• 제목/요약/키워드: Control Service

검색결과 6,168건 처리시간 0.034초

OSGi 컴퓨팅 환경에서 접근 제어를 이용한 원격 관리 서비스 구현 (Implementation of Remote Management Service using Access Control on OSGi Computing Environment)

  • 최규상;정헌만;이세훈;백영태
    • 한국컴퓨터정보학회지
    • /
    • 제14권2호
    • /
    • pp.109-115
    • /
    • 2006
  • 이 논문에서는 OSGi 서비스 프레임워크 환경에서 발생할 수 있는 보안 요구 사항 중에서 서로 다른 번들의 서비스간의 상호 작용에서 발생할 수 있는 접근 제어(access control)문제를 설명하고 이를 만족시킬 수 있는 구체적인 서비스 보안 모델을 제시하였다. 특히 번들이나 서비스에 대한 접근 통제를 유연성과 확장성이 보장되는 방식으로 처리 할 수 있도록 번들에 포함된 파일 형식으로 명시될 보안 정책(security policy)의 구성요소와 의미론을 정의한다. 또한, 원격 관리 서비스를 위한 효율적인 서비스 구조를 제안하였다.

  • PDF

Wide-Area SCADA System with Distributed Security Framework

  • Zhang, Yang;Chen, Jun-Liang
    • Journal of Communications and Networks
    • /
    • 제14권6호
    • /
    • pp.597-605
    • /
    • 2012
  • With the smart grid coming near, wide-area supervisory control and data acquisition (SCADA) becomes more and more important. However, traditional SCADA systems are not suitable for the openness and distribution requirements of smart grid. Distributed SCADA services should be openly composable and secure. Event-driven methodology makes service collaborations more real-time and flexible because of the space, time and control decoupling of event producer and consumer, which gives us an appropriate foundation. Our SCADA services are constructed and integrated based on distributed events in this paper. Unfortunately, an event-driven SCADA service does not know who consumes its events, and consumers do not know who produces the events either. In this environment, a SCADA service cannot directly control access because of anonymous and multicast interactions. In this paper, a distributed security framework is proposed to protect not only service operations but also data contents in smart grid environments. Finally, a security implementation scheme is given for SCADA services.

CapSG를 이용한 IoT 서비스 접근제어 플랫폼 (The Access Control Platform of the IoT Service Using the CapSG)

  • 김진보;장데레사;김미선;서재현
    • 정보처리학회논문지:소프트웨어 및 데이터공학
    • /
    • 제4권9호
    • /
    • pp.337-346
    • /
    • 2015
  • 사물인터넷(Internet of Things, IoT) 환경의 다양한 프로토콜, 도메인, 애플리케이션 위에서 유연한 서비스 제공을 위한 효율적인 사용자 권한 관리 방법이 필요하다. 본 논문은 IoT 환경의 다양한 서비스에 대한 효율적인 접근제어를 제공하기 위하여 CapSG(Capability Service Gateway)를 이용한 IoT 서비스 플랫폼을 제안하였다. CapSG는 인증과 접근 권한을 포함하는 토큰을 사용하여, 서비스 주체에 대한 인증 및 접근제어를 수행하여 서비스를 제공한다. 또한, 서비스 토큰 관리를 위한 생성, 위임, 폐기, 거절 등의 기능을 제공한다. 본 논문은 각 도메인에 대한 토큰 그룹을 사용함으로써 도메인별 서비스 접근제어가 가능하며, 토큰 그룹 내의 특정 서비스 토큰을 이용한 접근제어 수행도 가능하도록 설계하여 IoT의 다양한 서비스 요구에 대한 접근제어의 유연성과 효율성을 제공한다.

Adaptive Rate Control Scheme for Streaming-based Content Sharing Service

  • Lee, Sunghee;Chung, Kwangsue
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제7권4호
    • /
    • pp.784-799
    • /
    • 2013
  • This paper presents an adaptive rate control scheme for streaming-based content sharing service. This scheme delivers multimedia contents from a user device to another device or seamlessly redirects streaming service across heterogeneous user devices. In the proposed scheme, a streaming server adjusts video quality level according to the network and client status. Our scheme is different from other rate control schemes, because the video quality at the server is decided not only based on the available bandwidth, but also based on the device characteristics and bandwidth requirement at the access network. We also propose a bandwidth estimation method to achieve more equitable bandwidth allocations among streaming flows competing for the same narrow link with different Round Trip Times (RTTs). Through the simulation, we prove that our scheme improves the network stability and the quality of streaming service by appropriately adjusting the quality of the video stream. The simulation results also demonstrate the ability of the proposed scheme in ensuring RTT-fairness while remaining throughput efficient.

Design the Autopilot System of using GA Algorithm

  • Lee, Sang-Min;Choo, Yeon-Gyu;Lim, Young-Do
    • 제어로봇시스템학회:학술대회논문집
    • /
    • 제어로봇시스템학회 2004년도 ICCAS
    • /
    • pp.699-703
    • /
    • 2004
  • The autopilot system targets decreasing labor, working environment, service safety security and elevation of service efficiency. Ultimate purpose is minimizing number of crew for guarantee economical efficiency of shipping service. Recently, being achieving research about Course Keeping Control, Track Keeping Control, Roll-Rudder Stabilization, Dynamic ship Positioning and Automatic Mooring Control etc. which compensate nonlinear characteristic using optimizing control technique. And application research is progressing using real ship on actual field. Relation of Rudder angle which adjusted by Steering Machine and ship-heading angle are non-linear. And, Load Condition of ship acts as non-linear element that influence to Parameter of ship. Also, because the speed of a current and direction of waves, velocity and quantity of wind etc. that id disturbance act in non-linear form, become factor who make service of shipping painfully. Therefore, service system of shipping requires robust control algorithm that can overcome nonlinearity. In this paper, Using GA algorithm,design autopilot system of ship that could overcome the non-linear factor of ship and disturbance and examined result through simulation.

  • PDF

확장된 사용 제어 모델을 이용한 RFID 접근 제어 (RFID Access Control Using Extended Usage Control Model)

  • 신우철;유상봉
    • 한국전자거래학회지
    • /
    • 제12권4호
    • /
    • pp.127-144
    • /
    • 2007
  • 본 논문에서는 RFID 미들웨어와 이에 연결된 정보 서비스(Information Service), 네임 서비스(Object Name Service), 상위 애플리케이션을 위한 웹 서비스 등을 통합적으로 관리하기 위한 보안 관리기를 기술한다. 또한 분산된 RFID 시스템의 개체에 대한 접근제어를 확립하기 위해 기존의 사용 제어 모델과 SAML의 assertion을 확장하여 싱글사인온(Single-Sign On)을 구현하였다. 본 논문에서 제시한 RFID 보안 기술은 미들웨어에 포함되어 RFID 정보보호에 기여하고 향후 유비쿼터스 센서 네트워크 분야에서도 동일하게 적용될 수 있을 것이다.

  • PDF

A New Joint Packet Scheduling/Admission Control Framework for Multi-Service Wireless Networks

  • Long Fei;Feng Gang;Tang Junhua
    • Journal of Communications and Networks
    • /
    • 제7권4호
    • /
    • pp.408-416
    • /
    • 2005
  • Quality of service (QoS) provision is an important and indispensable function for multi-service wireless networks. In this paper, we present a new scheduling/admission control frame­work, including an efficient rate-guaranteed opportunistic scheduling (ROS) scheme and a coordinated admission control (ROS­CAC) policy to support statistic QoS guarantee in multi-service wireless networks. Based on our proposed mathematical model, we derive the probability distribution function (PDF) of queue length under ROS and deduce the packet loss rate (PLR) for individual flows. The new admission control policy makes admission decision for a new incoming flow to ensure that the PLR requirements of all flows (including the new flow) are satisfied. The numerical results based on ns-2 simulations demonstrate the effectiveness of the new joint packet scheduling/admission control framework.

A Study on the Sector Division for Effective Vessel Traffic Service : Focused on Daesan, Pyeongtaek and Inchon Harbour

  • Yang, Hyoung-Seon
    • 한국항해항만학회지
    • /
    • 제34권4호
    • /
    • pp.265-270
    • /
    • 2010
  • The national VTS was launched in 1993, and has adopted a harbour-oriented control method which is unable to consider enough characteristics of its work. However, for the past 17 years, the characteristics has changed due to increased amount of vessels. Up to now the domestic Vessel Traffic Service has adopted harbour-oriented control method which is unable to consider enough characteristics of its work. However, developed countries have carried out waters-oriented control method, according to the using areas of ships, to be well considered the characteristics of control for increasing efficiency of it. Especially, VTS of Daesan, Pyeongtaek and Inchon harbour can have confusions of control because of overlapped service areas of it. Therefore, in this paper suggested a new Sector Division that the relevants waters is divided into 3 operational Regions and these are divided into nine sectors again, for the purpose of improving the efficiency and the concentration of VTS.

인터넷 환경에서의 차세대 지능망 적용을 위한 SCP설계 및 구현 (Design and Implementation of Service Control Point(SCP) for a Next-Generation Intelligent Network based on Internet Environment)

  • 이지영;김연중;마영식;김동호;안순신
    • 한국정보과학회논문지:컴퓨팅의 실제 및 레터
    • /
    • 제7권4호
    • /
    • pp.336-349
    • /
    • 2001
  • 지능망은 사용자의 다양한 서비스 요구에 부응하여 여러 가지 서비스를 보다 간단히 개발 적용시키는 것을 목적으로 한다. 이에 따라 차세대 지능망 플랫폼은 빠른 서비스 처리, 다양한 서비스의 동적 적용 등이 가능한 시스템이 되어야 한다. 본 논문에서는 차세대 지능망 플랫폼의 핵심이 되는 SCP(Service Control Point)를 설계하고 구현하였으며, 특히, 설계시 확장성, 동적 서비스 분배 및 인터넷 환경을 고려한 빠른 서비스 처리 등의 지원에 중점을 두었다. 이 SCP는 시스템 운용을 담당하는 전용 커널, 전체 서비스를 관리하는 서비스 관리자, 각 서비스 별로 SLPI(Service Logic processing Program Instance)를 관리하는 SLPI 관리자 등으로 구성되어 있으며, 사용자 요청은 각각의 SLPI들에 의해 처리된다. 또한, 구현된 SCP상에서 동작하는 서비스의 손쉬운 생성을 지원하는 SCE(Service Creation Environment)환경을 제시하고, 이를 이용한 서비스 적용 예도 보인다. 현재 구현된 모든 구성 요소들은 유선 인터넷 환경을 고려하여 설계되었으며, 향후 IMT-2000 환경으로의 적용도 가능할 수 있도록 각 부분별로 구분하여 설계하였다.

  • PDF

A Universal Model for Policy-Based Access Control-enabled Ubiquitous Computing

  • Jing Yixin;Kim, Jin-Hyung;Jeong, Dong-Won
    • Journal of Information Processing Systems
    • /
    • 제2권1호
    • /
    • pp.28-33
    • /
    • 2006
  • The initial research of Task Computing in the ubiquitous computing (UbiComp) environment revealed the need for access control of services. Context-awareness of service requests in ubiquitous computing necessitates a well-designed model to enable effective and adaptive invocation. However, nowadays little work is being undertaken on service access control under the UbiComp environment, which makes the exposed service suffer from the problem of ill-use. One of the research focuses is how to handle the access to the resources over the network. Policy-Based Access Control is an access control method. It adopts a security policy to evaluate requests for resources but has a light-weight combination of the resources. Motivated by the problem above, we propose a universal model and an algorithm to enhance service access control in UbiComp. We detail the architecture of the model and present the access control implementation.