• Title/Summary/Keyword: 안전인증

Search Result 2,794, Processing Time 0.028 seconds

Security Design for Efficient Detection of Misbehavior Node in MANET (MANET에서 비정상 노드를 효율적으로 탐지하기 위한 보안 설계)

  • Hwang, Yoon-Cheol
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.35 no.3B
    • /
    • pp.408-420
    • /
    • 2010
  • On a Mobile Ad hoc NETwork(MANET), it is difficult to detect and prevent misbehaviors nodes existing between end nodes, as communication between remote nodes is made through multiple hop routes due to lack of a fixed networked structure. Therefore, to maintain MANET's performance and security, a technique to identify misbehaving middle nodes and nodes that are compromise by such nodes is required. However, previously proposed techniques assumed that nodes comprising MANET are in a friendly and cooperative relationship, and suggested only methods to identify misbehaving nodes. When these methods are applied to a larger-scale MANET, large overhead is induced. As such, this paper suggests a system model called Secure Cluster-based MANET(SecCBM) to provide secure communication between components aperANET and to ensure eed. As such, this pand managems suapemisbehavior nodes. SecCBM consists apetwo stages. The first is the preventis pstage, whereemisbehavior nodes are identified when rANET is comprised by using a cluster-based hierarchical control structure through dynamic authentication. The second is the post-preventis pstage, whereemisbehavior nodes created during the course apecommunication amongst nodes comprising the network are dh, thed by using FC and MN tables. Through this, MANET's communication safety and efficiency were improved and the proposed method was confirmed to be suitable for MANET through simulation performance evaluation.

Proposal for a Custody and Federated Service Model for the Decentralized Identity (분산 ID 보관 및 연계 서비스 모델 제안)

  • Yeo, Kiho;Park, Keundug;Youm, Heung Youl
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.30 no.3
    • /
    • pp.513-525
    • /
    • 2020
  • Until today, the personal information of subjects has been centralized in many companies or institutions. However, in recent days, the paradigm has gradually changed in the direction that subjects control their personal information and persue their self-sovereignty. Globally, individual data sovereignty is strengthened by the European Union's General Data Protection Regulation(GDPR) and the US California Consumer Privacy Act(CCPA). In Korea, a few alliances consist of various companies are creating technology research and service application cases for decentralized ID service model. In this paper, the current decentralized ID service model and its limitations are studied, and a improved decentralized ID service model that can solve them is proposed. The proposed model has a function of securely storing decentralized ID to the third party and a linkage function that can be interoperated even if different decentralized ID services are generated. In addition, a more secure and convenient model by identifying the security threats of the proposed model and deriving the security requirements, is proposed. It is expected that the decentralized ID technology will be applied not only to the proof of people but also to the device ID authentication management of the IoT in the future.

(An HTTP-Based Application Layer Security Protocol for Wireless Internet Services) (무선 인터넷 서비스를 위한 HTTP 기반의 응용 계층 보안 프로토콜)

  • 이동근;김기조;임경식
    • Journal of KIISE:Information Networking
    • /
    • v.30 no.3
    • /
    • pp.377-386
    • /
    • 2003
  • In this paper, we present an application layer protocol to support secure wireless Internet services, called Application Layer Security(ALS). The drawbacks of the two traditional approaches to secure wireless applications motivated the development of ALS. One is that in the conventional application-specific security protocol such as Secure HyperText Transfer Protocol(S-HTTP), security mechanism is included in the application itself. This gives a disadvantage that the security services are available only to that particular application. The other is that a separate protocol layer is inserted between the application and transport layers, as in the Secure Sockets Layer(SSL)/Transport Layer Security(TLS). In this case, all channel data are encrypted regardless of the specific application's requirements, resulting in much waste of network resources. To overcome these problems, ALS is proposed to be implemented on top of HTTP so that it is independent of the various transport layer protocols, and provides a common security interface with security applications so that it greatly improves the portability of security applications. In addition, since ALS takes advantages of well-known TLS mechanism, it eliminates the danger of malicious attack and provides applications with various security services such as authentication, confidentiality integrity and digital signature, and partial encryption. We conclude this paper with an example of applying ALS to the solution of end-to-end security in a present commercial wireless protocol stack, Wireless Application Protocol.

A Study on Cryptography Scheme and Secure Protocol for Safety Secure Scheme Construction in 13.56Mhz RFID (13.56Mhz RFID 환경에서 안전한 보안 스킴 구축을 위한 암호 스킴 및 보안 프로토콜 연구)

  • Kang, Jung-Ho;Kim, Hyung-Joo;Lee, Jae-Sik;Park, Jae-Pyo;Jun, Moon-Seog
    • Journal of the Korea Academia-Industrial cooperation Society
    • /
    • v.14 no.3
    • /
    • pp.1393-1401
    • /
    • 2013
  • What is RFID Microchip tag attached to an object, the reader recognizes technology collectively, through communication with the server to authenticate the object. A variety of RFID tags, 13.56Mhz bandwidth RFID card, ISO/IEC 14443 standards based on NXP's Mifare tag occupies 72.5% of the world market. Of the Mifare tags, low cost tag Mifare Classic tag provided in accordance with the limited hardware-based security operations, protocol leaked by a variety of attacks and key recovery vulnerability exists. Therefore, in this paper, Cryptography Scheme and Secure Protocol for Safety Secure Scheme Construction in 13.56Mhz RFID have been designed. The proposed security scheme that KS generated by various fixed values and non-fixed value, S-Box operated, values crossed between LFSR and S-Box is fully satisfied spoofing, replay attacks, such as vulnerability of existing security and general RFID secure requirement. Also, It is designed by considering the limited hardware computational capabilities and existing security schemes, so it could be suit to Mifare Classic now.

A Prospect for Growth and Economic Size of Foods-for-Elderly Industry -Focused on Health Functional Foods and Foods for Special Dietary Uses- (고령친화식품산업의 성장과 규모 전망 -건강기능식품과 특수용도식품을 중심으로-)

  • Jin, Hyun Joung;Woo, Hee Dong
    • Journal of Food Hygiene and Safety
    • /
    • v.27 no.4
    • /
    • pp.339-348
    • /
    • 2012
  • The purpose of this study is to predict the economic size of foods-for-elderly market, which will be valuable information for establishing related policy and backup system. After setting the scope of related industry, detailed information for current market situation was investigated and a systematic forecast for market changes in the future was performed. Economic growth, changes in consumer expenditure and economic status of the elderly, current subscription of medical insurance and saving for pension were reflected. In addition, a survey toward related firms was completed and changes in aged population and incidence of chronic disease in the elderly were taken into account. Results show that the annual growth rate of the market was predicted to be the minimum 4.54% through the maximum 8.32% from 2010 to 2025 and its market size was forecasted to be the minimum 7,073 ten million won through the maximum 10,976 ten million won. It is expected that the market of foods-for-elderly will grow rapidly with development of foods technology and fast increase of aged population. Especially, growth of health functional foods and foods for special dietary uses for elderly will be distinguished. However, it seems that related firms are on the hedge, watching current trend of the related industry. This may results in insufficient supply against the demand. Therefore, policy for foods-for-elderly should be introduced and systematically administered, including R&D support, standardization and authentication for foods-for-elderly, construction of related database system.

A Methodology for Integrating Security into the Automotive Development Process (자동차 개발 프로세스에서의 보안 내재화 방법론)

  • Jeong, Seungyeon;Kang, Sooyoung;Kim, Seungjoo
    • KIPS Transactions on Software and Data Engineering
    • /
    • v.9 no.12
    • /
    • pp.387-402
    • /
    • 2020
  • Conventional automotive development has mainly focused on ensuring correctness and safety and security has been relatively neglected. However, as the number of automotive hacking cases has increased due to the increased Internet connectivity of automobiles, international organizations such as the United Nations Economic Commission for Europe(UNECE) are preparing cybersecurity regulations to ensure security for automotive development. As with other IT products, automotive cybersecurity regulation also emphasize the concept of "Security by Design", which considers security from the beginning of development. In particular, since automotive development has a long lifecycle and complex supply chain, it is very difficult to change the architecture after development, and thus Security by Design is much more important than existing IT products. The problem, however, is that no specific methodology for Security by Design has been proposed on automotive development process. This paper, therefore, proposes a specific methodology for Security by Design on Automotive development. Through this methodology, automotive manufacturers can simultaneously consider aspects of functional safety, and security in automotive development process, and will also be able to respond to the upcoming certification of UNECE automotive cybersecurity regulations.

Protecting Fingerprint Data for Remote Applications (원격응용에 적합한 지문 정보 보호)

  • Moon, Dae-Sung;Jung, Seung-Hwan;Kim, Tae-Hae;Lee, Han-Sung;Yang, Jong-Won;Choi, Eun-Wha;Seo, Chang-Ho;Chung, Yong-Wha
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.16 no.6
    • /
    • pp.63-71
    • /
    • 2006
  • In this paper, we propose a secure solution for user authentication by using fingerprint verification on the sensor-client-server model, even with the client that is not necessarily trusted by the sensor holder or the server. To protect possible attacks launched at the untrusted client, our solution makes the fingerprint sensor validate the result computed by the client for the feature extraction. However, the validation should be simple so that the resource-constrained fingerprint sensor can validate it in real-time. To solve this problem, we separate the feature extraction into binarization and minutiae extraction, and assign the time-consuming binarization to the client. After receiving the result of binarization from the client, the sensor conducts a simple validation to check the result, performs the minutiae extraction with the received binary image from the client, and then sends the extracted minutiae to the server. Based on the experimental results, the proposed solution for fingerprint verification can be performed on the sensor-client-server model securely and in real-time with the aid of an untrusted client.

A Study on the Development Trends of Polymer Electrolyte Membrane Fuel Cells and Application to Ships (국내외 PEMFC 개발 동향 및 선박 적용에 관한 고찰)

  • Lee, Chang-Yong
    • Journal of the Korean Society of Marine Environment & Safety
    • /
    • v.28 no.4
    • /
    • pp.657-666
    • /
    • 2022
  • The International Maritime Organization(IMO) recommends the active implementation of national policies on technological development and energy efficiency to reduce Green House Gas (GHG) in the international shipping sector. Such IMO environmental regulation policies have a great impact on the entire shipping sector and are also a heavy burden on ship's owners. The most reasonable way to curb GHG emissions from ships comes down to the development of zero-emission ships. In other words, the development of a fuel cell ship (FCS) driven by an eco-friendly fuel is an alternative that can escape the IMO regulations. Countries in Asia, Northern America, and Europe independently develop and produce PEMFC, and are pursuing international standardization by acquiring approval in principle from an internationally accredited registration authority. Currently, there are three types of fuel cells (FC) that are recommended for ships: a Polymer Electrolyte Membrane Fuel Cell (PEMFC), a Molten Carbonate Fuel Cell (MCFC), and a Solid Oxide Fuel Cell (SOFC). In this study, PEMFC, which is expected to grow continuously in the global FC market, was analyzed domestic and international development trends, specifications, performance, and empirical cases applied to ships. In addition, when applying PEMFC to ships, it was intended to suggest matters to be considered and the development direction.

Direction To Propel Efficient National Highway ITS According to Public and Private Traffic Information Sharing (공공 및 민간 교통정보 공유에 따른 효율적인 국도 ITS 추진방향)

  • Yoon, Young-Min
    • The Journal of the Korea Contents Association
    • /
    • v.22 no.10
    • /
    • pp.526-534
    • /
    • 2022
  • In August 2014, the Ministry of Land, Infrastructure, and Transport (MOLIT) devised an innovative ITS measure in which private and public sectors share roles to maximize investment efficiency and effectiveness in collecting and offering traffic information that had been separately implemented by the state and private sector. The main details of the innovative measure include the following: For communication information, the information collected by the private sector is used, and the state concentrates on safety-related information collection, such as unexpected situations, including construction, accidents, and deteriorating weather conditions. Consequently, safety-related information is offered in real-time through smartphones and navigation, in addition to electric road signs that have limitations in providing unexpected real-time situations due to installation at specific spots. This study presented a connected traffic information priority coordination plan to improve the accuracy of traffic information offering by analyzing problems of related traffic information, including a general national highway case study to enhance the efficiency of national highway ITS implementation, according to actual public-private traffic information sharing. In addition, this study reviewed whether to operate or demolish the information collection equipment by analyzing traffic volume level and availability of related traffic information in the existing ITS operation sections and presented ITS collection equipment installation judgment standards based on the cases concerned.

A simple method to determine lycopene in solid supplementary food preparations using saponification and liquid chromatography (비누화 및 액체크로마토그래프를 활용한 고상 건강기능식품 중 라이코펜 분석법 개발)

  • Young Min Kim;Ye Bin Shin;Min Kyeong Kwon;Jin Hwan Kim;Ji Seong Kim;Dong-Kyu Lee;Myung Joo Kang;Yong Seok Choi
    • Analytical Science and Technology
    • /
    • v.36 no.3
    • /
    • pp.105-112
    • /
    • 2023
  • Lycopene, a carotenoid hydrocarbon is known to have effects on reducing cardiovascular risk factors, blood lipids, and blood pressure. Thus, a lot of supplementary foods with lycopene in several dosage forms like soft capsule filled with liquid and hard capsule filled with powder are available in a market. Recently, however, our research group found that the lycopene assay in Supplementary Food Code of South Korea is only valid for oily lycopene preparation. Thus, here, we developed a simple method to determine lycopene in solid preparations for Supplementary Food Code of South Korea using saponification and liquid chromatography with an absorbance detector. The method was validated following Ministry of Food and Drug Safety guidelines. All validation parameters observed in this study were within acceptable criteria of the guidelines (selectivity, linearity of r2 ≥ 0.991, lower limit of quantification of 0.0149 mg/mL, accuracy as recovery (R) between 92.70 and 97.18 %, repeatability as relative standard deviation (RSD) values of R between 0.85 and 1.59 %, and reproducibility as the RSD value of interlaboratory R of 3.70 %). Additionally, the practical sample applicability of the validated method was confirmed by accuracy between 98.81 and 101.59 % observed from its lycopene certified reference material (CRM) analyses. Therefore, the present method could contribute to fortify the supplementary food safety management system in South Korea.