개인 맞춤형 IPTV 서비스를 위한 자바카드 기반의 사용자 인증 메커니즘

Java Card-based User Authentication and Personalized IPTV Services in 3G Mobile Environment

  • 박윤경 (고려대학교 정보경영공학전문대학원) ;
  • 임선희 (고려대학교 정보경영공학전문대학원) ;
  • 윤승환 (고려대학교 정보경영공학전문대학원) ;
  • 이옥연 (국민대학교 자연과학대학 수학과) ;
  • 이상진 (고려대학교 정보경영공학전문대학원)
  • Park, Youn-Kyoung (Graduate School of Information Management and Security, Korea University) ;
  • Lim, Sun-Hee (Graduate School of Information Management and Security, Korea University) ;
  • Yun, Seung-Hwan (Graduate School of Information Management and Security, Korea University) ;
  • Yi, Ok-Yeon (Department of Mathematics, Kookmin University) ;
  • Lee, Sang-Jin (Graduate School of Information Management and Security, Korea University)
  • 발행 : 2008.07.30


Internet Protocol Television (IPTV)는 방송 통신 융합 서비스 실현을 위한 대화형의 개인 맞춤형 멀티미디어 서비스이다. TV에 연결되는 IPTV Set-Top Box (STB)는 사용자의 유일한(unique) 하드웨어 식별자로서 가입자 인증에 사용된다. 이것은 box-level의 식별방법으로 가족 구성원이 하나의 IPTV 서비스를 공유한다는 점에서 개인 맞춤형 서비스를 지향하는 IPTV의 목적에 적합하지 않다. 본 논문에서는 기존의 STB에 3G 이동통신의 오픈 플랫폼 자바카드를 기반으로 한 사용자 개인정보를 저장할 수 있는 IDENTITY 애플릿을 정의하여 3G 네트워크와 IPTV 응용서버 사이에 사용자 중심의 인증과 개인 맞춤형 서비스가 가능한 IPTV 인증 프로토콜을 제안하고, 이에 대한 효율성과 안전성에 대해 검증한다.

Internet Protocol Television (IPTV) provides an interactive and personalized service for realizing integrated broadcasting and telecommunication services. Set-top box (SIB) connected to TV is an essential component required for IPTV and has a unique hardware identifier used in identification and authentication. It means that subscriber authentication based on box-level identification is inconsistent with IPTV's main intention of providing personalized services. The proposed solution is to provide an opportunity to use the flexible user-centric authentication mechanism through Java Card applets in IPTV application server and 3G networks. This paper suggests personalized services by moving the user's private data and authentication management beyond the STB to a truly personalized device, the ubiquitous mobile phone. In addition, this paper presents effectiveness and security analysis for verifying the proposal.



  1. 3GPP TS 33.102 V7.1.0: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects;3G Security;Security architecture(Release 7)"
  2. 3GPP TS 33.220 V8.2.0: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Gene- ric Authentication Architecture (GAA);Generic bootstrapping architecture (Release 8)"
  3. 석주명, 임성용, 최지훈, 김현철, 이한규, 홍진우, "개인 맞춤형방송 서비스와 단말플랫폼 개발," 전자공학회논문지 제44권 TC편 제1호, pp. 38-53, 2007
  4. T. Mlakar, J. Zaletelj, JF. Tasic, "Viewer authentication for personalized iTV services," Eighth International Workshop on Image Analysis for Multimedia Interactive Services (WIAMIS '07), pp.63-63, June 2007
  5. Y. Gonno, F. Nishio, T. Tsunoda, and Y. Yamagishi, "White Paper on Integrated Broadband Environment for Personalized TV Experience (IBEX) - Preliminary Edition," Proceedings of the 2000 ACM workshops on Multimedia, pp. 63-66, November 2000
  6. D.D. Hwang, I. Verbauwhede, "Design of Portable Biometric Authenticators—Energy, Performance, and Security Tradeoffs," IEEE Transactions on Consumer Electronics, Vol. 50, Issue 4, pp. 1222-1231, Nov. 2004
  7. H. Jabbar et al., "Viewer Identification and Authentication in IPTV using RFID Technique," IEEE Transactions on Consumer Electronics, Vol. 54, Issue 1, Feb. 2008, pp. 105-109
  8. 박종선, "스마트카드 기반의 효율적인 PC인증과 데이터 암복호화 시스템 설계 및 구현", 대전대 대학원, 2004
  9. Zhiqun Chen, "Java Card Technology for Smart Cards: Architecture and Programmer's Guide," Addison-Wesley, 2000
  10. J. Buford, R. Kumar, "Analysis of using java card for DRM master key security," Proceedings of 3rd IEEE Consumer Communications and Networking Conference(CCNC2006), Vol. 2, pp. 1129-1133, January 2006
  11. 3GPP TR 33.980 V7.6.0: "3rd Generation Partnership Project; Technical Specification Group Services and System Aspects; Liberty Alliance and 3GPP security interworking; Interworking of Liberty Alliance Identity Federation Framework (ID-FF), Identity Web Services Framework (ID-WSF) and Generic Authentication Architecture (GAA) (Release 7)"
  12. M. Sklira, A. S. Pomportsis and M. S. Obaidat, "A framework for the design of bank communications systems," Computer Communications, Elsevier, Vol. 26, Issue 15, pp.1775-1781, September 2003
  13. J. Lyu, S. Pyo, J. Lim, M. Kim, S. Lim, and S. Kim, "Design of Open APIs for Personalized IPTV Service," Proceedings of 9th International Conference on Advanced Communication Technology (ICACT 2007), Vol. 1, pp. 305-310, February 2007
  14. Ekstrom, H; Furuskar, A; Karlsson, J; Meyer, M; Parkvall, S; Torsner, J; Wahlqvist, M; "Technical solutions for the 3G long-term evolution", IEEE Communications Magazine, Vol. 44, Issue. 3, pp. 38- 45, March 2006