Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 328
No
1

CC 기반의 안전한 IoT 시스템 설계 방안 KCI 등재

김주훈, 정현미, 조한진

한국융합학회 한국융합학회논문지 제8권 제10호 2017.10 pp.61-66

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

최근 IoT기술은 ‘언제, 어디서나, 편리하게’ 라는 키워드와 함께 급속도로 발전하고 있다. 이와 더불어 IoT 시스템에 대한 보안이슈가 폭발적으로 증가하고 있으며 그에 대한 피해도 커지는 상황이다. 이에 본 논문에서 는 IoT 시스템 보안 요구사항을 정의하는 표준화와 보안기술개발 현황을 파악하고 ICT에서 국제적으로 통용되는 CC평가를 이용하여 안전하게 IoT 시스템을 개발하는 방안을 제시한다. 이를 위하여 우선 IoT 시스템과 서비스 측면의 보안목적을 분석 하였다. 향후 이를 토대로 보안기능요구사항을 설계하고 대응관계 통하여 보안목적의 이론 적 근거가 증명할 수 있으며 IoT 시스템에 대한 보호프로파일설계가 가능하다. 이는 관리자, 개발자, 사용자 측면의 보안요구집합을 참조할 수단으로 사용되므로 본 논문에서 제시하고자하는 개발 방법론에 대한 충분한 근거가 된다.

Recently, IoT technology is rapidly developing with the keyword "Anytime, Anywhere, Convenient". In addition, security problems in IoT systems are exploding and the damage is increasing as well. In this paper, we propose a method to develop IoT system safely by using internationally recognized CC evaluation in ICT by identifying the standardization and security technology development status defining IoT system security requirements. For this purpose, IoT system and service security aspects are analyzed. Based on this, it is possible to design the security functional requirements and to demonstrate the rationale of the security objective through the correspondence relation, and it is possible to design the protection profile for the IoT system. This is a sufficient basis for the development methodology to be presented in this paper because it is used as a means of referring to the set of security requirements of administrators, developers, and users.

2

Home Secure System을 위한 IoT 적용 방법

SU MYAT NOE, 경연웅

한국혁신산업학회 혁신산업기술논문지 제3권 제3호 2025.09 pp.103-111

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

Home Secure System 수요의 증가는 기존 시스템이 원격 모니터링과 적응성 측면에서 한계를 지니고 있음을 보여준다. 본 논문에서는 아두이노 마이크로컨트롤러, 듀얼 ESP8266 모듈, 및 화재·동작·진동·조도 센서를 통합한 IoT 기반 홈 보안 시스템을 제안한다. 제안된 시스템은 환경 위협을 실시간으로 모니터링하고, 텔레그램 봇을 통한 경보 전송, 부저 작동, ThingSpeak 데이터 기록을 통해 즉각적으로 대응한다. 또한 LDR 기반 조명 모듈을 탑재하여 주변 밝기에 따른 자동 조도 조절 기능을 제공한다. 실험 결과, 본 시스템은 모든 센서에서 높은 신뢰성과 정확성을 입증하였으며, IoT 통합을 통해 비용 효율적이고, 반응성이 뛰어나며, 원격 관리가 가능한 스마트 홈 보안 구현 가능성을 확인하였다.

The rising demand for smarter home security underscores the limitations of conventional systems in terms of remote monitoring and adaptability. This paper proposes an integrated IoT-based home security solution built on an Arduino microcontroller, dual ESP8266 modules, and a suite of sensors, including fire, motion, vibration, and light detectors. The system continuously monitors environmental threats in real time and responds by sending alerts via a Telegram bot, activating a buzzer, and logging data to ThingSpeak. An additional LDR-based lighting module enhances automation by adjusting brightness according to ambient conditions. Experimental testing confirmed the system’s reliability and accuracy across all sensors. The results demonstrate that IoT integration can enable a cost-effective, responsive, and remotely manageable smart home security system.

3

Development of a Secure and Intelligent IoT System based on a Consortium Blockchain

Sunghyuck Hong

ASCONS IJEMR Volume 1 Number 2 2017.12 pp.9-14

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

Blockchain technology is a decentralized digital book that discloses transactions to all trading participants, unlike traditional methods of keeping records on a centralized server when trading data, it is a security technology that is virtually impossible to hack because it must forge a block chain at the same time. However, the current block chain technology is a public block chain. Anyone can join a block-chain network, view all the details, and anyone can verify transaction history. On the other hand, a private block chain or a consensus block chain refers to a block chain in which a participant is restricted to participate in building an internal network with a restricted block chain or through a separate authentication method. In the case of the bit coin using the public block chain technique, the mining process is required in the network in order to prevent the Sybil attack (DDoS attack) which takes over the network by the number of nodes. If Blockchain is used in IoT environment, then IoT sensor node is adaptable for Blockchain because of decentralized network. There are many application areas. The disadvantage of mining a few network seizures while granting proof rights to the computing power, but not the number of nodes, is a catastrophic idea, but the cost of network maintenance is very high. However, if the only entity that proves the transaction is a bank, the Sybil attack itself is impossible and the network maintenance cost is zero. Therefore, a consortium Blockchain can solve this public Blockchain, and it will be able to contribute the development of an intelligent IoT and FinTech system technology as well.

4

Design and Implementation of Secure Cloud Storage System Based on Elliptic Encryption

Jing Yan, Zhi-heng Lin, Yong-zhen Li

ASCONS IJASC Volume 3 Number 1 2021.03 pp.1-9

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

Background/Objectives: With the rapid development of Internet technology, more and more Internet users tend to store their data and information in the cloud, and the security of the existing cloud storage system has been criticized by people, which is not conducive to protecting the data and information security of users. Therefore, how to effectively guarantee the security of cloud user data becomes more and more important. Security cloud storage system is the key to solve this problem. Methods/Statistical analysis: A secure cloud storage system is implemented for the user’s cloud data security. Its main function is: in the user login phase, the strict user identity authentication method is adopted to control the user’s access rights and prevent illegal users from logging in. Firstly, the identify authentication scheme based on zero knowledge proof is proposed. Secondly, in the user data upload stage, the user data is split. Finally, the encryption algorithm based on elliptic curve is proposed to encrypt the user’s file splitting table. Findings: The experimental results show that, in the user identify authentication stage, compared with the traditional user authentication method, the security of user identify authentication can be greatly improved by using the identify authentication method based on zero-knowledge proof. Improvements/Applications: The secure cloud storage system based on ellipse encryption developed in this thesis can realize the security of user's data by encryption while considering the efficiency of data upload and download, and has a broad application prospect.

5

The Internet of Things (IoT) technology is a recent development, and subsequently, various application services have appeared. Accordingly, diverse smart environments based on wireless networks are being developed. Home routers, which are widely used to build a wireless network environment at home, are exposed to many security threats. Therefore, setting up a secure router environment has become an important issue. In this paper, we propose an automated home router security configuration system (Auto- HRS) for multiple home routers located in a wireless network environment both by network administrators and those who install and operate their domestic routers at home. Auto-HRS analyzes the configuration HTTP request-response message of the home router and stores the HTTP message corresponding to the secure router configuration. Subsequently, the stored HTTP message is used to generate a secure-environmentsetting message and then send it to a home router to update the environment setting.

6

Design and development of a secure non-face-to-face system using QR code KCI 등재

Kyoung Hwan KIM, Ok Hue CHO, Hyung Gi KIM

한국컴퓨터게임학회 컴퓨터게임및콘텐츠논문지(구 한국컴퓨터게임학회논문지) 제36권 제3호 2023.09 pp.67-74

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

이 문서에서는 QR(Quick Response) 코드를 핵심 구성 요소로 활용하는 안전한 비접촉식 시스템의 설계 및 구 현에 대한 연구를 제시한다. 이 시스템의 주요 목표는 디지털 상호 작용 영역 내에서 강력한 보안과 향상된 사용자 경험 사이의 격차를 해소하는 것이다. 시스템의 다양성은 다양한 애플리케이션과의 폭넓은 호환성으로 확장될 수 있다. 비접촉식 결제, 전자 발권, 보안 신원 확인, 의료 기록에 대한 편리한 액세스 등의 영역으로 유틸리티를 확장할 수 있다. QR 코드의 국제 표준화는 원활한 크로스 플랫폼 호환성을 보장하여 디지털 생태 계에서의 역할을 강화한다. 실제적으로 비접촉 보안 QR코드 시스템을 만들어 개발하고, 시스템의 확장 가능 성을 확인한다. 이 연구는 보안 비접촉식 시스템 영역 내에서 QR 코드의 중추적인 역할을 강조한다. 디지털 보안과 사용자 편의성의 효과적인 균형을 통해 QR 코드는 안전하고 사용자 친화적인 디지털 환경의 지속적인 발전에 중요한 요소로 부상하고 있어, 향후 연구의 잠재력은 보안과 사용자 중심 설계를 모두 향상하는 보다 복잡한 사용 사례와 추가 발전을 탐구하는 데 있게 될 것이다.

This paper presents a study on the design and implementation of a secure contactless system leveraging Quick Response (QR) codes as a core component. The main goal of this system is to bridge the gap between strong security and improved user experience within the realm of digital interaction. The system's versatility can be expanded with broad compatibility with a variety of applications. Utility can be expanded to areas such as contactless payments, electronic ticketing, secure identity verification, and convenient access to medical records. The international standardization of QR codes ensures seamless cross-platform compatibility, strengthening their role in the digital ecosystem. We actually create and develop a non-contact security QR code system and check the expandability of the system. This study highlights the pivotal role of QR codes within the realm of secure contactless systems. Through its effective balance of digital security and user convenience, QR codes are emerging as an important element in the continued development of a secure and user-friendly digital environment. The potential for future research lies in exploring more complex use cases and further advancements that improve both security and user-centered design.

7

적정 노후보장을 위한 공적연금 개혁방안 -기초연금과 국민연금의 역할 정립

주은선

[NRF 연계] 한국사회복지정책학회 사회복지정책 Vol.49 No.3 2022.09 pp.87-119

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

이 글은 다음 네 가지 공적연금 개혁 원칙 하에서 기존 공적연금 개혁안을 평가하고 공적연금보장성을 강화하는 두 가지 길을 제시하였다. 첫째, 기초연금과 국민연금의 기본성격을 명확히할 필요가 있다. 둘째, 사회보험방식 소득비례연금으로서 국민연금제도가 노후보장체계의 중심제도로 자리 잡아야 한다. 셋째, 노후소득보장체계는 현재와 미래 노인빈곤 문제에 대한 적극적 대응 기능을 가져야 한다. 넷째, 퇴직연금 역할이 제한적이라는 전망을 전제로 공적연금을 강화해야 한다. 본고에서는 제시한 두 가지 개혁안은 기초층위 개혁 방향에 뚜렷한 차이가 있으며, 그결과 국민연금의 역할도 다르다. 하나는 강화된 국민연금과 GIS(보충적 소득보장제)의 조합으로미래에는 국민연금이 노후보장의 중심이 되는 길이며 국민연금 소득대체율 인상을 포함하는 대폭적인 강화 조치를 수반한다, 다른 하나는 현행의 국민연금과 보편적 기초연금의 조합으로 기초연금이 중심이 되는 방안이다. 어떤 경우든 한국의 연금개혁은 계층통합적인 복지국가를 설계하는한 요소로 접근할 필요가 있다.

This article evaluates the existing pension reform proposals and proposes two ways to strengthen public pension security under four principles of public pension reform. First, It is necessary to clarify the Characteristics and function of Basic pension and National Pension. Second, National Pension should do the central role in old age income security as social insurance with income replacement function. Third, old age security system should respond proactively to the poverty of elderly now and in the future. Fourth, Given the limited prospects of private retirement pension, public pension benefit level should be enhanced. The directions of basic pension reforms are different in two paths presented and, as a result, the roles of National Pension are different too. One is the combination of enhanced National Pension and Compensatory income security like GIS(Guaranteed income supplement), in which the National Pension replaces labor income adequately in old age income security. The other is the combination of current National Pension and universal Basic Pension, in which Basic Pension do the central role. In any case, Korean pension reform should be one element of building a welfare state that unites social classes.

8

4,000원

전통적인 산업과 ICT의 융합은 ICT에서 나타나는 보안 위협 및 취약점과 기존 산업의 특수한 산업 종 속적인 문제점이 혼합되어 새로운 보안위협 및 취약점이 나타나고 있다. 특히, 의료ICT융합산업에서는 의 료정보시스템을 중심으로 사용자 인증에 대한 다양한 문제가 파생되어, 오남용, 보안취약점에 악용되고 있는 실정이다. 이에 따라, 본 연구에서는 의료 ICT 융합환경에서 안전한 사용자 관리를 위한 사용자 인 증시스템을 설계하고 프로토타입을 구현하였다. 구체적으로, 의료정보시스템을 중심으로 개인화 기기를 활용하여 사용자 인증을 수행함으로써 ID 공유로 나타나는 오남용과 보안 취약점을 해결하고, 개별 ID/PW 방식 인증의 불편함을 해소하기 위한 방안을 설계 및 프로타입을 구현하였다.

The convergence of traditional industry and ICT is a combination of security threats and vulnerabilities in ICT and spe cific industry-specific problems of existing industries, and new security threats and vulnerabilities are emerging. In particu lar, in the medical ICT convergence industry, various problems regarding user authentication are derived from the medical information system, which is being used for abuse and security weaknesses. According, this study designed and implemen ted a user authentication system for secure user management in medical ICT convergence environment. Specifically, we de sign and implement measures to solve the abuse and security weaknesses of ID sharing and to solve the inconvenience of individual ID / PW authentication by performing user authentication using personalized devices based on medical informati on systems.

9

4,000원

Web3 Internet structure has been widely investigated to support data sovereignty of individuals. In order to protect privacy of individuals, sensitive information within personal data needs to be hidden before disclosing it outside. One method hiding the sensitive information such as phone number and resident registration number is pseudonymization technology, which converts the sensitive information into a non-interpretable identifier. To connect securely the non-interpretable identifier to its data owner, the previous central system employs a single computer that stores the mapping table between the non-interpretable identifier and the connecting address of its owner. Because the previous system is vulnerable to internal and external attacks, this paper proposes a distributed system, in which multiple computers divide up the roles to perform the mapping. Evaluation verifies that the proposed system is robust against external and internal attacks. Although the execution time of the proposed systems is longer than that of the previous system, its difference is negligible.

10

OpenFlow를 이용한 유‧무선 통합 네트워크 환경에서의 인증 시스템 KCI 등재

문정경, 김진묵, 조한진

한국디지털정책학회 디지털융복합연구 제12권 제4호 2014.04 pp.285-291

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

최근 무선 통신장치들이 매우 빠르게 발전되고 사용자에게 보급되고 있다. 이로 인해서 기존의 유선 네트워 크 장치들과 새로운 무선 네트워크 장치들을 통합한 새로운 메쉬 네트워크에 대한 요구가 급속히 발전하고 있다. 이 런 유.무선 통합 네트워크 환경에서 자동으로 네트워크를 구성하고, 이런 환경에서 사용자 또는 유.무선 통신장치에 대해 인증서비스를 반드시 제공해야만 한다. 하지만 현실적으로 이런 서비스를 제공하고 있지 못하다. 그러므로 본 논문에서 유.무선 통합 네트워크 환경에서 오픈플로우를 사용해 네트워크를 자동으로 구성하고, 커베로스를 응용한 사용자 인증시스템을 제안하였다. 우리가 제안한 인증시스템은 장치 또는 사용자에 대한 인증서비스를 제공할 수 있 을 뿐만 아니라, 비밀성, 무결성 서비스를 제공할 수 있다. 추가로 중간자공격에 대해서도 막을 수 있다.

Recent, development of wireless communication devices are rapidly and these device being deployed to the user very fast. By this results, a wired network device and the new device such as wireless devices incorporate. Then a demand of new mesh network is rapidly growing. In this wired/wireless integrated network environment, the network is configured automatically, and a user or wireless communication devices must be provided for authentication services. But, these services do not in the real world. Therefore, in this paper, we propose that wired/wireless integrated network environment to automatically configure the network using OpenFlow and the authentication system using Kerberos method. Our proposed system to be able to provide authentication services, confidentiality, integrity services for user or wired/wireless communication devices. And it can be prvented as well to man-in-the-middle attacks.

11

4,000원

2006년부터 Facebook, Twitter, Blog와 같은 소셜 네트워크 서비스 사용자가 급격하게 늘어나고 있다. 더욱이 스마 트폰을 이용해 편리하게 도서를 검색하고 여러 대학이 소장한 자료를 공유해 편리하게 사용할 수 있는 소셜 도서 검색 시스템에 대한 요구도 급증하고 잇다. 하지만 현재까지 국내에서 소셜 도서 검색 서비스에 알맞은 보안서비스를 제공하 지 못하고 있다. 그러므로 본 연구에서는 소셜 도서 검색 서비스를 위한 안전한 사용자 인증시스템과 부분 Filter 기법 을 적용해 스마트폰 환경에서 응답성을 높일 수 있는 새로운 시스템을 제안하였다. 제안시스템은 소셜 도서 검색 서비 스를 부정적으로 사용할 수 없도록 사용자 인증 서비스를 제공할 수 있을 뿐만 아니라, 스마트폰에서도 소셜 도서 검색 서비스를 사용하는데 효과적인 응답시간을 제공할 수 있음을 보인다.

Since 2006, social networking services such as Facebook, Twitter, and Blog user increasing very rapidly. Furthermore demand of Book Retrieval Service using smartphone on social network service environment are increasing too. This service can to easy and share information for search book and data in several university. However, the current edition of the social services in the country to provide security services do not have the right. Therefore, we suggest a social book Retrieval service in social network environment that can support user authentication and partial filter search method on smartphone. our proposed system can to provide more speed responsiveness, effective display result on smartphone and security service.

12

AI를 활용한 아동 진술증거의 신뢰성 확보 방안 연구 KCI 등재

손지영

한국제도경제학회 제도와 경제 제18권 제2호 통권 52호 2024.05 pp.167-199

※ 기관로그인 시 무료 이용이 가능합니다.

7,500원

최근 우리 헌법재판소는 2021년 12월 23일에 선고한 2018헌바524 결정을 통해 성폭력 범죄의 처벌 등에 관한 특례법 제30조 제6항에 대해 위헌 결정을 내리면서 아동 진술 영상녹화물의 증거능력에 대해 이전과는 다르게 그 증거능력을 부정하는 입장을 취하면서, 피고인 반대신문권이 보장되어야 한다는 입장으로 전환하였다. 그리고 이와 같은 헌법재판소 결정의 영향으로 이후 대법원은 최근까지 아동 진술 영상녹화물의 증거능력을 부인하는 판결들을 선고하고 있는 상황이다. 그러나 아동의 경우 피고인 반대신문권의 일정한 제한은 아동 피해자 진술의 특수성과 그 진술 신빙성 확보의 차원에서도 일반적인 반대신문권의 제한과 동일선상에서 평가할 수 있는 성질의 것이 아니다. 우리 사법부의 이러한 법적 관점 전환의 이유도 아동의 법적 진술에 관한 다양한 연구 결과들을 부정하거나 배척하기 때문은 아니라고 본다. 그렇다면 남은 과제는 결국 진술 영상녹화물의 증거능력이 배척된 상황에서 아동 피해 진술의 신뢰성을 확보할 수 있는 새로운 방법론을 찾는 것이다. 이에 본 논문은 이하에서 피고인 반대신문권의 수사단계 아동 피해 진술 채증 과정에서의 구현 가능성, 진술 과정에서의 아동 2차 피해 방지 가능성, 피해 사실을 조사하는 수사전문가의 역량 균질화 가능성, 그리고 이를 통한 아동 진술의 신뢰성 확보 가능성 등을 고려한 새로운 ‘AI 기반의 제도적-기술 적 아동 진술 신뢰성 확보 방안’에 대해 논의하고자 한다. 이를 위해 먼저, 헌법재판소 2018헌바524 결정과 그 영향으로 인한 대법원 2021도14530 판결, 대법원 2021도14616 판결, 2023도15133 판결의 분석을 통해 최근 문제 된 우리 대법원의 아동 진술 영상녹화물 증거능력에 대한 법적 판단의 변화를 검토해 보고(제Ⅱ장), 아동 진술 영상녹화물 증거능력 문제의 보완 필요성을 설명(제Ⅲ장)하고자 한다. 반대신문권과 조화될 수 있는 아동 피해 진술 확보를 위한 절차적 제도적 방안 및 이를 구현할 수 있는 AI와 클라우드를 활용한 아동 목격자 맞춤형 비대면 진술조서 지원 시스템을 제시한(제Ⅳ장) 다음, 이러한 AI 기반 진술조서 지원 시스템의 활용 방안과 함께 향후 추가적인 과제(제V장)에 대해 간략히 언급하고자 한다.

Recently, the Korean Constitutional Court ruled that Article 30 (6) of the Act on Special Cases Concerning the Punishment of Sexual Violence Crimes was unconstitutional through the 2018 Heonba 524 ruling on December 23, 2021. This decision is taking a position to deny the admissibility of child statement video recordings differently from before. In other words, it was converted to the position that the defendant’s right to cross-examination should be guaranteed. Due to the influence of the Constitutional Court’s decision, the Supreme Court has recently sentenced rulings denying the admissibility of child statement video recordings. However, in the case of a child, certain restrictions on the defendant’s right to cross-examine should not be evaluated on the same line as general restrictions on cross-examination in terms of the specificity of the statement of the child victim and securing the credibility of such statement. The reason for this legal transition of our judiciary is not because it denies or rejects various research results on legal statements of children. If so, the remaining task is to find a new way to secure the reliability of child victim statements in a situation where the admissibility of statement video recordings has been rejected. In response, this paper seeks to discuss a new “AI-based institutionaltechnical method of securing credibility of child statements” that takes into account (1) the guarantee of the defendant’s right to cross-examine during the investigation stage, (2) the possibility of preventing secondary harm during the child’s statement process, (3) the equalization of the investigative expert’s capacity to investigate the victim, and (4) the possibility to secure credibility of the child’s statement. To this end, first, the analysis of the Constitutional Court Decision 2018Hun-Ba524 and the Supreme Court Decisions 2021Do14530, 2021Do14616, and 2023Do15133 is conducted. Since then, we will review the change in the legal judgment on the admissibility of child statement video recordings of our Supreme Court, which has recently become a problem in Section Ⅱ. It also explains the need to supplement the problem of the admissibility of child statement video recordings in Section Ⅲ. Procedural institutional measures to secure child damage statements that can be harmonized with cross-examination rights, and a system to support non-face-to-face statement protocols tailored to child witnesses using AI and cloud that can implement them in Section Ⅳ. Finally, we would like to briefly mention additional tasks in the future along with how to utilize this AI-based statement support system in Section Ⅴ.

13

안전한 MANET을 위한 협력적인 보안체계 구축 KCI 등재

양환석, 유승재

한국융합보안학회 융합보안논문지 제13권 제3호 2013.06 pp.33-38

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

이동노드들 사이에 보안과 효율적인 통신의 제공은 MANET에서 가장 중요한 부분 중의 하나이다. 특히 무선 네트 워크는 개방된 통신매체와 통신을 위한 협력적 구조 때문에 공격에 대한 위협이 상당히 높다. 그러나 MANET의 특성 상 기존의 보안 메커니즘이나 침입탐지시스템의 적용이 쉽지 않다. 왜냐하면 노드들의 이동으로 인한 동적인 토폴로지 와 여러 네트워크 센서를 통한 감사 데이터의 수집, 통합이 어렵기 때문이다. 본 논문에서는 네트워크에 참여하는 전체 노드들에 대한 신뢰를 평가하는 인증 기반으로 신뢰성을 높이고, 침입발생시 이를 효율적으로 탐지할 수 있는 협력적 보안 체계 기법에 대하여 제안하였다. 클러스터를 관리하는 클러스터 헤드는 인증서 발급을 위한 CA 역할을 수행하며, 게이트웨이 노드가 침입탐지시스템의 역할을 수행하게 된다. 하나의 침입탐지 노드에서 공격이 탐지되지 않는 경우 이 웃 노드와 함께 협업하여 공격 탐지를 수행하게 된다. 제안한 기법의 성능은 SRP 기법과 비교실험을 통해 확인하였다.

Security between mobile nodes and efficient communication is one of the most important parts of the MANET. In particular, the wireless network is significantly higher for the attack threats because of collaborative structure for open communication media and communication. However, application of existing security mechanisms and intrusion detection system is not easy due to the characteristics of MANET. It is because collection and integration of adult data by the dynamic topology due to the mobility of nodes and many network sensors is difficult. In this study, we propose cooperative security system technique that can improve the reliability based on authentication assessing confidence about the whole nodes which joins to network and detect effectively this when intrusion occurs. Cluster head which manages the cluster performs CA role for the certificate issue and the gateway node performs role of intrusion detection system. Intrusion detection is performed by cooperating with neighboring nodes when attack is not detected in one intrusion detection node. The performance of the proposed method was confirmed through experiments comparing with the SRP technique.

14

미래 전장환경에서 안전한 데이터 관리를 위한 준동형 시스템 설계 KCI 등재

차현종, 김진묵, 유황빈

한국융합보안학회 융합보안논문지 제14권 제2호 2014.03 pp.51-56

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

미래 전장환경은 주로 네트워크 중심전의 이론을 기반으로 표현되고 있다. 미래의 전쟁에서는 적군보다 먼저 적을 인식하고, 빠르게 의사결정을 하여 정확하게 타격을 하는 것을 목표로 하고 있다. 이를 위해 C4ISR+PGM의 통합체계를 구축 중이다. 이러한 통합체계에서는 정보의 보안측면을 더욱 강화해야 한다. 특히, 보안성의 강화는 효율성의 저하로 이어진다. 때문에 보안성과 효율성이 고려되어야 한다. 이에 본 연구에서는 미래 전장환경에서의 정보공유 중에 데이터 를 안전하게 관리할 수 있는 준동형 암호 시스템을 제안한다. 제안기법은 암호문 상태에서 산술연산이 가능한 준동형 암호를 사용한다. 암호문 상태에서 원하는 정보로 수정하여 정보를 전달하므로, 정보전달하는 중에 유출되더라도 공격 자는 제대로 된 정보를 확인 할 수 없다.

Be expressed in network-centric warfare, mainly battlefield environment of the future. The purpose of the system for the war of the future, is to recognize the enemy before the enemy, and rapid decision-making, to hit accurately. For this reason , it is during the construction of the integrated system of C4ISR+PGM. In such an integrated system , it is necessary to further enhance the security aspects of the information. In particular, strengthening of security leads to a decrease of efficiency. Therefore, security and efficiency should be considered together. In this study, we provide a homomorphic encryption system that can be safely managed information environment on the battlefield of the future. The proposed method uses encryption technology of homomorphic that can be the arithmetic operations on encrypted state. It has changed from the state of the encryption. Therefore, the attacker can not know a decent information.

15

스마트홈은 분산 컴퓨팅을 기반으로 하고 있으며, 분산컴퓨팅 환경에서 공유하는 자원이나 정보가 증가함에 따라 허 가되지 않은 정보의 접근이 발생하고 정보의 불법적인 사용으로 인한 정보의 누출이 발생한다. 따라서 분산 컴퓨팅 환경의 정보를 보호하기 위하여 사용자의 인증이나 사용자의 작업에 대한 접근통제 정책을 통한 정보보안의 필요성 이 증가하고 있으며, 이러한 접근통제 정책은 시스템 사용의 편리성을 위하여 응용프로그램이나 사용자의 작업을 방 해하지 않고 투명하게 제공되는 것을 목적으로 한다. 본 논문에서는 안전하고 효율적인 스마트홈 시스템 관리를 위한 방법으로 역할 기반의 다중 인증 시스템을 구현하여 시스템이 안전하게 보안 위협으로부터 보호될 수 있는 방안을 제 안하고 구현하였다. 제안 시스템은 기존 전자서명을 이용하여 외부 망으로부터의 접근에 대한 보안을 강화하였으며, 역할 기반의 MIB를 이용하여 댁내 망 내부에서도 보다 안전한 권한 제어를 통한 강화된 보안을 기대할 수 있다.

Smart home is based on distributed computing, and as resources and information shared in the distributed computing environment increase, unauthorized access to information occurs and information leakage occurs due to illegal use of information. Therefore, in order to protect information in a distributed computing environment, the need for information security through user authentication or access control policies for user tasks is increasing. It aims to be provided transparently without interfering with work. In this paper, as a method for safe and efficient smart home system management, a role-based multi-authentication system is implemented and a method is proposed and implemented so that the system can be safely protected from security threats. The proposed system strengthened the security of access from the external network by using the existing digital signature, and can expect enhanced security through more secure authority control inside the home network using the role-based MIB.

16

ITS시스템 보안을 위한 이미지 조합 알고리즘에 관한 연구

오성준, 백기영, 김웅식, 김복기

한국ITS학회 한국ITS학회 학술대회 2011년 한국ITS학회 추계학술대회 2011.11 pp.59-63

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

17

안전한 보안명령 전달을 위한 비행종단시스템용 암호화 장치 설계 요구사항 KCI 등재후보

황수설, 김명환, 정혜승, 오창열, 마근수

한국위성정보통신학회 한국위성정보통신학회논문지 제10권 제3호 2015.09 pp.114-120

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

본 논문에서는 우주발사체에 적용되는 비행종단시스템의 보안명령 입력을 위한 암호화 장치의 개념설계 결과와 개발 요구조건을보였다. 암호화 장치는 명령신호를 생성하고 암호화하기 위한 명령생성장치와 암호화 명령신호를 연계장치에 입력하기 위한 명령입력장치로 구분하여 개발되도록 설계하였으며, 미국 NIST의 권고안과 한국인터넷진흥원(KISA)의 권고안을 참고하여 보안등급과암호 알고리즘, 암호키 관리방안 등을 설정하였다. 암호화 장치는 AES-256 블록 암호화가 적용된 비밀키 알고리즘과 SHA-256의해쉬 알고리즘을 적용하여 기밀성, 무결성, 가용성이 확보되도록 설계되었다. 설계된 암호화 장치는 우주발사체에 탑재되는 비행종단시스템의 보안명령 입력 용도로 활용되어 비행종단명령의 보안성과 비행종단시스템의 신뢰성 향상에 기여할 것으로 판단된다.

In this paper, we show the design requirements of the cryptographic module and its security algorithm designed to prevent the exposure of the command signal applied to Flight Termination System. The cryptographic module consists of two separate devices that are Command Insertion Device and Command Generation Device. The cryptographic module designed to meet the 3 principles(Confidentiality, Integrity and Availability) for the information security. AES-256 block encryption algorithm and SHA-256 Hash function were applied to the encrypted symmetric key encryption method. The proposed cryptographic module is expected to contribute to the security and reliability of the Flight Termination System for Space Launch Vehicle.

18

4,500원

Drugs are directly related to disease treatment and differ from general consumer goods. Biological products, which are high-cost and high-risk, are highly sensitive to temperature fluctuations; exceeding recommended storage conditions can compromise both efficacy and safety. The International Council for Harmonisation (ICH) provides stability test guidelines that define scientifically justified storage conditions and expiration criteria to ensure drug quality, safety, and effectiveness. Based on these guidelines, national regulatory authorities establish their own standards for drug storage and distribution. However, temperature excursions still occur during distribution, and especially at the patient storage stage. Self-Injectable Drugs which have increased in use, have system limitations. Patients themselves are directly responsible for storage and administration at home, so they cannot check the state of a drug’s condition. Studies have shown that patients frequently fail to maintain proper conditions. To address these challenges, this study aims to develop a regulatory science-based temperature monitoring system. The Time-Temperature Indicator, a color-changing label that irreversibly reacts when exposed to excessive temperature, is proposed as a simple, user-friendly and cost-effective solution. By analyzing domestic and international temperature monitoring regulations and identifying blind spots in current cold chain systems, this study seeks to enhance patient safety, strengthen public trust, and minimize economic losses.

20

준동형 암호를 이용한 안전한 데이터 관리 시스템 설계 KCI 등재

차현종, 양호경, 최강임, 유황빈, 신효영

한국융합보안학회 융합보안논문지 제15권 제4호 2015.06 pp.97-103

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

기업체에서는 정보를 암호화 후 저장하는 것을 법적으로 의무화하고 있다. 하지만, 실제로 정보를 암호화하여 저장 하면 검색 또는 수정 시 서버에서 사전에 반드시 복호화 과정을 수행해야만 한다. 그러므로 처리지연 시간이 발생하고, 효율성이 떨어진다. 이러한 작업은 서버에 부담을 주게 되므로 서버를 관리하는 업체나 관리자는 정보를 암호화하여 저 장하지 않는다. 본 논문에서는 네트워크 환경에서 정보의 수집과 빠른 의사결정을 복호화 과정 없이 암호문을 수정할 수 있는 준동형 연산을 이용하여 안전성이 보장되고 빠른 처리가 가능한 효과적인 보안 데이터 관리 시스템을 설계하 고 구현한다. 구현된 시스템은 보안성의 보장을 위해 기존의 암호화 알고리즘을 사용할 수 있다. 검색 시에는 키워드 검색 방식을 사용한다. 추가로 트랩도어를 사용함으로써 키워드가 노출되지 않고 검색 시마다 변경되어 키워드에 대한 정보가 노출되지 않는다.

General companies consider saving the information after enciphering as law. However, if the actual information is saved as enciphered, the decoding process must be conducted when the information is searched or edited in the ser ver. Therefore, process delay time occurs and is less efficient. This kind of work gives burden to the server, so the companies or managers handling the server do not save the information after enciphering. In this paper, the Networ k constructs and realizes an efficient security data management system that ensures safety and haste in operating u sing the homomorphic encryption technology, which collects information and decides quickly, and enables editing the encryption without a decoding process. To ensure the security of the embodied system, the existing encryption algo rithm can be used. Search method to use the keyword search. Additionally, by using a trapdoor, the keyword is not expose and it is changed whenever it is searched, and the formation of the keyword does not get exposed.

 
1 2 3 4 5
페이지 저장