• Title/Summary/Keyword: mutual security

Search Result 476, Processing Time 0.027 seconds

A Mutual Authentication Protocol using Key Change Step by Step for RFID Systems (단계적 키 변환을 이용한 RFID 상호 인증 프로토콜)

  • Chung, Kyung-Ho;Kim, Kyoung-Youl;Oh, Se-Jin;Lee, Jae-Kang;Park, Yong-Soo;Ahn, Kwang-Seon
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.35 no.3B
    • /
    • pp.462-473
    • /
    • 2010
  • The RFID system has the security problem of location tracking and user privacy. In order to solve this problem, the cryptographic access method using hash function is difficult to in real applications. Because there is a limit of computing and storage capacity of Tag, but the safety is proved. The lightweight authentication methods like HB and LMAP guarantee the high efficiency, but the safety is not enough to use. In this paper, we use the AES for RFID Authentication, and solve the problem of using fixed key with key change step by step. The symmetric keys of the tag and server are changed by the random number generated by tag, reader and server successively. This could prevent the key exposure. As a result, the output of the tag and reader always changes. These key changes could make it possible to prevent eavesdropping, replay attack, location tracking and spoofing.

Building Guanxi and Networks of Korean Foreign Direct Investment Firms in China (대중국 한국 투자기업의 꽌시 형성과 네트워크)

  • Choe, Ja-Yeong;Lee, Sung-Cheol
    • Journal of the Economic Geographical Society of Korea
    • /
    • v.15 no.2
    • /
    • pp.228-239
    • /
    • 2012
  • Guanxi could be regarded as communities based on blood, regionalism, school ties centering on individual person. It has been used as a means of personal interests security and acquisition. What is more, it has formed a mode of socio-economic order, which is an inter-obligation relations based on mutual benefits. In practice, it is necessary to understand and accept guanxi in China, as it is a key factor to understand consumer patterns, inter-firm relations and extra-firm relations between firm and government. In this context, the main aim of the reserach is to identify the impact of guanxi on the business activities of Korean foreign direct investment firms in China by investigating their networks based on guanxi.

  • PDF

Improvements of the Hsiang-Shih's remote user authentication scheme using the smart cards (스마트카드를 이용한 Hsiang-Shih의 원격 사용자 인증 스킴의 개선에 관한 연구)

  • An, Young-Hwa
    • Journal of the Korea Society of Computer and Information
    • /
    • v.15 no.2
    • /
    • pp.119-125
    • /
    • 2010
  • Recently Hsiang-Shih proposed the user authentication scheme to improve Yoon et al's scheme. But the proposed scheme has not been satisfied security requirements considering in the user authentication scheme using the password based smart card. In this paper, we proved that Hsiang-Shih's scheme is vulnerable to the off-line password guessing attack. In other words, the attacker can get the user's password using the off-line password guessing attack on the scheme when the attacker steals the user's smart card and extracts the information in the smart card. Also, the improved scheme based on the hash function and random number was introduced, thus preventing the attacks, such as password guessing attack, forgery attack and impersonation attack etc. And we suggested the effective mutual authentication scheme that can authenticate each other at the same time between the user and server.

Theoretical Considerations for Formation and Roles of International Organizations : With Special Regard to Experiential Cases of IAEA (국제기구 형성과 역할에 관한 이론적 고찰 : IAEA의 경험적 사례를 중심으로)

  • Kim Tae-Woon
    • The Journal of the Korea Contents Association
    • /
    • v.6 no.7
    • /
    • pp.79-89
    • /
    • 2006
  • This study attempted theoretical considerations for the formation and roles of international organizations. More specifically, the study examined experiential cases of IAEA's formation and roles, based on the points of realist and liberalist paradigms that show different viewpoints on the formation and roles of international organizations. The findings of this study show that many parts cannot be explained only with theoretical assumptions of liberalist paradigm, such as international organizations' functional merits, game rules, interdependent interests and role independence. Especially as seen in the formation and operation cases of IAEA, the formation of international organizations is mainly motivated by the security of vested rights among powers and their roles may be changed, depending on the mutual policy objectives of the countries concerned.. In this respect, international organizations do not seem to be strictly protected in independence or efficiency of their roles. Therefore, the liberalist hegemony stability theory is useful to explain the formation and roles of international organizations.

  • PDF

A Study on the Basic Requirements and Operation Plan of E-trade Platform (전자무역 플랫폼의 기본요건과 운영방안에 관한 연구)

  • Lee, Sang-Jin
    • International Commerce and Information Review
    • /
    • v.6 no.2
    • /
    • pp.107-127
    • /
    • 2004
  • The rapid development of internet information technology has increased interest in e-Trade these days, but it is not activated greatly up to now. In order to promote e-Trade, it is essential to construct cooperative process such as connecting systems among trade related parties. Building e-Trade platform which is based on the infrastructure of the past trade automatic system is key point of promoting e-Trade. To do this, a study on the basic concept and specific components of e-Trade platform is needed absolutely. At this point of view, after this paper has examined domestic and foreign studies on the fundamental technologies about electronic commerce, it drew several key technologies that could be applied to e-Trade considering the current IT trend. Then it evaluates these technologies according to Technology Reference Model(TRM) of the National Computerization Agency. This will help us to show the operation strategy as well as the concept of future e-Trade platform and its composition. On the basis of the theoretical background, this paper classified NCA's technology model into 6 fields, which are application. data, platform, communication, security and management. Considering the key technologies, e-Trade platform has to be mutually connected and accept international standards such as XML. In the aspect of business side, trade relative agencies' business process as well as trading company's process has to be considered. Therefore, e-Trade platform can be classified into 3 parts which are service, infrastructure and connection. Infrastructure part is compared of circulating and managing system of electronic document, interface and service framework. Connecting service (application service) and additional service (application service) consist of service part. Connecting part is a linking mutual parts and can be divided into B2B service and B20 service. The organization operating this e-trade platform must have few responsibilities and requirements. It needs to positively accept existing infrastructure of trade automatic system and improving the system to complete e-trade platform. It also have to continuously develop new services and possess ability to operate the system for providing proper services to demanders. As a result, private sector that can play a role as TTP(Third Trust Party) is adequate for operating the system. In this case, revising law is necessary to support the responsibility and requirement of private sector.

  • PDF

Session Key Agreement Protocol for IoT Home Devices using Shadow Passwords (그림자 패스워드를 사용한 IoT 홈 디바이스 사이의 세션키 공유 프로토콜)

  • Jung, Seok Won
    • Journal of Internet of Things and Convergence
    • /
    • v.6 no.2
    • /
    • pp.93-100
    • /
    • 2020
  • Although various home services are developed as increasing the number of home devices with wire and wireless connection, privacy infringement and private information leakage are occurred by unauthorized remote connection. It is almost caused by without of device authentication and protection of transmission data. In this paper, the devices' secret value are stored in a safe memory of a smartphone. A smartphone processes device authentication. In order to prevent leakage of a device's password, a shadow password multiplied a password by the private key is stored in a device. It is proposed mutual authentication between a smartphone and a device, and session key agreement for devices using recovered passwords on SRP. The proposed protocol is resistant to eavesdropping, a reply attack, impersonation attack.

A Study on Advanced RF4CE Key Agreement for Device Convergence Security (디바이스 융합 보안을 위한 향상된 RF4CE 키 교환 기법에 관한 연구)

  • Shon, Tae-Shik;Koo, Bon-Hyun;Han, Kyu-Suk
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.35 no.6B
    • /
    • pp.970-976
    • /
    • 2010
  • Platform convergence originated from the convergence of broadcast and telecommunication is making rapid progress including IT and not-IT fields in order to provide a variety of converged services, S/W eco-system construction, and so on. With the advent of convergence environment, IEEE 802.15.4-based RF4CE technology is rising because of creating momentum for the market using converged connectivity between home and office devices as well as all around located devices. In this paper, we present enhanced RF4CE key seed distribution approach in order to provide efficient connection and control between devices. The proposed approach consists of device mutual authentication, initial vector assignment, and two-phase key seed distribution. Moreover, we make a development real RF4CE test board and its key agreement simulator to verify the proposed approach.

Investigating the Effect of Value Characteristics of SNS Users on SNS Usage Motivation, Social Capital, and Usage Behavior (SNS 이용자의 가치체계의 특징이 SNS 이용동기, 사회적 자본, 이용행위 등에 미치는 영향 분석)

  • Cho, Hyong-Oh
    • Journal of Digital Contents Society
    • /
    • v.19 no.2
    • /
    • pp.351-362
    • /
    • 2018
  • This study investigated how Schwartz' value system(1992) would interfere with SNS users' motivations and behavioral responses. The study result shows that values are characterized in terms of openness, mutual reciprocity, self enhancement, normative compliance, and security. Each of them exerted differential impact on SNS usage motives, social capital, ad response, and word-of-mouth, among others. The five values were used as an input for segmenting SNS users and clustering method produced four value segments; experience seeker, interdependent sympathizer, self enhancer, and norm-bound. Each value group not only influenced SNS perceptions and behavioral responses differently, but also showed a systematic relationship with SNS service types. The study findings demonstrate that Schwartz's value system provides a very useful theoretical basis for understanding the psychological mechanism underlying SNS usage.

A Study on Robust Authentication and Privacy in Wireless LAN (무선랜 환경에서 사용자 인증 및 기밀성 강화 방안에 관한 연구)

  • Hong Seong-pyo;Lee Joon
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.9 no.8
    • /
    • pp.1768-1773
    • /
    • 2005
  • The IEEE 802.1x standard provides an architectural framework which can be used various authentication methods. But, IEEE 802.1x also has vulnerabilities about the DoS, the session hijacking and the Man in the Middle attack due to the absence of AP authentication. In this paper, we propose a WLAN secure system which can offer a robust secure communication and a user authentications with the IEEE 802.1x framework. The user authentication on the WLAN secure system accomplishes mutual authentications between authentication severs, clients and the AP using PKI and prevents an illegal user from intervening in communication to disguise oneself as a client, the AP or authentication servers. Also, we guarantee the safety of the communication by doing secure communication between clients and the AP by the Dynamic WEP key distribution.

Study on the Starting Time of Attention for Convergent Exploration of Visual Information (시각정보의 수렴적 탐색활동을 위한 주의집중 개시 시간에 관한 연구)

  • Kim, Jong-Ha;Jung, Jae-Young
    • Korean Institute of Interior Design Journal
    • /
    • v.25 no.3
    • /
    • pp.51-59
    • /
    • 2016
  • The technique for Eye-tracking is to trace the movements of pupils so that the eye's exploration response to be digitized. The procedure of Observation Experiment shows a mutual environmental characteristics between men and measuring devices. In order to improve the reliability and to secure the objectivity of the data acquired from eye-tracking, it is very important to analyze the procedures for the experiment to be prepared and the test data to be saved. Based on this viewpoint, the convergent exploration activities at the observation experiment with the objects of sport images were examined to find out what influences the context effect given by experimental environments have on this experiment. In addition, the starting time of attention affecting the reliability of observation data has been estimated. When the observation time is to be subdivided by the unit of second. The attention disperses for the individual characteristics to be appreciated. However, in case of analysis by the overall average, there was the problem that the section of attention dispersed to make it difficult to analyze the subjects' observation features. The study results made it possible to understand the physiological characteristics which were near unconsciousness, when there was an intensive attention for the first 3 seconds and the observation data were shown to be in ordinary range after 4 seconds. The analysis of observation with the focus of the intensive attention enabled the analysis with the first 3 seconds excepted so that it might approach the ordinary range of observation data. The distribution of attention for the first 3 seconds showed the intensive attention, which was on the center. The emergence of intensive attention and the overlapping of the centers can be considered as a context effect due to the correction for the preparing process of experiment. Accordingly, it is thought to be helpful to the security of objectivity and the construction of reliability of eye-tracking data to analyze the observation features shown after the deletion of the data for the first 3 seconds.