Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 64
No
1

푸시 서버와 스마트 디바이스를 이용한 영상보안 시스템

박승환, 오유철, 김창복

[Kisti 연계] 한국항행학회 한국항행학회논문지 Vol.18 No.6 2014 pp.588-593

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

최근 스마트 디바이스는 성인 대다수가 보유하고 있으며, 다양한 개인화 서비스가 제공되고 있다. 본 논문은 스마트 디바이스를 이용하여 보안이 요구되는 장소에 실시간으로 침입 여부를 감지하는 경량의 지능형 영상보안 시스템을 제안하였다. 제안 영상 보안 시스템은 누적영상 기반의 차 영상과 동적 배경 갱신 알고리즘을 사용하여 침입여부를 인식하였다. 침입통지는 사용자 모바일 디바이스의 어플리케이션 단위로 메시지를 전송할 수 있는 GCM (Google cloud message) 푸시서버와 전자 메일 표준 프로토콜인 SMTP (simple mail transfer protocol) 메일서버를 이용하였다. 침입자가 발생했을 경우에, GCM 푸시서버는 실시간으로 개인 모바일 디바이스에 푸시 메시지를 전송하고, SMTP 메일서버는 침입자 사진과 침입시간 전송하였다. 제안 영상 보안시스템은 영상 처리 알고리즘과 스마트 디바이스의 성능을 융합하여 다양한 지능형 영상 보안 분야에 응용할 수 있다.

Recently, the smart devices has been possessed by a large majority of the adult, and offered various personalization services. This paper proposed the lightweight Intelligent Image Security System that notice the existence of any intruder in real time at the place of requiring the security by using smart device. The proposed image security system recognized whether or not intruder exists using the difference frame on the basis of Integral Image and the dynamic background updating algorithms. The intrusion notification is achieved by using the GCM push server that send massages in the application unit of user mobile device, and the SMTP mail server which is use of e-mail standard protocol. In case of the occurrence of intruder, GCM push server send an push-massage by the private mobile device, and SMTP mail server send the intruder's photograph and intrusion time. By the convergence of the various image processing algorithms and the performance of smart device, The proposed image security system can be applied to the various Intelligent Image Security field.

2

리눅스 서버의 사용자 관리 및 보안

정성재, 성경

[Kisti 연계] 한국항행학회 한국항행학회논문지 Vol.19 No.6 2015 pp.587-594

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

개방형 운영체제인 리눅스는 전통적인 웹, 메일, DNS, FTP 등의 서버뿐만 아니라, 클라우드 및 빅데이터 인프라 구축에도 사용되고 있다. 또한 데스크톱이나 모바일 기기, 스마트 TV 및 자동차 등에도 탑재되고 있다. 특히, 사물인터넷 시대로 접어드는 현 시점에서는 리눅스가 차지하는 비중이 더 커질 것으로 예상되고 있다. 리눅스의 사용이 증가함에 따라 보안이 중요한 요소로 부각되고 있고, 리눅스 시스템 보안의 핵심은 사용자 관리에 있다. 본 논문에서는 리눅스의 사용자를 분류하고, 사용자 관련 파일의 역할을 분석하였다. 마지막으로 리눅스의 사용자별 보안 관리 기법에 대해 알아보고, 유용한 사용자 보안 도구에 대해 분석하였다.

Open operating system, Linux is the traditional Web, E-mail, DNS, FTP server, as well as being used in Cloud and Big data infrastructure. In addition, Linux is also used like a desktop or mobile devices, smart TV and cars. In particular, stepping up to the IoT era at this time is expected to be greater proportion occupied by Linux. As the use of Linux has increased security has emerged as an important factor. User management is core of Linux system security. In this paper, Classifying Linux user and analyzed the role of the user-specific file. Finally, we analyzed the linux management technologies and useful user security tools.

3

서버 측 브라우저를 활용한 서비스들의 보안 위협 진단 및 안전성 검증

이민상, 최형기

[Kisti 연계] 한국정보보호학회 정보보호학회논문지 Vol.34 No.4 2024 pp.693-706

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

브라우저는 웹페이지를 렌더링하여 데이터 추출, 형식 변환 그리고 개발 테스트 등의 기능을 수행하는 프로그램에서 활용된다. 브라우저를 활용하는 온라인 서비스는 브라우저 정보가 노출되거나 안전하지 않은 상태로 사용될 때 보안 문제를 야기한다. 본 논문에서는 안전한 브라우저 사용을 위해 취할 수 있는 보안 요구사항을 제시하고, 이를 만족하지 않을 시 발생하는 보안 위협을 설명한다. 실험을 통해 상용 웹 애플리케이션의 안정성을 검증하고, 브라우저가 공격 도구로 악용되는 취약 사례를 분석한다.

The browser is utilized to render web pages in programs that perform tasks such as data extraction, format conversion, and development testing on web pages. Online services that utilize browsers can cause security issues if browser information is exposed or used in an unsafe manner. This paper presents security requirements for the safe use of browsers and explains the security threats that arise if these requirements are not met. Through evaluation, the security verification of commercial web applications is conducted, and the vulnerabilities that allow browsers to be exploited as attack tools are analyzed.

4

보안이 강화된 특수목적용 웹서버 설계 및 구축 제안

홍성락, 조인준

[Kisti 연계] 한국콘텐츠학회 한국콘텐츠학회논문지 Vol.22 No.2 2022 pp.71-79

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

현재 웹 서버의 보안을 위해 관제와 모의 해킹을 한다고 해도 계속해서 취약점이 발생하고 해킹을 당하는 것이 현실이다. 해당 문제를 해결하기 위해 L4와 L5 사이에서 소켓을 사용해 모든 웹 통신을 제어할 수 있는 보안 웹 서버를 개발했다. 그리고 HTTP 응답을 줄 때 매번 파일과 헤더를 합치는 행위를 미리 합쳐놓는 방식을 제안했다. 그 결과 보안과 속도를 둘 다 향상할 수 있었다. 따라서 본 논문에서는 관제와 모의 해킹을 해도 취약점이 발생하는 이유와 그것에 대한 해결방안과 더 나아가 DB까지 보안을 유지할 수 있는 보안 웹 서버개발 방식을 제안하였다.

Currently, even if control and mock hacking are performed for the security of web servers, vulnerabilities continue to occur and be hacked. To solve this problem, we have developed a secure web server that can control all web communication using sockets between L4 and L5. And when giving HTTP responses, we proposed a method of combining files and headers in advance. As a result, both security and speed could be improved. Therefore, in this paper, we proposed the reason why vulnerabilities occur even if control and mock hacking occur, a solution to it, and a security web server development method that can maintain security up to DB.

5

가상화를 이용한 웹 서버 보안시스템 설계 및 구현 KCI 등재후보

유재형, 김도형, 김용호, 김귀남, 하옥현

한국융합보안학회 융합보안논문지 제8권 제4호 2008.12 pp.199-207

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

웹 서비스는 기능의 특성상 다른 서비스와는 달리 외부에 노출되어 있고 다양한 어플리케이션들이 웹 서비스와 연동되어 있어서 많은 보안 취약점들이 존재한다. 특히 새로운 웹 기술들이 개발되면서 전에 없던 새로운 형태의 보안 취약점들이 꾸준히 생겨나고 있다. 본 논문에서는 이러한 취약점들을 바탕으로, 가상화 환경을 이용하여 웹서버와 허니웹을 구축함으로써 어떤 공격에 대해서도 시스템의 하드웨어까지 영향을 미치지 않도록 구성되며 허니웹을 통하여 새로운 공격에 대해서도 정보를 수집할 수 있도록 웹 서버 보안시스템을 설계 및 구현 하였다. 이를 통하여 상호 통신의 웹 환경에서 적절한 보안을 제공 할 수 있다.

Web service has many security weekness because it is exposure to outside and connected with various application. Especially, as new technology developed new type of security weakness has occured consistently. In this paper, we construct webserver and honeyweb by using virtual reality on a basis these weakness. So it cannot be influenced by any attack to the hardware of the system. By using honey web, it disigned and embodied web server secutiry system to collect the data about new attack. Through this, it can provide proper secutiry in a web environment of mutual communication.

6

클라우드 환경에서 블록체인관리서버를 이용한 인증기반 내부망 분리 보안 모델

김영수, 이병엽

[Kisti 연계] 한국콘텐츠학회 한국콘텐츠학회논문지 Vol.18 No.6 2018 pp.434-442

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

오늘날 보안 위협이 점차 증가하고, 인터넷을 통한 외부악성 코드에 감염된 디바이스에 의해서 중요 데이터가 유출되는 피해가 증가하고 있다. 따라서 내부망에 연결된 디바이스에 대한 인증을 통해서 업무용 서버로의 접근을 차단하는 내부망 분리 모델이 필요하다. 이를 위한 VDI (Virtual Desktop Infrastructure)방식을 사용한 논리적 망 분리는 내부망에 연결된 물리 디바이스와 가상 디바이스 간에는 정보 교환이 차단되는 방식으로 중요 데이터의 유출을 방지하고 있으나 미등록 디바이스를 사용하여 내부망의 업무용 서버에 접근하여 중요 자료를 유출하는 공격에는 취약하다. 따라서 이의 해결책으로 VDI(Virtual Desktop Infrastructure) 기술에 블록체인 기술을 수용하여 블록체인 기반 망 분리 모델을 제안한다. 이는 VDIVirtual Desktop Infrastructure) 방식의 논리적 망 분리의 보안 취약점인 디바이스의 위변조에 대한 식별 능력과 디바이스의 무결성 강화를 통한 내부의 중요 데이터의 유출 위협을 감소시키는데 기여한다.

Recently, the threat to the security and damage of important data leaked by devices of intranet infected by malicious code through the Internet have been increasing. Therefore, the partitioned intranet model that blocks access to the server for business use by implementing authentication of devices connected to the intranet is required. For this, logical net partition with the VDI(Virtual Desktop Infrastructure) method is no information exchange between physical devices connected to the intranet and the virtual device so that it could prevent data leakage and improve security but it is vulnerable to the attack to expose internal data, which has access to the server for business connecting a nonregistered device into the intranet. In order to protect the server for business, we suggest a blockchain based network partition model applying blockchain technology to VDI. It contributes to decrease in threat to expose internal data by improving not only capability to verify forgery of devices, which is the vulnerability of the VDI based logical net partition, but also the integrity of the devices.

7

클라이언트-서버시스템의 보안을 위한 통제모형

남성우, 한인구, 이상재

한국경영정보학회 경영정보학연구 제2권 제1호 2000.06 pp.161-178

※ 기관로그인 시 무료 이용이 가능합니다.

5,200원

8

보안기능을 강화한 뇌파 분석 서버시스템 KCI 등재

최성자, 강병권, 김귀정

한국디지털정책학회 디지털융복합연구 제16권 제12호 2018.12 pp.343-349

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

뇌파 정보는 분자 단계에서 행동 및 인지 단계에 이르기까지 생성된 정보의 양이 방대하며, 개인의 고유한 프라이버 시영역을 나타내는 중요한 정보로 활용되고 있다. 이에, 뇌파정보의 다양한 정보를 통합하고 뇌파정보를 보호할 수 있는 프레임워크를 제시한다. 제안된 시스템은 전자정부 프레임워크 서버 시스템에 보안기능을 강화한 프레임워크로써, 메타데이 터를 활용한 의존성 낮은 웹 애플리케이션 서버 시스템이다. 서버 구축을 위해 스프링 플랫폼의 MVC(Model, Vew And Control)프레임워크 웹 기반 환경에 스프링 시큐리티를 적용한다. 본 시스템은 강력한 보안시스템을 탑재한 독립적이고 경 량화된 서버시스템으로 분석된 뇌파 정보를 확인할 수 있다. 이로 인해, 뇌파정보의 웹서비스 보안성을 높이고, 뇌파정보의 프라이버시 보호가 가능하다. 또한, 치매환자나 뇌인지 정보가 요구되는 경우 본 연구를 통해 원격의 실시간 확인 및 분석이 가능하다.

Electroencephalograph(EEG) information, which is an important data of brain science, reflects various levels of information from the molecular level to the behavior and cognitive stages, and the explosively amplified information is provided at each stage. Therefore, EEG information is an intrinsic privacy area of an individual, which is important information to be protected. In this paper, we apply spring security to web based system of spring MVC (Model, View, Control) framework to build independent and lightweight server system with powerful security system. Through the proposal of the platform type EEG analysis system which enhances the security function, the web service security of the EEG information is enhanced and the privacy of the EEG information can be protected.

9

검색엔진을 이용한 취약점 분석 시스템 개발 KCI 등재후보

주복규, 민병우, 장문석, 안창균, 양동혁

국제인공지능학회(구 한국인터넷방송통신학회) 한국인터넷방송통신학회 논문지 제9권 제1호 2009.02 pp.19-24

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

컴퓨터 사용이 보편화되고 언제 어디서나 인터넷 연결이 가능하게 되어 보안에 대한 위협은 급속히 증가하고 있다. 우리는 사용자가 쉽게 보안 취약점을 점검할 수 있는 보안 스캐너를 개발하였다. 기존의 보안 스캐너는 새로운 취약점이 알려지면 보안 서버에 그 내용을 갱신하고 나서 고객 서버를 점검하는 체제인데 반해, 우리 시스템은 검색엔진을 이용하여 취약점들을 자동으로 모아서 보안 서버에 색인해 두고, 사이트 관리자가 별도의 갱신 없이 보안서버를 이용하여 사이트의 보안 취약점을 점검할 수 있게 해준다.

In these days, security threat is ever increasing as computer systems and networking is everywhere. This paper is on the development of security scanner using search engine, with which site managers can easily check security vulnerability on their systems. Our security server automatically collects security-related information on the Internet, and indexes them in the database. To check the vulnerability of a customer server, the client system collects various system-specific information, and sends necessary queries to our security server for vulnerability checking. Up-to-date and site-specific vulnerability information is retrieved through the viewer, which allows the customer effectively to check and respond to security threat on client systems.

10

A High Security Architecture for LTE Core Network Server

Gengxin Sun, Sheng Bin, Yixin Zhou

보안공학연구지원센터(IJFGCN) International Journal of Future Generation Communication and Networking Vol.9 No.11 2016.11 pp.337-344

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

With the expansion of wireless network technologies and the emergence of novel mobile applications, the 3rd Generation (3G) communication is moving to the 4th Generation (4G) communication. Comparing to preceding versions, one elementary difference is that 4G wireless networks will operate entirely on the TCP/IP, which would cause greater risks in terms of safety and reliability. In this paper, a new high security architecture for Long Term Evolution (LTE) core network server is proposed and designed. There are asynchronous array of simple processors and two physically isolated high-speed system buses in the security architecture, which ensure only one bus can be connected to array of processors at the same time. Experiment results show that the security architecture can effectively prevent external threats from accessing network resources.

11

Multi-server environments are that the user registers the single registration server and since the user uses the service to authenticate on multi-server. For this, many user authentication schemes have been proposed for multi-server environments. In 2013, Li, et al., proposed dynamic ID based remote user authentication scheme for multi-server environments. Unfortunately, their scheme is vulnerable to forgery attacks and replay attacks. In this paper, we analyze the security vulnerabilities of Li et al.’s scheme, and propose dynamic ID based remote user authentication scheme for multi-server environments. The proposed scheme ensures the safety to various attacks such as forgery attacks and replay attacks. Just like the existing schemes, our scheme is efficient at using the hash function and exclusive-OR operation.

12

A Research on Security Awareness and Countermeasures for the Single Server SCOPUS

Hyuk-Jin Son, Seungdo Jeong

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.7 No.6 2013.11 pp.31-42

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Accompanying to the growing utilization and dependency on the internet and the ICT (Information and Communication Technology), the threat by hacking, malicious code and virus are rising as serious problems. Especially, the single server which is hosted by professional hosting companies is exposed to diverse attack, and then abused as malicious server. Even though responsibility for the security problem on the singe server is not to hosting company but to single server user, almost of users have little security awareness about the single server security. Thus, in this paper, we first survey the cause of increase of a single server, and then investigate reasons inducing vulnerable points of the single server. By inquiry with questionnaires about security awareness and necessity of security reinforcement for a single server, this paper suggests countermeasures for security of the single server including technical measures with low burden.

13

Architecture Design and Cyber Security Evaluation of a Festival Management System Server SCOPUS

Han Seong Son, Soon Gohn Kim

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.8 No.3 2014.05 pp.235-240

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

This article introduces an architecture design of a festival management system server. The design incorporates the concept of n-tier architecture and that of ‘thin’ server. The designed architecture was evaluated in view of cyber security, particularly defense-in-depth concept. The evaluation was performed to check if the features of the defense-in-depth concept according to a guideline are applied properly to the architecture. After reflecting the evaluation results, the designed architecture has become adequate for a festival management system when the high security is required for the system.

14

Desktop Computer Virtualization for Improvement Security, Power Consumption and Cost by SBC(Server Based Computer) SCOPUS

Lee Yong Hui, Kim Hwan Seok, Kim Baek Ki

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.9 No.5 2015.05 pp.141-152

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

It is possible for virtualization of desktop to dramatically reduce maintenance costs and improve the security using various virtualization techniques rather than previous desktop environments. Also, with blocking beforehand the information leakage caused by data centralization, it is easy to manage the information security. This desktop virtualization provides creation and duplication of data and standardized desktop environments using easy and fast virtualization works. So, it is possible to improve efficiency, stability, and fusibility of virtualization. In this paper, with the desktop virtualization, the power saving effects are obtained from 65,750(kW) to 7,300(kW) , which is from 480(w) to 50 (w) for using one desktop for 8 hours per a day. In addition, the 62 desktops and 62 monitors are combined to one operational server with 62 thin clients. As a result of this, the security is improved greatly by data centralization, which the user can access the main server as a thin client with given space.

15

Defense–in–Depth Architecture of Server Systems for the Improvement of Cyber Security SCOPUS

Hanseong Son, Soongohn Kim

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.8 No.3 2014.05 pp.261-266

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

In this work, the features of the Defense-in-Depth (DID) concept of nuclear industry cyber security have been studied to obtain the insights of the DID architecture of server systems. Through the feature analysis, we have found out that there need to be clear system boundaries among all DID levels, systems should be classified by smaller scale, and one-way data flow makes it possible to assign a high cyber security level to a system. Based on the finding, we have suggested a DID architecture for server systems. The architecture is an n-tier and ‘thin’ server architecture which introduces the special features of the nuclear industry DID concept. The suggested architecture is expected to be very useful to improve the cyber security of various kinds of server systems.

16

행정기관의 안전한 스마트폰 기반 업무 환경을 위한 서버 보안 기술 연구 KCI 등재후보

김지연, 김형종

보안공학연구지원센터(JSE) 보안공학연구논문지 Vol.7 No.6 2010.12 pp.683-691

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

최근 스마트폰의 사용이 활성화 되면서 이를 효율적 업무 환경 구축을 위해 활용하고자 하는 사회적 요구가 높아지고 있으며, 이러한 요구는 행정기관의 스마트폰 기반 업무 환경 구축으로도 이어지고 있다. 행정기관에서는 현재 모바일 단말을 이용한 전자 결재 시스템의 접근을 허용하고 있기 때문에 추후 행정기관의 스마트폰 도입이 활성화되면 전자 결재 뿐 아니라, 회계 예산과 같은 업무 지원을 위한 다양한 애플리케이션이 개발될 것으로 예상된다. 따라서 행정기관에서 지원하는 다양한 업무지원 서버를 안전하게 운영하기 위한 보안 연구가 필요하며 본 논문에서는 이러한 목적으로 행정기관에서 도입할 수 있는 세 가지 유형의 서버 구축 모델을 제시하고, 각 모델의 보안성을 논의하고자 한다.

As smartphone use is on the rise, social needs for the use of smartphone in business are increasing. Since smartphone can do much to improve work efficiency, government bodies are also interested in smartphone use. The Korean government already has an electronic approval system which allows access from mobile devices. Therefore, if the government bodies develop smartphone-based work environment, various applications that support not only electronic approval but also other works such as budget and accounting will be developed. To protect application servers against the smartphone's security threats, the government bodies should apply security techniques to the servers. In this paper, we suggest three types of server models which can be deployed in the government bodies and discuss their security issues.

17

Shin의 스마트카드 활용 다중 서버 환경을 위한 사용자 인증 방식에 대한 보안성 재분석 KCI 등재

박준철

보안공학연구지원센터(JSE) 보안공학연구논문지 Vol.13 No.6 2016.12 pp.407-420

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

스마트카드를 통해 안전하게 보관, 처리되는 생체정보를 활용하게 됨으로써 편의성과 보안성이 향상된 사용자 인증이 가능해졌다. Shin[3]에서는 기존 Mishra 등[4]이 발표한 인증 방식이 서버 및 사용자 위장, 사용자가 원하지 않는 서버와의 연결, 메시지 재사용을 통한 서비스 거부 공격에 취약하다는 점을 지적하고, 새로운 인증 방식을 제안하였다. 본 논문은 Shin[3]의 인증 방식이, 해당 논문에서 분석된 것과 달리, 서버 및 사용자로의 위장이 가능함은 물론이고 가짜 사용자 ID로도 서버에 인증을 받을 수 있음을 보인다. 아울러 등록센터의 정보가 유출되는 경우 공격자는 사용자나 서버로의 위장, 교환되는 메시지 내용 해독을 할 수 있음을 입증한다. 위장 공격으로부터 안전한 스마트카드 활용 인증 방식을 설계하는데 본 논문의 분석 결과를 활용할 수 있을 것이다.

The use of biometric information has made it feasible to authenticate users with ease and improved security when stored and processed on smart cards. Shin[3] investigated Mishra[4] et al’s scheme to discover it has the vulnerabilities of server and user impersonation, redirecting user’s message to a wrong server, and denial of services on servers due to message replays. Shin[3] proposed a new authentication scheme to fix the vulnerabilities. We show that Shin[3]’s scheme also suffers from user and server impersonation and authentication of users with fake IDs, contrary to the author’s claims. We also show that an attacker who has stolen information from registration center will be able to impersonate any user or server and decrypt the messages between any pair of a user and a server. The security reanalysis in this paper can be utilized to design secure authentication schemes against impersonation attacks using smart cards.

18

취근에, 멀티서버 환경을 위한 스마트 카드를 이용한 사용자 인증 방식이 실질적인 응용 분야에서 적용되고 있다. 2009년도에 Liao-Wang은 멀티서버를 위한 안전한 동적 ID 기반 원격 사용자 인증 방식을 제안하였다. 이 방식 은 여러 종류의 가능한 공격에 안전하면서 사용자 익명성 보장하였다. 본 논문에서 우리는 Liao-Wang의 방식에 대한 안정성을 분석하고, Liao-Wang의 방식이 위조 공격, 패스워트 추측 공격, 세션키 공격 그리고 내부자 공격에 취약하 다는 것을 보여준다. 추가로 Liao-Wang의 방식이 사용자와 서버간의 사용자 익명성 역시 제공하지 못한다는 것을 증 명한다.

Recently, user authentication schemes using smart cards for multi-server environment have been proposed for practical applications. In 2009, Liao-Wang proposed a secure dynamic ID based remote user authentication scheme for multi-server environment that can withstand the various possible attacks and provide user anonymity. In this paper, we analyze the security of Liao-Wang’s scheme, and we show that Liao-Wang’s scheme is still insecure against the forgery attack, the password guessing attack, the session key attack, and the insider attack. In addition, Liao-Wang’s scheme does not provide user anonymity between the user and the server.

19

컨텐츠에 따른 부하 분산 시스템에서 보안 세션 재사용의 성능 평가

김석수, 강민균

보안공학연구지원센터(JSE) 보안공학연구논문지 Vol.2 No.3 2005.11 pp.178-185

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

20

쿠버네티스 API server의 Transport Layer Security 패킷 실시간 복호화 및 시각화 시스템

김태현, 김태영, 최미희, 진성근

[Kisti 연계] 대한임베디드공학회 대한임베디드공학회논문지 Vol.16 No.3 2021 pp.99-105

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

The cloud computing evolution has brought us increasing necessity to manage virtual resources. For this reason, Kubernetes has developed to realize autonomous resource management in a large scale. It provides cloud computing infrastructure to handle cluster creations and deletions in a secure virtual computing environment. In the paper, we provide a monitoring scheme in which users can observe securely encrypted protocols while each Kubernetes component exchanges their packets. Eventually, users can utilize the proposed scheme for debugging as well as monitoring.

 
1 2 3 4
페이지 저장