• 제목/요약/키워드: B-MAC

검색결과 314건 처리시간 0.026초

보안운영체제의 강제적 접근통제(MAC)를 위한 로그 관리자 설계 (The Design of a Log Manager for Mandatory Access Control Mechanism of Secure Operating System)

  • 박춘구;신욱;강정민;이형효;이동익
    • 한국정보과학회:학술대회논문집
    • /
    • 한국정보과학회 2001년도 봄 학술발표논문집 Vol.28 No.1 (A)
    • /
    • pp.805-807
    • /
    • 2001
  • 안전한 컴퓨터 시스템 평가기준인 TCSEC(Trusted Computer System Evaluation Criteria)[1] B1급 이상 시스템의 안전한 운영체제들은 강제접근통제(Mandatory Access Control : MAC) 메커니즘을 이용하여 정보의 흐름을 제어하고 있다. 하지만 아무리 정확하게 설계된 접근통제 메커니즘이라고 하더라도 시스템 관리자 또는 보안 관리자가 어떻게 시스템이 접근통제 메커니즘을 관리.운영하느냐에 따라 그 시스템의 안전성과 보안에 대한 신뢰도가 결정된다고 할 수 있다. 지금까지 연구되고 있는 대부분의 MAC을 적용한 안전한 운영체제는 접근통제메커니즘의 적용 및 관리.운영상의 보안문제점을 관리할 적당한 방법을 제시하고 있지 않다[4][5][6][7]. 본 논문은 MAC을 적용한 안전한 운영체제의 안전하고 효율적인 관리.운영을 위한 방법으로 LMACM(Log Manager for Access Control Mechanism)을 제안한다.

  • PDF

회전요동하는 원통내의 유동 및 교반특성을 위한 수치해석적 연구 (Numerical Study on Fluid Flows and Stirring in a Circular Cylinder Subjected to Circulatory Oscillation)

  • 김현민;서용권
    • 대한기계학회논문집B
    • /
    • 제23권3호
    • /
    • pp.408-418
    • /
    • 1999
  • Incompressible flow inside a circular cylinder Including periodically oscillating free surface waves was studied primarily by using a numerical method. We developed a finite difference scheme based on the MAC method applicable to three-dimensional free-surface flows, and applied it to the present flow model to study tho flow characteristics as well as the fluid stirring. To verify the validity of our scheme, we performed a simple experiment for flow visualization. We found that the numerical results show a reasonable agreement with the observed flow patterns.

결함 허용 Mini-MAP 시스템의 구현 및 성능해석 (Implementation and Performance Analysis of a Fault-tolerant Mini-MAP System)

  • 문홍주;박홍성;권욱현
    • 전자공학회논문지B
    • /
    • 제32B권3호
    • /
    • pp.1-10
    • /
    • 1995
  • In this paper, a fault-tolerant Mini-MAP system with high reliability is proposed. For fault-tolerance, the LLC sublayer, MAC sublayer, and physical layer of the Mini-MAP system are dualized. The detection of faults, the replacement of the failed network, and the management of the network are three major functions required for the dualization, and they are performed by ESM(Error Supervisory Machine), EMM(Error Management Machine), and NMM(Network Management Machine) of the proposed fault-tolerant Mini-MAP system, respectively. The ring maintenance function of the MAC sublayer is used for the detection of the faults. In the proposed fault-tolerant Mini-MAP system, the data are received from both of the dualized networks and transmitted to the selected one of the two. We analyze the reliability and the MTTF(Mean Time To Failure) of the proposed fault-tolerant Mini-MAP system and show that it has better performance compared to a general Mini-MAP system.

  • PDF

IEEE 802.1Qay PBB-TE 표준 시스템 구현과 상호 운용성 검증 (Implementation and Interoperability Test for the IEEE 802.1Qay PBB-TE System)

  • 김현필;문상원;최진식
    • 한국통신학회논문지
    • /
    • 제36권12B호
    • /
    • pp.1636-1646
    • /
    • 2011
  • 본 논문에서는 IEEE 802.1 Qay PBB-TE 표준 시스템을 구현하고 상용 제품과의 연동을 통해 구현된 프로토콜의 상호 운용성을 검증하였다. 상호 운용성을 검증하기 위해 표준 프로토콜의 구현과 커널 제어 기능을 함께 포함한 통합 네트워크 시스템 형태로 구현하였다. 상용시스템과 상호 운용성 시험을 통하여 PBB-TE TESI 및 ESP 회선설정 기능과 보호 절체 등 구현된 프로토콜의 검증뿐만 아니라 동작 결과를 함께 모니터링 하였다.

보안 운영체제를 위한 강제적 접근 제어 보호 프로파일 (Mandatory Access Control Protection Profile for Secure Operating System)

  • 고영웅
    • 한국컴퓨터정보학회논문지
    • /
    • 제10권1호
    • /
    • pp.141-148
    • /
    • 2005
  • 근래에 허가되지 않은 사용자로부터 공유된 자원에 대한 불법적인 접근이 빈번하게 이루어지고 있다. 접근 제어는 허가되지 않은 사용자가 컴퓨터 자원, 정보 자원 그리고 통신 자원을 이용하지 못하게 제어하는 것이며, 이처럼 허가받지 않은 사용자가 시스템 자원에 접근하는 것을 막는 것은 정보 보호에서 중요한 이슈로 떠오르고 있다. 본 논문에서는 접근 제어 정책 중의 하나인 강제적 접근 제어 메커니즘을 대상으로 TCSEC 보안 등급 B2 수준에 근접하는 보호 프로파일을 작성하였다. 본 연구 결과로 작성된 보호 프로 파일은 정보 보호 시스템을 평가하는데 있어서 유용한 자료로 사용될 수 있다.

  • PDF

Performance Evaluation of OFDM-based IEEE 802.lla MAC Protocol Under Indoor Wireless Channel

  • Kim, Kanghee;Seokjo Shin;Kim, Kiseon
    • 대한전자공학회:학술대회논문집
    • /
    • 대한전자공학회 2000년도 ITC-CSCC -2
    • /
    • pp.739-742
    • /
    • 2000
  • In this paper, we evaluate the throughput and delay performance of a wireless Local Area Network(WLAN) employing the OFDM-based IEEE 802.lla Medium Access Control(MAC) protocol by compute. simulations under wireless indoor. channel. Packet Error Rate(PER) is also investigated for the various Eb/No. It is shown that, with soft-decision Viterbi decoder, throughput and delay performance are close to those of error-free channel at Eb/No above 8dB and PER is about 2${\times}$10$\^$-5/ at Eb/No=10dB.

  • PDF

무선 랜에서 MAC계층의 정보를 이용한 고속 L3 핸드오프 알고리듬 - CandidateCasting Fast Handoff (CandidateCasting Fast HANDOFF Algorithm for MIP using MAC Layer Information at Wireless LAN)

  • 신일희;이채우
    • 한국통신학회논문지
    • /
    • 제28권12A호
    • /
    • pp.991-1001
    • /
    • 2003
  • CCFH(Candidatecasting Fast Handoff) 알고리듬은 기존의 Mobile IP에 멀티캐스팅을 결합한 고속 핸드오프의 성능을 능가하며, B/W 효율성 측면에서 역시 뛰어난 성능을 보이는 새로운 핸드오프 방법이다. 이 알고리듬은 L2 정보를 이용, L2 핸드오프가 발생하기 전 미리 멀티캐스팅하여 L3 핸드오프 지연을 타 방법에 비해 획기적으로 줄인다. 본 논문에서는 제안된 핸드오프 방법을 소개하고, 기존 MIP(Mobile IP)의 기본적인 핸드오프 방법뿐만 아니라 다른 핸드오프 방법들과의 비교 분석을 통하여 제안된 방법의 성능이 우수함을 확인한다.

Cooperative MAC Protocol Using Active Relays for Multi-Rate WLANs

  • Oh, Chang-Yeong;Lee, Tae-Jin
    • Journal of Communications and Networks
    • /
    • 제13권5호
    • /
    • pp.463-471
    • /
    • 2011
  • Cooperative communications using relays in wireless networks have similar effects of multiple-input and multiple-output without the need of multiple antennas at each node. To implement cooperation into a system, efficient protocols are desired. In IEEE 802.11 families such as a/b/g, mobile stations can automatically adjust transmission rates according to channel conditions. However throughput performance degradation is observed by low-rate stations in multi-rate circumstances resulting in so-called performance anomaly. In this paper, we propose active relay-based cooperative medium access control (AR-CMAC) protocol, in which active relays desiring to transmit their own data for cooperation participate in relaying, and it is designed to increase throughput as a solution to performance anomaly. We have analyzed the performance of the simplified AR-CMAC using an embedded Markov chain model to demonstrate the gain of AR-CMAC and to verify it with our simulations. Simulations in an infrastructure network with an IEEE 802.11b/g access point show noticeable improvement than the legacy schemes.

Energy-Efficient DNN Processor on Embedded Systems for Spontaneous Human-Robot Interaction

  • Kim, Changhyeon;Yoo, Hoi-Jun
    • Journal of Semiconductor Engineering
    • /
    • 제2권2호
    • /
    • pp.130-135
    • /
    • 2021
  • Recently, deep neural networks (DNNs) are actively used for action control so that an autonomous system, such as the robot, can perform human-like behaviors and operations. Unlike recognition tasks, the real-time operation is essential in action control, and it is too slow to use remote learning on a server communicating through a network. New learning techniques, such as reinforcement learning (RL), are needed to determine and select the correct robot behavior locally. In this paper, we propose an energy-efficient DNN processor with a LUT-based processing engine and near-zero skipper. A CNN-based facial emotion recognition and an RNN-based emotional dialogue generation model is integrated for natural HRI system and tested with the proposed processor. It supports 1b to 16b variable weight bit precision with and 57.6% and 28.5% lower energy consumption than conventional MAC arithmetic units for 1b and 16b weight precision. Also, the near-zero skipper reduces 36% of MAC operation and consumes 28% lower energy consumption for facial emotion recognition tasks. Implemented in 65nm CMOS process, the proposed processor occupies 1784×1784 um2 areas and dissipates 0.28 mW and 34.4 mW at 1fps and 30fps facial emotion recognition tasks.

PBB-TE 기반의 패킷전송시스템에서 멀티캐스트 서비스와 계층적 QoS 구현 (Point-to-Multipoint Services and Hierarchical QoS on PBB-TE System)

  • 이원경;최창호;김선미
    • 한국통신학회논문지
    • /
    • 제37권6B호
    • /
    • pp.433-442
    • /
    • 2012
  • We have proposed a solution to multicast services and an advanced quality of service (QoS) mechanism on a packet transport system (PTS) based on PBB-TE. The point-to-multipoint (PtMP) connection in the PBB-TE system have been realized by grouping point-to-point (PtP) PTL trunks and mapping a BSI onto the PtP PTL trunks using a multicast backbone destination address. To provide end-to-end QoS of the PtMP services, the hierarchical QoS scheme for backbone service instances and connection-oriented paths has been implemented in the PTS. For providing different capabilities for service selection and priority selection, the PTS offers to customers three basic types of the port-based, C-tagged, and S-tagged service interface defined by the IEEE 802.1ah. To offer to customers different capabilities of the layer 3 applications and services, moreover, an IP-flow service interface have been added. In order to evaluate traffic performance for PtMP services in the PTS, the PtMP throughputs for the link capacity of 1 Gbps at the four service interfaces were measured in the leaves of the ingress edge node, the transit node, and the egress edge node. The throughputs were about 96 % because the B-MAC overhead of 22 bytes occupies 4% of the 512-byte packet. The QoS performance is ability to guarantee an application or a user a required bandwidth, and could be evaluated by the accuracy of policing or shaping. The accuracy of the policing scheme and the accuracy of the shaping scheme were 99% and 99.3% respectively.