• Title/Summary/Keyword: proxy server system

Search Result 91, Processing Time 0.029 seconds

A Design of Proxy Servers the VOD System (VOD 시스템을 위한 Clustered Proxy Server 설계)

  • 배기범;김종훈;이철훈
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 1998.10a
    • /
    • pp.130-132
    • /
    • 1998
  • 기존의 VOD 시스템을 확대하여 원거리에 존재하는 서비스 제공자로부터에서 사용자에세 더 빠른 응답서비스를 제공하고, 장애가 발생하더라도 사용자에게 중단 없이 제공되도록 하기 위하여 프락시 서버를 두었는데, 특히 일정 지역내 존재하는 프락시 서버들간에 틀러스터를 형성하여 단일 프락시 서버로 만족할 수 없는 다수의 클라이언트로부터의 요구를 받아들이고 cache사이즈와 감소와, 더 높은 hit tate를 제공하도록 한다. 또한 이 클러스터내의 프로그램관리를 위해 비디오데이터에 대한 정보를 hint로 저장하여 각 프락시에서 관리함으로써 네트웍을 통해 사용자까지 실시간으로 비디오 데이터를 전송이 가증하고, 직접 데이터를 전달 없이 클러스터를 효율적으로 관리할 수 있도록 한다.

  • PDF

Stateful Virtual Proxy for SIP Message Flooding Attack Detection

  • Yun, Ha-Na;Hong, Sung-Chan;Lee, Hyung-Woo
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.3 no.3
    • /
    • pp.251-265
    • /
    • 2009
  • VoIP service is the transmission of voice data using SIP protocol on an IP-based network. The SIP protocol has many advantages, such as providing IP-based voice communication and multimedia service with low communication cost. Therefore, the SIP protocol disseminated quickly. However, SIP protocol exposes new forms of vulnerabilities to malicious attacks, such as message flooding attack. It also incurs threats from many existing vulnerabilities as occurs for IP-based protocol. In this paper, we propose a new virtual proxy to cooperate with the existing Proxy Server to provide state monitoring and detect SIP message flooding attack with IP/MAC authentication. Based on a proposed virtual proxy, the proposed system enhances SIP attack detection performance with minimal latency of SIP packet transmission.

A Study on Open Based Network Security System Architecture (개방형 네트워크 보안 시스템 아키텍처에 관한 연구)

  • Kim, Chang-Su;Kim, Tak-Chen;Jung, Hoe-Kyung
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2007.06a
    • /
    • pp.782-785
    • /
    • 2007
  • If existing system need to expand security part, the security was established after paying much cost, processing of complicated installation and being patient with inconvenience at user's view because of closed structure. In this thesis, those defects could be overcome by using open security tools and constructing security server, which is firewall of 'bastion' form including proxy server, certification server and so on. Also each security object host comes to decide acceptance or denial where each packet comes from, then determines security level each hosts. Precisely it is possible choosing the packets from bastion host or following at the other policies. Although an intruder enter into inside directly, it is constructed safely because encryption algorithm is applied at communication with security object host. This thesis suggests more flexible, independent and open security system, which improves existing security through systematic linkage between system security and network security.

  • PDF

Open Based Network Security System Architecture (개방형 네트워크 보안 시스템 구조)

  • Kim, Chang-Su;Jung, Hoe-Kyung
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.12 no.4
    • /
    • pp.643-650
    • /
    • 2008
  • If existing system need to expand security part, the security was established after paying much cost, processing of complicated installation and being patient with inconvenience at user's view because of closed structure. In this thesis, those defects could be overcome by using open security tools and constructing security server, which is firewall of 'bastion' form including proxy server, certification server and so on. Also each security object host comes to decide acceptance or denial where each packet comes from, then determines security level each hosts. Precisely it is possible choosing the packets from bastion host or following at the other policies. Although an intruder enter into inside directly, it is constructed safely because encryption algorithm is applied at communication with security object host. This thesis suggests more flexible, independent and open security system, which improves existing security through systematic linkage between system security and network security.

Research on the Application of Load Balancing in Educational Administration System

  • Junrui Han;Yongfei Ye
    • Journal of Information Processing Systems
    • /
    • v.19 no.5
    • /
    • pp.702-712
    • /
    • 2023
  • Load balancing plays a crucial role in ensuring the stable operation of information management systems during periods of high user access requests; therefore, load balancing approaches should be reasonably selected. Moreover, appropriate load balancing techniques could also result in an appropriate allocation of system resources, improved system service, and economic benefits. Nginx is one of the most widely used loadbalancing software packages, and its deployment is representative of load-balancing application research. This study introduces Nginx into an educational administration system, builds a server cluster, and compares and sets the optimal cluster working strategy based on the characteristics of the system, Furthermore, it increases the stability of the system when user access is highly concurrent and uses the Nginx reverse proxy service function to improve the cluster's ability to resist illegal attacks. Finally, through concurrent access verification, the system cluster construction becomes stable and reliable, which significantly improves the performance of the information system service. This research could inform the selection and application of load-balancing software in information system services.

The Implementation of Extension SIP system for efficient call-control (효율적인 call-control을 위한 Extension SIP 시스템 구현)

  • 이정훈;양형규;이병호
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2004.10c
    • /
    • pp.331-333
    • /
    • 2004
  • 본 논문에서는 SIP(Session initiation Protocol) 기반의 VoIP(Voice over Internet Protocol) 시스템에 효율적인 call-control을 위해 필요한 헤더와 파라미터를 추가한 Extension SIP를 제안하였다. 또한 이 제시된 Extension SIP에 따르는 SIP Proxy Server와 User Agent(User Agent Client, User Agent Server)를 리눅스 시스템에서 C언어를 통해 구현하였고, 이 구현된 Extension SIP 시스템을 통해 기존의 SIP 시스템과 cail-control을 위한 packet traffic을 비교.분석 함으로써 제안한 Extension SIP의 효율성 을 증명하였다.

  • PDF

Simulation of Parallel and Scalable VoD Server (병렬 확장 VoD 서버에 대한 성능 분석)

  • 홍석래;심재홍;최경희;김재훈
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 1999.10c
    • /
    • pp.105-107
    • /
    • 1999
  • 최근 컴퓨터와 제반 기술들의 눈부신 발달로 인해 대용량의 멀티미디어 데이터를 다루는 서비스들이 많이 등장하고 있다. 주문형 비디오 서비스(Video on Demand)가 가장 대표적인 예라고 할 수 있으며, 이를 구현하기 위한 많은 방법들이 제안되고 있다. 본 논문에서는 현재까지 개발되어 있는 VoD 시스템에 관하여 살펴보고, 이를 기반으로 PASS(Parallel and Scalable Server) VoD 시스템을 제안한다. PASS VoD 시스템은 병렬 비디오 서버로서 SAN(System Area Network)로 연결된 independent proxy 구조와 비슷한 구조를 가지는 시스템이다. 본 논문에서는 PASS VoD 시스템에 대하여 설명하고 PASS VoD 시스템이 scalable 함을 시뮬레이션을 통하여 확인하였다.

  • PDF

The Internet Server Construction on Private IP Address System (사설 IP Address 시스템에서 인터넷 서버 구축)

  • 이성재;김재갑;김원중
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2002.10e
    • /
    • pp.10-12
    • /
    • 2002
  • WWW의 급격한 팽창은 인터넷을 사용하는 사용자들의 급격한 증가를 가져 왔으며, 인터넷 사용자의 증가로 IP Address의 부족문제가 발생하게 되었다. 이에 대한 해결책으로 서브넷, 사설 IP Address, Proxy Server, NAT등의 다양한 해결책들이 제시되어 부분적으로 적용하고 있으나, 사설 IP Address를 사용하는 경우 인터넷 서비스를 이용하는 것은가능하나 인터넷 서버로서의 역할을 수행할 수 없다. 본 논문에서 설계 구현한 Gate-P 시스템은 사설 IP Address를 가지는 시스템을 인터넷 서버로서 활용할 수 있도록 한다.

  • PDF

Proxy-based Mobile Syndication with Low Communication Cost (프록시 기반의 저 통신 비용 모바일 신디케이션)

  • Hwang, Ki-Tae;Kim, Nam-Yun
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.34 no.8B
    • /
    • pp.786-796
    • /
    • 2009
  • Currently, web syndication is usually utilized in desktop environments, but not considering mobile environments. In this paper, we focus on the extension of the desktop based web syndication to the mobile internet. Simply adapting the desktop based web syndication to mobile devices can cause high wireless internet communication cost. We propose PMS(Proxy-based Mobile Syndication) model which achieves low cost mobile syndication. In the PMS model, MWProxy is defined as a proxy server between mobile devices and web sites. It can reduce the communication cost by peeking up modified items from the web sites and reducing the channel size. In this paper, we designed and implemented the PMS system in a mobile phone and evaluated the performance of the PMS system by conducting real experiments using mobile emulators.

Location-Awareness Management in IP-based IMT Network Platform ($IP^2$)

  • NamGung, Jung-Il;Shin, Soo-Young;Jung, Byeong-Hwa;Park, Hyun-Moon;Yun, Nam-Yeol;Park, Soo-Hyun
    • Journal of Korea Multimedia Society
    • /
    • v.13 no.6
    • /
    • pp.901-910
    • /
    • 2010
  • $IP^2$, as an extended concept of the next generation IMT network, is a concept of basically supporting mobility using two steps of IP address (i.e. IPha (IP Host address) and IPra (IP routing address)) in IP backbone network. Current $IP^2$system has a shortcoming of excess usage of network resources caused by sending paging messages to all cells in LA (Location Area) in paging procedure. Considering the evolving direction of network, which is taking mobility with various speed and integration of devices into consideration, this shortcoming must be overcome. In this paper, we proposed a method to reduce time and memory for paging by maintaining current information of MN (Mobile Node) not in Active state with proxy server. Performance evaluation based on NS-2 simulations has shown that the efficiency of network resources is improved in the proposed method.