지 시스템 설계 및 구현

박수영, 정채영

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2006 pp.955-958

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

초고속인터넷이 널리 보급되면서 최근 메신저 서비스(Messenger Service)를 이용하는 사용자가 폭발적으로 증가하고, 해킹 기술의 발달로 인하여 메신저를 통하여 전달되는 메시지들이 악의의 사용자에게 쉽게 노출될 수 있는 가증서도 커지고 있다. 본 논문에서는 인스턴트 메신저의 안전한 통신을 위해 인증서를 이용한 인스턴트 메신저 프로토콜에 대해 설계하였다. 또한 메신저 서비스에서의 메시지 보안을 구현함에 있어서 공개키 암호 알고리즘의 연산수행시간을 단축하기 위해 ElGamal 방식의 ECC(Elliptic Curve Cryptography) 알고리즘을 사용하고, 사용자 그룹 단위의 암호화를 위해 그룹별로 타원곡선과 그 위에 있는 임의의 점을 선택하여 다른 그룹과 구별하였다.

 
페이지 저장