• Title/Summary/Keyword: Container ID

Search Result 6, Processing Time 0.021 seconds

Management Method for Private Key File of PKI using Container ID of USB memory (USB 메모리의 컨테이너ID를 이용한 PKI 기반의 개인키 파일의 안전한 관리 방안)

  • Kim, Seon-Joo;Joe, In-June
    • The Journal of the Korea Contents Association
    • /
    • v.15 no.10
    • /
    • pp.607-615
    • /
    • 2015
  • Mosts user of internet and smart phone has certificate, and uses it when money transfer, stock trading, on-line shopping, etc. Mosts user stores certificate in a hard disk drive of PC, or the external storage medium. In particular, the certification agencies are encouraged for user to store certificate in external storage media such as USB memory rather than a hard disk drive. User think that the external storage medium is safe, but when it is connect to a PC, certificate may be copied easily, and can be exposed to hackers through malware or pharming site. Moreover, if a hacker knows the user's password, he can use user's certificate without restrictions. In this paper, we suggest secure management scheme of the private key file using a password of the encrypted private key file, and a USB Memory's hardware information. The private key file is protected safely even if the encrypted private key file is copied or exposed by a hacker. Also, if the password of the private key file is exposed, USB Memory's container ID, additional authentication factor keeps the private key file safe. Therefore, suggested scheme can improve the security of the external storage media for certificate.

Analysis of the Impact of Host Resource Exhaustion Attacks in a Container Environment (컨테이너 환경에서의 호스트 자원 고갈 공격 영향 분석)

  • Jun-hee Lee;Jae-hyun Nam;Jin-woo Kim
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.33 no.1
    • /
    • pp.87-97
    • /
    • 2023
  • Containers are an emerging virtualization technology that can build an isolated environment more lightweight and faster than existing virtual machines. For that reason, many organizations have recently adopted them for their services. Yet, the container architecture has also exposed many security problems since all containers share the same OS kernel. In this work, we focus on the fact that an attacker can abuse host resources to make them unavailable to benign containers-also known as host resource exhaustion attacks. Then, we analyze the impact of host resource exhaustion attacks through real attack scenarios exhausting critical host resources, such as CPU, memory, disk space, process ID, and sockets in Docker, the most popular container platform. We propose five attack scenarios performed in several different host environments and container images. The result shows that three of them put other containers in denial of service.

Binarization of TV-Anytime Metadata for Personalized TV Services (맞춤형 방송을 위한 TV-Anytime 메타데이터의 이진화)

  • Kim Myoungnhoon;Kim Hyeokman;Yang Seung-Jun;Kim Jae-Gon
    • Proceedings of the Korean Society of Broadcast Engineers Conference
    • /
    • 2004.11a
    • /
    • pp.159-162
    • /
    • 2004
  • 본 논문은 디지털 방송 환경에서 TV-AnyTime을 이용한 메타데이터 서비스를 위한 메타데이터 부/복호화 시스템 구현에 관한 논문이다. 부호화 시스템은 생성된 TV-AnyTime 메타데이터의 효율적인 전송을 위해 메타데이터를 TV-AnyTime에 정의된 fragment로 분할하고, 분할된 fragment를 부호화하는 과정을 포항하고 있다. 또한 fragment의 id와 version을 부여하여 container를 구성하는 것과, 전송된 container의 내용에서 요청된 fragment을 축출하여 처리하는 것을 정의한다. 복호화 시스템은 축출된 fragment들을 분석하고, 사용자의 요청에 따라 해당 fragment를 복호화 한다. 그리고 fragment에 포함된 정보를 이용해 fragment를 관리하는 방법에 대해 정의한다.

  • PDF

User Authentication System Using USB Device Information (USB 장치 정보를 이용한 사용자 인증방안)

  • Lee, Jin-Hae;Jo, In-June;Kim, Seon-Joo
    • The Journal of the Korea Contents Association
    • /
    • v.17 no.7
    • /
    • pp.276-282
    • /
    • 2017
  • Password-based authentication is vulnerable because of its low cost and convenience, but it is still widely used. In order to increase the security of the password-based user authentication method, the password is changed frequently, and it is recommended to use a combination of numbers, alphabets and special characters when generating the password. However, it is difficult for users to remember passwords that are difficult to create and it is not easy to change passwords periodically. Therefore, in this paper, we implemented a user authentication system that does not require a password by using the USB memory that is commonly used. Authentication data used for authentication is protected by USB data stored in USB memory using USB device information to improve security. Also, the authentication data is one-time and reusable.Based on this, it is possible to have the same security as the password authentication system and the security level such as certificate or fingerprint recognition.

The Evaluation of Backhaul Transport with ITT Platform - The Case of Busan New Port - (ITT Platform의 복화율 개선에 따른 효과 분석 - 부산항 신항을 대상으로 -)

  • PARK, Nam-Kyu;LEE, Jung-Hun
    • Journal of Fisheries and Marine Sciences Education
    • /
    • v.29 no.2
    • /
    • pp.354-364
    • /
    • 2017
  • This study tries to evaluate the effect of ITT introduction in Busan New Port. The study used the estimation model of the number of vehicles required in accordance with the backhaul rate. The model used big data, COPINO e-document for one year in 2015. COPINO recorded the event such as truck ID, container ID, ATA, damage etc when truck arrived at gate. The study finds important information to estimate the required number of trucks for handling current ITT containers in Busan New Port: Daily throughput in Busan New Port is 1650 vans, especially night throughput recorded peak level in 1800 hours to 2400 hours, the throughput between adjacent terminals recorded high, i.e PNIT to HPNT. The transportation capability for 6 hours between terminals is from 4 vans to 7 vans. The required trucks are estimated 89 currently without considering peak level. If we change the back haul rate from current 20% to 40%, 60% and 80%, how much would the cost drop? It was discovered that, if it is raised to 40%, 60% and 80%, the number of vehicle required will be reduced from 89 (current) to 76, 65 and 59. It was also discovered that the total savings will reduce down to 12%, 25% and 34%.

Vessel Container integrated Management System (선박 컨테이너 통합 관리 모니터링시스템 개발연구)

  • Kim, Won Ju;Kim, Jung Ho;Ko, Seong Ho;Kim, Kung Ho;Jung, Min-a;Lee, Sung Ro
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2012.04a
    • /
    • pp.1015-1017
    • /
    • 2012
  • 본 논문은 컨테이너 터미널의 컨테이너 정보를 RFID를 통하여 획득하고 이 정보를 바탕으로 효율적인 선적 하역작업을 스케줄링하는 시스템에 관한 연구이다. 유비쿼터스의 핵심기술인 RFID(Radio Frequency ID)전자태그 시스템을 이용하여 컨테이너를 효율적으로 선적 할 수 있게 돕고, 운송 과정에서 컨테이너의 실시간 관리가 가능한 시스템으로, 컨테이너 선적의 신속성과 정확성을 강화하여 컨테이너를 효율적으로 관리하는 것을 목적으로 한다.