Browse > Article
http://dx.doi.org/10.3745/KIPSTC.2007.14-C.2.129

A Study on Ticket-Based AAA Mechanism Including Time Synchronization OTP in Global Roaming Environment  

Moon, Jong-Sik (순천향대학교 컴퓨터학과)
Lee, Im-Yeong (순천향대학교 컴퓨터학부)
Abstract
AAA(Aluthentieation, Authorization, Accounting) protocol is an information securitv technology that offer secure and reliable user Authentication, Authorization, Accounting function systematically in various services. protocol and wireless network work as well as win network. Currently IETF(Internet Engineering Task Force) AAA Working Group deal with about AAA protocol and studying with activity, But, recently it exposing much problems side to user's anonymity and privacv violation. Therefore, in this paper, AAAH(Home Authentication Server) authenticaters Mobile device, after that, use ticket that is issued from AAAH even if move to outside network and can be serviced offering authentication in outside network without approaching by AAAH, Also, we study mechanism that can offer user's privacy and anonymousness to when use service. Our mechanism is using Time Synchronization OTP and focusing authentication and authorization. Therefore, our mechanism is secure from third party attack and offer secure and effective authentication scheme. Also only right user can offer services by using ticket. can reduce signal and reduce delay of message exchanged, can offer persistent service and beighten security and efficiency.
Keywords
AAA; Authentication; Time Synchronization; One-Time Password; Anonymity; Privacy;
Citations & Related Records
Times Cited By KSCI : 2  (Citation Analysis)
연도 인용수 순위
1 P. Calhoun, J. Loughney, E. Guttman, G. Zorn, and J. Arkko, 'Diameter Base Protocol,' RFC 3588, 2003
2 C. Neuman, T. Yu, S. Hartman, and K. Raeburn, 'The Kerberos Network Authentication Service,' RFC 4120, 2005
3 J. Vollbrecht, P. calhoun, S. Farrell, L. Gommans, G. Gross, B. de Bruihjn, C.de Laat, M. Holdrege and D.Spence, 'AAA Authorization Framework,' RFC 2904, 2000
4 이동명, 최효민, 이옥연, '익명성과 프라이버시 보장을 위한 효율적인 인증 메커니즘 설계,' 한국정보처리학회 추계학술발표대회, pp.941-944, 2005
5 김봉주, '차세대 인증 프로토콜 DIAMETER AAA 기술 동향,' TTA 기술표준이슈, 2001
6 배은희, 'IPv6 이동 네트워크에서의 티켓 기반 AAA 서비스 모델에 관한 연구,' 이화여자대학교 과학기술대학원, 2002
7 서승현, 조태남, 이상호, 'OTP-EKE : 원-타임 패스워드 기반의 키 교환 프로토콜,' 한국정보과학회논문지, pp.291-298, 2002   과학기술학회마을
8 김동현, 'Mobile IP를 위한 티켓 기반 AAA 서비스에 대한 연구,' 연세대학교 대학원, 2002
9 Yihong Zhou, Dapeng Wu, and Scott M. Nettles, 'On the Architecture of Authentication, Authorization, and Accounting for Real-Time Secondary Market Service,' IJWMC, 2005   DOI
10 Markus Hillenbrand, Joachim Gotze, Jochen Muller, and Paul Muller, 'Role-based AAA for Service Utilization in Federated Domains,' DFN Arbeitstagung Dusseldorf, pp.205-219, 2005
11 Jung-Min Park, Eum-Hui Bae, Hye-Jin Pyeon, and Kijoon Chae, 'A Ticket Based AAA Security Mechanism in Mobile IP' Network,' ICCSA pp. 210-219, 2003   DOI   ScienceOn
12 Dhrat Patel and Jon Crowcroft, 'Ticket based service access for the mobile user,' In Third annual ACM/IEEE internaional conference on Mobile computing and networking, pp.223-233, 1997   DOI