• Title/Summary/Keyword: 정책기반 네트워크 관리

Search Result 283, Processing Time 0.258 seconds

A Rule-based Intrusion Detection System with Multi-Level Structures (규칙기반 다단계 침입 탐지 시스템)

  • Min, Uk-Ki;Choi, Jong-Cheon;Cho, Seong-Je
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2005.11a
    • /
    • pp.965-968
    • /
    • 2005
  • 본 논문에서는 보안 정책 및 규칙에 기반을 둔 네트워크 포트 기반의 오용침입 탐지 기능 및 센서 객체 기반의 이상침입 탐지 기능을 갖춘 리눅스 서버 시스템을 제안 및 구현한다. 제안한 시스템은 먼저 시스템에 사용하는 보안 정책에 따른 규칙을 수립한다. 이러한 규칙에 따라 정상적인 포트들과 알려진 공격에 사용되고 있는 포트번호들을 커널에서 동적으로 관리하면서, 등록되지 않은 새로운 포트에도 이상탐지를 위해 공격 유형에 대하여 접근제어 규칙을 적용하여 이상 침입으로 판단될 경우 접근을 차단한다. 알려지지 않은 이상침입 탐지를 위해서는 주요 디렉토리마다 센서 파일을, 주요 파일마다 센서 데이터를 설정하여 센서 객체가 접근될 때마다 감사로그를 기록하면서, 이들 센서 객체에 대해 불법적인 접근이 발생하면 해당 접근을 불허한다. 본 시스템은 보안정책별 규칙에 따라 다단계로 구축하여 특정 침입에 대한 더욱 향상된 접근제어를 할 수 있다.

  • PDF

Transmission Delay Estimation-based Forwarding Strategy for Load Distribution in Software-Defined Network (SDN 환경에서 효율적 Flow 전송을 위한 전송 지연 평가 기반 부하 분산 기법 연구)

  • Kim, Do Hyeon;Hong, Choong Seon
    • KIISE Transactions on Computing Practices
    • /
    • v.23 no.5
    • /
    • pp.310-315
    • /
    • 2017
  • In a centralized control structure, the software defined network controller manages all openflow enabled switched in a data plane and controls the telecommunication between all hosts. In addition, the network manager can easily deploy the network function to the application layer with a software defined network controller. For this reason, many methods for network management using a software defined network concept have been proposed. The main policies for network management are related to traffic Quality of Service and resource management. In order to provide Quality of Service and load distribution for network users, we propose an efficient routing method using a naive bayesian algorithm and transmission delay estimation module. In this method, the forwarding path is decided by flow class and estimated transmission delay result in the software defined network controller. With this method, the load on the network node can be distributed to improve overall network performance. The network user also gets better dynamic Quality of Service.

An Efficient Management of Network Traffic using Framework-based Performance Management Tool (프레임워크 기반 성능관리 도구를 이용한 효율적인 네트워크 트래픽 관리)

  • Choi Seong-Man;Tae Gyu-Yeol;Yoo Cheol-Jung;Chang Ok-Bae
    • Journal of KIISE:Computing Practices and Letters
    • /
    • v.11 no.3
    • /
    • pp.224-234
    • /
    • 2005
  • As the network-related technology develops the number of both Internet users and the usage are explosively increasing. The networking traffic is increasing in the campus as the networking system inside universities, following the trend, adds more nodes and various networking services. Nonetheless, the quality of services for users has been degraded. Accordingly, core problems, which can cause troubles for network management, design and expansion of the network, and the cost policy, has appeared. To effectively cope with the problems with analyses a great number of technicians, tools, and budget are needed. However, it is not possible for mid and small-sized colleges to spend such a high expenditure for professional consulting. To reduce the cost and investment creating the optimized environment, the analyses on the replacement of the tools, changing the network structure, and performance analysis about capacity planning of networking is necessary. For this reason, in this paper, framework-based performance management tools are used for all steps that are related to the subject of the analysis for the network management. As the major research method, the current data in detailed categories are collected, processed, and analyzed to provide the solution for the problems. As a result we could manage the network, server, and application more systematically and react efficiently to errors and degrading of performance that affect the networking tasks. Also, with the scientific and organized analyses the overall efficiency is upgraded by optimizing the cost for managing the operation of entire system.

A Study On Design and Implementation of Mobile Bicycle Anti-theft System using Wireless Network (무선 네트워크를 이용한 모바일 자전거 도난방지 시스템의 설계 및 구현에 관한 연구)

  • Baek, Jeong-Hyun
    • Proceedings of the Korean Society of Computer Information Conference
    • /
    • 2013.07a
    • /
    • pp.345-347
    • /
    • 2013
  • 최근 환경문제의 심각성이 고조됨에 따라 Co2 배출량 감소계획에 따른 세계 각국의 정부주도로 민간 및 지방자치단체에서도 그린에너지, 저탄소 녹색성장 프로젝트, 승용차요일제 등 다양한 정책을 시행하고 있다. 따라서 탄소저감의 효율적인 방안으로서 승용차 운행을 줄이고 자전거 활용의 활성화에 대한 관심이 증대되고 있다. 본 논문에서는 자전거활용의 활성화를 위하여 자전거 도난방지와 관리를 위한 저비용의 무선 네트워크를 활용한 임베디드 제어 모듈과 모바일 서비스 기반의 자전거 관리시스템을 설계하고 구현 기법을 제안하였다.

  • PDF

A Collaboration-based, Performance-Management Model for Networked Enterprises (네트워크 기업의 협업 성과관리 모형에 관한 연구)

  • Kim, Duk-Hyun
    • Informatization Policy
    • /
    • v.17 no.1
    • /
    • pp.120-135
    • /
    • 2010
  • Competition is now moving from between companies to between networked enterprises(NE). It's difficult to evaluate the outcome of NE because formalization of collaboration among partners is difficult. This paper introduces a performance-management model focusing on collaboration in NE. The model is an integration of BSC and EFQM model, but it is different from conventional researches as it links performance management with strategic management based on a comprehensive framework of collaboration. Theoretical and empirical researches are further required to validate the model. Studying cases of several Korean NEs, we have obtained some findings for further research and application.

  • PDF

Development of Web-based Network Diligence and Indolence Management System (웹 기반 네트워크 근태 관리 시스템 개발)

  • Choi, Woo-Sik;Kim, Byung-Joon;An, Beong-Ku
    • The Journal of the Institute of Internet, Broadcasting and Communication
    • /
    • v.11 no.1
    • /
    • pp.151-158
    • /
    • 2011
  • In recent diligence and indolence management systems, server and client are not separated and data are not convert into data base. Therefore these recent systems have several weaknesses such as data modification and management. In this paper, we propose a new Web-based Network Diligence and Indolence Management system (WNDIM) to solve the weakness and improve the system performance of recent system. The main features and contributions of the proposed system are as follows. First, server and client are separated, and all data are converted into data base, Second, with the construction of APM server the data modification and management are efficiently operated. Third, a political decision of the system is defined. Fourth, the system can efficiently support user-oriented services such as the collection of diligence and indolence data and the sum of off-duty days. From the implementation and performance evaluation of the proposed WNDIM, we can see the system can efficiently support the diligence and indolence management, currently we are using the proposed WNDIM system in the real filed.

A Fuzzy-based Dynamic Method for Efficient Sharing Bandwidth in Local Physical Network (로컬 물리적 네트워크에서 효율적인 대역폭 공유를 위한 퍼지 기반의 동적 방법)

  • Ma, Linh-Van;Park, Sanghyun;Jang, Jong-hyun;Park, Jaehyung;Kim, Jinsul
    • Journal of Digital Contents Society
    • /
    • v.18 no.2
    • /
    • pp.411-422
    • /
    • 2017
  • Current policies for sharing bandwidth increase average throughput and improve utilization of the bandwidth in the local network. However, with these policies, a central administer, which is responsible for allocating bandwidth to each network flow, cannot allocate resources based on user characteristics. Thus, it leads to unfair bandwidth allocation because it does not guarantee services based on user characteristics. Therefore, we propose a novel negotiation method to share the bandwidth in a limited bandwidth network, in which, a user negotiates with other users to gain more resource. Ideally, we use a fuzzy system to infer and determine whether a device will request bandwidth or not based on the current usage of the given device. We conduct two experiments consisting of a video streaming simulation in OPNET and a real-time video streaming in WebRTC. The results of the experiment indicate that the proposed method can flexibly share the bandwidth utilization based on user's requirement in the network.

A Study on Low-Power Smart Tracker for Indoor/Outdoor Seamless Positioning System (실내외 연속측위를 위한 저전력 스마트 트래커 연구)

  • Son, Seokhyun;Cha, Hee-June
    • Proceedings of the Korean Society of Computer Information Conference
    • /
    • 2021.01a
    • /
    • pp.307-308
    • /
    • 2021
  • 2020년 7월 정부는 포스트 코로나 시대를 선언하며, 한국판 뉴딜 정책을 발표하였다. 한국판 뉴딜은 디지털인프라 구축, 비대면 산업육성, SOC 디지털화를 기본방향으로 내세웠으며 빅데이터, 인공지능(AI), 사물인터넷(IoT) 등 4차산업 핵심기술의 육성방안을 제시하였다. 최근 인천공항은 한국판 뉴딜 정부정책에 부응하기 위해 인천공항 K-뉴딜 프로젝트를 추진 중이며, 세부 전략과제로 자산관리의 디지털전환을 위한 IoT기반 스마트 자산관리시스템을 구축 중이다. IoT기반 스마트자산관리시스템은 인천공항에 위치한 실내외 이동형 자산에 대해 끊김없는 위치정보를 제공하는 시스템으로 기존 시스템(RFID) 대비 약 4억 원의 인적, 물적 자원을 절감하는 효과를 나타낼 것으로 예상된다. 본 논문에서는 IoT기반 스마트 자산관리시스템의 핵심기술인 실내외 연속측위 스마트 트래커와 네트워크의 구성, 저전력 위치정보 제공방법을 제시한다.

  • PDF

A Scheme of Efficient Contents Service and Sharing By Associating Media Server with Location-Aware Overlay Network (미디어 서버와 위치-인지 오버레이 네트워크를 연계한 효율적 콘텐츠 공유 및 서비스 방법)

  • Chung, Won-Ho;Lee, Seung Yeon
    • Journal of Broadcast Engineering
    • /
    • v.23 no.1
    • /
    • pp.26-35
    • /
    • 2018
  • The recent development of overlay network technology enables distributed sharing of various types of contents. Although overlay network has great advantages as a huge content repository, it is practically difficult to directly provide such Internet service as streaming of contents. On the other hand, the media server, which is specialized in content services, has excellent service capabilities, but it suffers from the huge contents that are constantly created and requires large expansion of severs and storages, and thus requires much effort for efficient management of the huge repository. Hence, the association of an overlay network of huge storage with a media server of high performance content service will show a great synergy effect. In this paper, a location-aware scheme of constructing overlay networks and associating it with media server is proposed, and then cache-based contents management and service policy are proposed for efficient content service. The performance is analysed for one of the content services, streaming service.

Tag Code Select Method for National Defense RFID application (국방 RFID 응용을 위한 코드 선정 방법)

  • Kim, Kyong-Ho;Lee, Sang-Hoon
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2007.10c
    • /
    • pp.125-129
    • /
    • 2007
  • 최근 들어 국방부는 RFID 기술을 기반으로 u-군수통합정보체계를 구축하기 위해 국방탄약관리 시스템 구축사업과 확산사업 그리고 F-l5K 자산관리 사업을 진행하였지만 국방 RFID 태그 코드의 표준화 부재로 임시방편적인 방법을 사용하고 있다. 따라서 국방 분야에서 어떠한 RFID 태그 코드사용이 바람직한지 영역의 표준과 경제성, 관리성, 확장성, 네트워크 환경, 정책적 사항, 그리고 미군의 활용사례 등에 관한 다양한 관점을 분석하여 코드를 선정하는데 도움이 되도록 하였다.

  • PDF