• 제목/요약/키워드: Single-Sign On

검색결과 200건 처리시간 0.027초

Trustworthy Mutual Attestation Protocol for Local True Single Sign-On System: Proof of Concept and Performance Evaluation

  • Khattak, Zubair Ahmad;Manan, Jamalul-Lail Ab;Sulaiman, Suziah
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제6권9호
    • /
    • pp.2405-2423
    • /
    • 2012
  • In a traditional Single Sign-On (SSO) scheme, the user and the Service Providers (SPs) have given their trust to the Identity Provider (IdP) or Authentication Service Provider (ASP) for the authentication and correct assertion. However, we still need a better solution for the local/native true SSO to gain user confidence, whereby the trusted entity must play the role of the ASP between distinct SPs. This technical gap has been filled by Trusted Computing (TC), where the remote attestation approach introduced by the Trusted Computing Group (TCG) is to attest whether the remote platform integrity is indeed trusted or not. In this paper, we demonstrate a Trustworthy Mutual Attestation (TMutualA) protocol as a proof of concept implementation for a local true SSO using the Integrity Measurement Architecture (IMA) with the Trusted Platform Module (TPM). In our proposed protocol, firstly, the user and SP platform integrity are checked (i.e., hardware and software integrity state verification) before allowing access to a protected resource sited at the SP and releasing a user authentication token to the SP. We evaluated the performance of the proposed TMutualA protocol, in particular, the client and server attestation time and the round trip of the mutual attestation time.

Grid 보안

  • 이재광
    • 지식정보인프라
    • /
    • 통권8호
    • /
    • pp.78-84
    • /
    • 2002
  • 그리드 환경에서 사용자는 각 시스템을 사용하는데 있어서 하나의 사이트에 한번 로그인을 한 후에 다른 그리드 상의 지원에 접근할 때 추가적인 인증 과정을 거치지 않는다는 단일 인증(Single Sign on)과 같은 인증서비스, 실제로 그 사용자가 해당 시스템을 사용할 수 있는지에 대한 권한에 관련된 접근제어(Access Control) 서비스 등과 같은 보안문제에 대한 기반이 뒷받침되어야 효과적이고 안전하게 수행될 수 있을 것이다.

  • PDF

IEEE 754 단정도 부동 소수점 연산용 곱셈기 설계 (Design of a Floating Point Multiplier for IEEE 754 Single-Precision Operations)

  • 이주훈;정태상
    • 대한전기학회:학술대회논문집
    • /
    • 대한전기학회 1999년도 추계학술대회 논문집 학회본부 B
    • /
    • pp.778-780
    • /
    • 1999
  • Arithmetic unit speed depends strongly on the algorithms employed to realize the basic arithmetic operations.(add, subtract multiply, and divide) and on the logic design. Recent advances in VLSI have increased the feasibility of hardware implementation of floating point arithmetic units and microprocessors require a powerful floating-point processing unit as a standard option. This paper describes the design of floating-point multiplier for IEEE 754-1985 Single-Precision operation. Booth encoding algorithm method to reduce partial products and a Wallace tree of 4-2 CSA is adopted in fraction multiplication part to generate the $32{\times}32$ single-precision product. New scheme of rounding and sticky-bit generation is adopted to reduce area and timing. Also there is a true sign generator in this design. This multiplier have been implemented in a ALTERA FLEX EPF10K70RC240-4.

  • PDF

단일벽 탄소나노튜브의 표면 전도도 조절 및 유전영동에 대한 영향 (Surface Conductance Modulation of Single-Walled Carbon Nanotubes and Effects on Dielectrophoresis)

  • 홍승현;정세훈;김영진;최재봉;백승현
    • 대한기계학회논문집A
    • /
    • 제30권2호
    • /
    • pp.179-186
    • /
    • 2006
  • Dielectrophoresis has received considerable attention for separating nanotubes according to electronic types. Here we examine the effects of surface conductivity of semiconducting single-walled carbon nanotubes (SWNT), induced by ionic surfactants, on the sign of dielectrophoretic force. The crossover frequency of semiconducting SWNT increases rapidly as the conductivity ratio between the particle and medium increases, leading to an incomplete separation of ionic surfactant suspended SWNT at an electric field frequency of 10 MHz. The surface charge of SWNT is neutralized by an equimolar mixture of anionic surfactant sodium dodecyl sulfate (SDS) and cationic surfactant cetyltrimenthylammonium bromide (CTAB), resulting in negative dielectrophoresis of semiconducting species at 10 MHz. A comparative Raman spectroscopy study shows a nearly complete separation of metallic SWNT.

행인약침(杏仁藥鍼)이 항알레르기에 미치는 영향 (Study on the Anti-allergic Effect of Armeniacae Semen Herbal Acupuncture Solution)

  • 김유승;송춘호
    • Korean Journal of Acupuncture
    • /
    • 제24권4호
    • /
    • pp.151-162
    • /
    • 2007
  • Objectives : The purpose of this study was to examine the anti-allergic effect in vivo, and to observe single toxicity in mice of Armeniacae Semen herbal acupuncture solution (ASHA). Methods : We investigated anti DNP IgE-mediated passive cutaneous anaphylaxis in rodents and compound 48/80-induced active systemic anaphylatic shock in mice after treatment at both BL13 with ASHA of 25 ${\mu}{\ell}$(mice) or 50 ${\mu}{\ell}$(rats) 3 times for 5 days. To ascertain safety and toxicity of ASHA, we examined single toxicity test. In single test, three groups were treated with different dosages of ASHA (ASHA250, ASHA500 and ASHA1000) according to on Korean Food and Drug Administration, respectively. We observed attentively motality, abnormal clinical sign, body weight change, and organ weight of mice after ASHA treatment. Results : ASHA inhibited passive cutaneous anaphylaxis and active systemic anaphylatic shock by oral administration. During toxicity experiment period, there was no difference in body weight change, and organ weight among different dose groups. Death were not found in single test i.p. group. (ASHA250, ASHA500 and ASHA1000). Several individuals of single test i.p. group were observed yellow brown discharge around anus in early period after administration. Conclusions : These results indicate that ASHA have inhibition effects on passive cutaneous anaphylaxis and active systemic anaphylatic shock, and suggest that has some toxicity in high dosage.

  • PDF

PKI를 이용한 원격 통합 서버 관리 시스템 (Remote Integrated Server Management System Based on PKI)

  • 김지호;박세현;송오영
    • 한국정보보호학회:학술대회논문집
    • /
    • 한국정보보호학회 2002년도 종합학술발표회논문집
    • /
    • pp.280-283
    • /
    • 2002
  • 본 논문에서는 기존 서버 원격관리 시스템이 안고있던 보안상의 문제점을 최근에 보안 인프라로써 각광을 받고 있는 PKI(Public Key Infrastructure)를 사용한 원격 통합 서버관리 시스템을 제안하고자 한다. 통합 인증서버는 관리자의 인증을 SCVP를 사용해서 검증하며, SSL(Secure Socket Layer)을 통해서 데이터의 기밀성을 보장한다. 또한 제안된 시스템은 관리자가 다양한 종류의 플랫폼과 운영체제를 한번의 인증과정으로 원격에서 통합 관리가 가능한 SSO(Single-Sign On) 시스템이다.

  • PDF

ebXML 기반 e-Logistics 시스템의 사용자 관리 시스템 설계 (Design of User Management System for e-Logistics System Based on ebXML)

  • 채정숙;김영희;이용준
    • 한국정보과학회:학술대회논문집
    • /
    • 한국정보과학회 2003년도 봄 학술발표논문집 Vol.30 No.1 (A)
    • /
    • pp.725-727
    • /
    • 2003
  • 사용자 관리 시스템은 single sign on 개념의 통합인증시스템으로 처음 1회 인증으로 이미 정의된 업무 규칙에 따리 부여된 권한으로 시스템에 접근하게 하는 모듈로써, 시스템에 대한 사용자들의 시스템 접근을 편리하게 해 줄 뿐 아니라 정보를 보호하고 시스템의 안정성을 극대화 한다. 본 논문에서는 e-Logistics 통합 플랫폼의 서브 시스템(or 모듈)별로 접근권한체계를 DAC(Discretionary Access Control) 기반으로 통합 관리하는 사용자 관리 시스템을 제시함으로써 효율적인 시스템의 접근 권한을 관리하는 것을 목적으로 한다.

  • PDF

웹 서비스 기반의 SAML 인증 시스템의 설계 (Design of SAML Authority System based on Web Service)

  • 송준홍;성백호;차석일;김현희;신동일;신동규
    • 한국정보과학회:학술대회논문집
    • /
    • 한국정보과학회 2002년도 가을 학술발표논문집 Vol.29 No.2 (1)
    • /
    • pp.565-567
    • /
    • 2002
  • SAML(Security Assertion Markup Language)은 웹 서비스 환경에 최적화된 인중과 권한 부여를 표준적이면서도 확장성 있는 구조를 제공하는 공개된 표준이다. ebXML과 같은 공개된 XML 기반 거래 프레임워크에 SAML을 적용함으로써 기업 간 협력형 비즈니스 모델 내어서 문제가 되었던 550(Single Sign-on)를 위한 사용자 관리 및 인증의 부담을 최소화 할 수 있다 본 연구에서는 SAML에 대한 기술 분석과 함께 ebXML 및 웹 서비스 비즈니스 트랜잭션 내에서 적용 방안을 논의하고 원 서비스 모델 기반의 SAML 인증 시스템을 제시한다.

  • PDF

담체 변화에 따른 Labscale 바이오 필터의 성능 실험 (Operation of biofilters with different packing material)

  • D. Cho;Kwon, Sung-Hyun
    • 한국산학기술학회:학술대회논문집
    • /
    • 한국산학기술학회 2003년도 춘계학술발표논문집
    • /
    • pp.331-333
    • /
    • 2003
  • The low-pH biofiltration system in laboratory experiments demonstrate defective performance for treating H2S. When leachate pH was in the range of 1.5 to 4, the biofilters in three different media removed H2S wi th efficiencies greater than 99% while it was treated as a single contaminant. The posibility of using a single-stage low pH biofilter depends on its performance in treating VOCs. During Phase 2, a single-stage biofilter was effective for treating mixtures of H2S and toluene with toluene concentrations below 20ppm and leachate pH between 2 and 3.5. Biofiltration of xylene was ineffective when pH was lower than 1.5. The treatment system acclimated most slowly to benzene, and treatment of benzene was apparently subject to some competive inhibition from xylene and toluene. However. co-treatment was possible after some acclimation time. Xylene was not easily treated, with higher elimination capacities and no sign of competitive inhibition.

  • PDF