• Title/Summary/Keyword: HTTP/1.1

Search Result 418, Processing Time 0.026 seconds

Design and Implementation of Secure Identification and Authentication Model using lava Technology on the Web Environment (웹 환경에서 자바 기술을 이용한 안전한 사용자 식별 및 인증 모델 설계)

  • Song, Gi-Pyeung;Son, Hong;Kim, Sun-Joo;Jo, In-June
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2000.10a
    • /
    • pp.433-438
    • /
    • 2000
  • Now, It is vulnerabilities and problems of adaption in user identification and authentication on the Web environments; the BAA(Basic Access Authentication) of HTTP1.0 is that use. ID and password is passed with clear-text between client and server, For this enhancement, the DAA(Digest Access Authentication) of HTTP1.1 is that use. password is digested by MAC(Message Authentication Code) mechanism. but, this mechanism is not adapted by venders of Web browsers. This paper propose the lava based user identification and authentication model to resolve the above problems. Proposed systems are applied to the Web environment, since it has independence to web server and client.

  • PDF

Connection Scheduling for Improving the Response Time (응답시간 향상을 위한 커넥션 스케줄링 기법)

  • Bang, Ji-Ho;Ha, Rhan
    • Journal of KIISE:Computer Systems and Theory
    • /
    • v.33 no.1_2
    • /
    • pp.69-78
    • /
    • 2006
  • The client request scheduling techniques for web server can classified into the scheduling techniques considering a document size to be requested and not. The scheduling techniques considering a document site to be requested provides a better average response time than another As the size-based SRPT(Shortest Remaining Processing Time first) is typical, and the most of scheduling techniques considering a web document size are based on SRPT. Most of existing researches, however, have not considered the feature of HTTP/1.1 which enable the clients to request concurrent multiple inlined-contents in a HTML document via each connection. In this paper we propose a connection scheduling technique with the scheduling window which provides a better response time in HTTP/1.1. The experimental results show that the performance with the proposed approach is improved about $10\%$ more than the connection scheduling with SRPT.

The Analysis on Trend of Articles about Fungus in Journal of Korean Medicine (국내 한의학 학술지에 게재된 진균 관련 논문들의 경향성 분석)

  • Kwon, Kang;Kim, Chul-Yun;Lee, Deuk-Joo;Seo, Hyung-Sik
    • The Journal of Korean Medicine Ophthalmology and Otolaryngology and Dermatology
    • /
    • v.30 no.1
    • /
    • pp.43-73
    • /
    • 2017
  • Objectives : Because fungal disease is common and easy to recur, there is need to develop treatment in Korean medical academy. For more intensified study about fungal disease, this article summarized and analyzed tendency of ones in Korean medical journal. Methods : We found 74 articles about fungus in journal of Korean medicine by using 15 Korean keywords and 19 English keywords at internet reference site as follows ; http://oasis.kiom.re.kr, http://www.riss.kr, http://www.dbpia.co.kr, http://www.ndsl.kr, http://kiss.kstudy.com, http://www.naver.com, http://www.google.com. Results : There were 12 articles(16.2%), ranked highest in 2005. Korean Journal of Oriental Physiology & Pathology ranked highest(41.9%). 3 persons ranked highest(23.0%) in number of author. There was 1 descriptive report in original article category. There were 52 In vitro articles and 8 In vivo & In vitro articles in experimental study item. Candida species ranked highest in strain category. There were 4 case reports. Conclusions : There were many experimental studies about fungal diseases, but more clinical research and case reports are necessary to give practical application to patients.

Mechanism for Fairness Service of Web Server

  • Rhee, Yoon-Jung;Park, Nam-Sup;Hyun, Eun-Sil;Kim, Jeong-Beom;Lee, Young-Ji;Yun, Ma-Ru;Hyeok Kang;Kim, Young-Jun;Kim, Tai-Yoon
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2001.04a
    • /
    • pp.355-357
    • /
    • 2001
  • HTTP/1.1 standard reduces latencies and overhead from closing and re-establishing connections by supporting persistent connections as a default, which encourage multiple transfers of objects over one connection. HTTP/1.1, however, does not define explicitly connection-closing time but specifies a certain fixed holding time model. This model may induce wasting server’s resource when server maintains connection with the idle-state client that requests no data for a certain time. This paper proposes the mechanism of a heuristic connection management supported by the client-side under persistent HTTP, in addition to HTTP/1.1’s fixed holding time model on server-side. The client exploits the tag information within transferred HTML page so that decides connection-closing time. As a result, the mechanism allows server to use server’s resource more efficiently without server’s efforts.

Evaluation of counseling Services in Private Consumer Counseling Sites (민간 소비자상담 사이트의 상담서비스 평가)

  • 김기옥;유현정;남수정
    • Journal of the Korean Home Economics Association
    • /
    • v.39 no.7
    • /
    • pp.145-163
    • /
    • 2001
  • The purpose of this study was to evaluate counseling services in consumer counseling sites. We analyzed the contents and services of consumer counseling from the following internet sites; http : //www . gcn. or. kr , http : //www. jubuclub. or. kr, http : //www. cacpk. erg, http : //www . tor. co. kr/~ consumer, http : //civ. miriman. co. kr, http ://my. netian .com/~rokmc9. The major findings were summarized as follows: (1) All sites provided both a lot of information on consumer affairs and services for consumer counseling. (2) Two out of six private consumer counseling sites were technically inappropriated. They are wow.gen.or.kr and cia.miriman.co.kr (3) Consumer counseling services with specialized information and laws on consumer affairs were more likely provided from sites of consumer organizations than personal sites. (4) Personal sites made more consumer friendly communication than organization sites.

  • PDF

A HTTP/2 Security Vulnerability for the Secure Web Environment (안전한 Web 환경을 위한 HTTP/2 취약점에 관한 연구)

  • Ryu, Jeong Hyun;Moon, Seo Yeon;Park, Jong Huyk
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2016.10a
    • /
    • pp.238-240
    • /
    • 2016
  • Web 환경이 급격히 변화함에 따라 HTTP 프로토콜의 변화도 요구되었다. 이를 보완하기 위한 비동기 메커니즘, Ajax 등이 제시되었고 최근 사물인터넷, 클라우드 등을 활용한 웹 어플리케이션이 주목 받고 있다. 이러한 패러다임의 변화로 웹은 여러 가지 기능이 필요하게 되었으며 HTTP/1의 단점을 보완한 HTTP/2가 개발되었다. HTTP/2는 웹 어플리케이션 및 Hypertext page 변화를 위해 복합적인 기능들이 추가 되었으나 이러한 추가적인 요소에 대해 또 다른 보안 취약점이 나타났다. 웹 어플리케이션은 사용자의 서비스에 직접적인 영향을 미치기 때문에 보안 위협 및 그 피해가 매우 치명적일 수 밖에 없다. 따라서 이러한 보안 취약점에 대한 보안 대책이 시급하다. 본 논문에서는 HTTP/2의 주요 취약점에 대해 분석하고 네 가지 보안 위협에 대해 기술하여 앞으로의 HTTP/2에서의 웹 보안 대책 및 연구에 기여하고자 한다.

Static Document Scheduling with Better Response Time (HTTP/1.1 환경에서 응답시간을 개선한 정적 문서 스케줄링)

  • Bang, Ji-Ho;Ha, Rhan
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2000.10c
    • /
    • pp.425-427
    • /
    • 2000
  • 접속이 빈번한 웹사이트들의 서버는 동시에 수백개의 커넥션을 처리해야 하므로 효율적인 커넥션 스케줄링 기법이 요구된다. 기존의 SRPT(Shortest Remaining Processing Time first)를 이용한 커넥션 스케줄링 기법은 가장 짧은 처리시간이 남아있는 커넥션을 먼저 처리함으로써 각 문서에 대한 응답시간의 향상을 가져왔다. 그러나, 클라이언트의 요청에 의해 형성된 하나의 커넥션으로 다수의 정적 문서들을 동시에 요청할 수 있는 HTTP/1.1에서 크기가 다른 다수의 정적 문서들이 요청됐을 때, 각 문서에 대한 응답시간은 빠를 수 있으나 커넥션에 대한 전체 응답시간의 향상은 보장할 수 없다. 따라서 본 논문은 HTTP/1.1 환경에서 웹 서버의 CPU와 메모리의 부하가 높을 때 발생되는 성능저하의 단점을 보완하면서 정적 문서 요청에 관한 응답시간을 향상시키는 pipelining 기반의 커넥션 스케줄링 기법을 제시한다. 실험을 통해서 제안한 커넥션 스케줄링 기법이 전체적으로 커넥션에 대한 빠른 응답시간을 보이고, 스케줄링 윈도우의 사용으로 스케줄링에 공평성을 보임을 알 수 있다.

  • PDF

Detecting the HTTP-GET Flood Attacks Based on the Access Behavior of Inline Objects in a Web-page Using NetFlow Data

  • Kang, Koo-Hong
    • Journal of the Korea Society of Computer and Information
    • /
    • v.21 no.7
    • /
    • pp.1-8
    • /
    • 2016
  • Nowadays, distributed denial of service (DDoS) attacks on web sites reward attackers financially or politically because our daily lifes tightly depends on web services such as on-line banking, e-mail, and e-commerce. One of DDoS attacks to web servers is called HTTP-GET flood attack which is becoming more serious. Most existing techniques are running on the application layer because these attack packets use legitimate network protocols and HTTP payloads; that is, network-level intrusion detection systems cannot distinguish legitimate HTTP-GET requests and malicious requests. In this paper, we propose a practical detection technique against HTTP-GET flood attacks, based on the access behavior of inline objects in a webpage using NetFlow data. In particular, our proposed scheme is working on the network layer without any application-specific deep packet inspections. We implement the proposed detection technique and evaluate the ability of attack detection on a simple test environment using NetBot attacker. Moreover, we also show that our approach must be applicable to real field by showing the test profile captured on a well-known e-commerce site. The results show that our technique can detect the HTTP-GET flood attack effectively.

The Study of the Diarrhea in Sasang Constitutional Medicine (사상의학에서의 설사에 관한 고찰)

  • Song, Eun-Young;Chai, Kwang-Min;Lee, Jun-Hee;Lee, Eui-Ju;Koh, Byung-Hee
    • Journal of Sasang Constitutional Medicine
    • /
    • v.25 no.4
    • /
    • pp.277-288
    • /
    • 2013
  • Objectives This study was aimed to propose the guideline of the diarrhea in Sasang Constitutional Medicine. Methods 1) Literature search It was investigated that the prescriptions stated the diarrhea as a main and accessory symptoms to be treated in "Donguisasangshinpyun", "Donguisusebowon Sasang Chobongwon", "Donguisusebowon Gabobon", "Donguisusebowon Sinchukbon", "Dongmuyugo" 2) Clinial paper search (1) The foreign papers were searched by using the search word with 'Sasang AND Diarrhea' in pubmed (http://www.ncbi.nlm.nih.gov/pubmed/) and The Cochrane Library(http://www.thecochranelibrary.com) (2) The domestic papers were searched by using the search word with 'Soeumin AND Diarrhea', 'Soyangin AND Diarrhea', 'Taeeumin AND Diarrhea', 'Taeyangin AND Diarrhea', 'Sasang AND Diarrhea' in NDSL (http://www.ndsl.kr), KISS(http://kiss.kstudy.com), Oasis(http://oasis.kiom.re.kr), RISS(http://www.riss.kr) (3) The extracted factors were the evaluations on the mainly complained symptom, adopted four constitutional therapy and efficacy. Results & Conclusions The guidelines for treating the diarrhea in the Four Constitutional Medicine are as follows. 1) It is to categorize the constitution. 2) The diarrhea of taeeumin is prescribed with 'A Series of Taeeumjowi-tang, Galgeunhaegi-tang, Cheongsimyeonja-tang, Sahyang-san, etc'. by classifying into cold, fever, consumption and addiction. 3) The diarrhea of soyangin is regarded as an internal disease and it is prescribed with 'Baekhaobuja-tang, Baekhaobujaijung-tang, etc'. by classifying taeeum symptom and so-yin symptom. 4) The diarrhea of soeumin is Mangeum-disease and 'Jeoryeongchajeonja-tang, Hyeongbangsabaek-san, Hwalseokgosam-tang, Hyeongbanggihwang-tang, etc'. is prescribed depending on the complication.

A Video-Quality Control Scheme using ANFIS Architecture in a DASH Environment (DASH 환경에서 ANFIS 구조를 이용한 비디오 품질 조절 기법)

  • Son, Ye-Seul;Kim, Hyun-Jun;Kim, Joon-Tae
    • Journal of Broadcast Engineering
    • /
    • v.23 no.1
    • /
    • pp.104-114
    • /
    • 2018
  • Recently, as HTTP-based video streaming traffic continues to increase, Dynamic Adaptive Streaming over HTTP(DASH), which is one of the HTTP-based adaptive streaming(HAS) technologies, is receiving attention. Accordingly, many video quality control techniques have been proposed to provide a high quality of experience(QoE) to clients in a DASH environment. In this paper, we propose a new quality control method using ANFIS(Adaptive Network based Fuzzy Inference System) which is one of the neuro-fuzzy system structure. By using ANFIS, the proposed scheme can find fuzzy parameters that selects the appropriate segment bitrate for clients. Also, considering the characteristic of VBR video, the next segment download time can be more accurately predicted using the actual size of the segment. And, by using this, it adjusts video quality appropriately in the time-varying network. In the simulation using NS-3, we show that the proposed scheme shows higher average segment bitrate and lower number of bitrate-switching than the existing methods and provides improved QoE to the clients.