• 제목/요약/키워드: 신뢰실행환경

Search Result 161, Processing Time 0.027 seconds

Mutual Attestation Protocol using Software-based Attestation Scheme in Sensor Network Environments (SWATT 기법을 이용한 센서 노드 간 상호 검증 프로토콜)

  • Heo, Kyung-Soo;Choi, Hyun-Woo;Jang, Hyun-Su;Eom, Young-Ik
    • The KIPS Transactions:PartC
    • /
    • v.15C no.1
    • /
    • pp.9-18
    • /
    • 2008
  • Prevention of attacks being made through program modification in sensor nodes is one of the important security issues. The software-based attestation technology that verifies the running code by checking whether it is modified or not in sensor nodes is being used to solve the attack problem. However, the current software-based attestation techniques are not appropriate in sensor networks because not only they are targeting static networks that member nodes does not move, but also they lacks consideration on the environment that the trusted verifier may not exist. This paper proposes a mutual attestation protocol that is suitable for sensor networks by using SWATT(Software-based ATTestation) technique. In the proposed protocol, sensor nodes periodically notify its membership to neighbor nodes and carry out mutual attestation procedure with neighbor nodes by using SWATT technique. With the proposed protocol, verification device detects the sensor nodes compromised by malicious attacks in the sensor network environments without trusted verifier and the sensor networks can be composed of only the verified nodes.

Fault-Tolerant Software Development Environment for Server Cluster Systems (서버 클러스터 시스템을 위한 고장 감내 소프트웨어 개발 환경)

  • 함명호;김진용;신현식
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2003.10b
    • /
    • pp.298-300
    • /
    • 2003
  • 분산 시스템 환경에서 하드웨어나 소프트웨어 자원의 가용성이나 신뢰성을 높이기 위한 노력으로 가용성이 높은 클러스터 시스템이나 고장 감내 소프트웨어 개발 환경들이 연구되어 왔다. 본 연구에서는 하드웨어의 신뢰성을 높이기 위해 서버 클러스터 시스템을 구축하였고, 이 클러스터 시스템에 기반한 고장 감내 소프트웨어 개발 환경을 구축하였다. 사용자는 고장 감내 소프트웨어 개발 환경을 이용하여 쉽게 고장 감내 소프트웨어를 작성할 수 있고, 원하는 소프트웨어 고장 감내 기법을 간단하게 기술할 수 있다. 특히, 소프트웨어 개발과 소프트웨어 고장 감내 기법의 적용을 논리적으로 분리시켜 소프트웨어 개발 과정을 단순화 시켰고, 이미 개발된 소프트웨어 모듈의 변경 없이 다양한 고장 감내 기법을 적용할 수 있게 하였다. 이러한 개발상의 논리적인 분리, 소프트웨어 모듈의 동적 노드 결정, 그리고 작업 스케쥴링 둥의 일을 처리하기 위해 실행 시간 제공 요소(Run-time supports)들이 노드와 네트웍 고장을 감내 하기 위해 개발된 미들웨어 계층 위에서 구현되었다.

  • PDF

Implementation of Domain Separation-based Security Platform for Smart Device (안전한 스마트 단말을 위한 도메인 분리 기반 보안 플랫폼 구현)

  • Kim, Jeong Nyeo
    • Journal of Digital Convergence
    • /
    • v.14 no.12
    • /
    • pp.471-476
    • /
    • 2016
  • Recently, important information related with smart work such as office and video conference are handled in smart device quite a lot compare with before. Also, execution environment of smart devices is getting developed as open software environment. It brought convenience to download and use any kind of application software. By that, security side of smart devices became vulnerable. This paper will discuss characteristics of smart device security technology based on virtualization that is a mobile device platform with isolated secure execution area based on TEE (Trusted Execution Environment). Also, this paper will suggest an implementation method about safe smart device security platform based on domain separation for application software which can be executed in smart devices. The domain separation based smart device security platform technology in this paper blocks unauthorized access and leakage of sensitive information in device. Also it will be the solution can block transmission and execution of malicious code in various area including variety of IoT devices in internet rather than just smart devices.

A Development of mobile broadcasting monitor for improving reliability on IP-TV Platform based on TIT (TIT 기반에 IP-TV 플랫폼의 신뢰성 향상을 위한 방송 모니터 개발)

  • Sso, Sang-Jin;Jin, Hyun-Joon;Park, Noh-Kyung
    • Journal of Internet Computing and Services
    • /
    • v.8 no.5
    • /
    • pp.59-66
    • /
    • 2007
  • In korea, TIT(Transport Information Technology) based IP-TV services have been provided in Saemaeul trains and some sections of subway trains, But the software systems for the service performed in alternated fashions and suffered from many problems such as suspension, memory leaking and overflow, These problems increased playback loss time and resulted in bad reliabilities, In this paper, a software TIT monitor is designed and implemented for Monitoring module and Reset module in physically poor environments, The designed system formalized monitoring time intervals for effective monitoring, Through the real experiments, playback time is improved in 7.2% comparing to existing system.

  • PDF

Improving Efficiency of Encrypted Data Deduplication with SGX (SGX를 활용한 암호화된 데이터 중복제거의 효율성 개선)

  • Koo, Dongyoung
    • KIPS Transactions on Computer and Communication Systems
    • /
    • v.11 no.8
    • /
    • pp.259-268
    • /
    • 2022
  • With prosperous usage of cloud services to improve management efficiency due to the explosive increase in data volume, various cryptographic techniques are being applied in order to preserve data privacy. In spite of the vast computing resources of cloud systems, decrease in storage efficiency caused by redundancy of data outsourced from multiple users acts as a factor that significantly reduces service efficiency. Among several approaches on privacy-preserving data deduplication over encrypted data, in this paper, the research results for improving efficiency of encrypted data deduplication using trusted execution environment (TEE) published in the recent USENIX ATC are analysed in terms of security and efficiency of the participating entities. We present a way to improve the stability of a key-managing server by integrating it with individual clients, resulting in secure deduplication without independent key servers. The experimental results show that the communication efficiency of the proposed approach can be improved by about 30% with the effect of a distributed key server while providing robust security guarantees as the same level of the previous research.

Analyzing Trends of Commoditized Confidential Computing Frameworks for Implementing Trusted Execution Environment Applications (신뢰 실행 환경 어플리케이션 개발을 위한 상용 컨피덴셜 컴퓨팅 프레임워크 동향 및 비교 분석)

  • Kim, Seongmin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.31 no.4
    • /
    • pp.545-558
    • /
    • 2021
  • Recently, Confidential computing plays an important role in next-generation cloud technology along with the development of trusted execution environments(TEEs), as it guarantees the trustworthiness of applications despite of untrusted nature of the cloud. Both academia and industry have actively proposed commercialized confidential computing solutions based on Intel SGX technology. However, the lack of clear criteria makes developers difficult to select a proper confidential computing framework among the possible options when implementing TEE-based cloud applications. In this paper, we derive baseline metrics that help to clarify the pros and cons of each framework through in-depth comparative analysis against existing confidential computing frameworks. Based on the comparison, we propose criteria to application developers for effectively selecting an appropriate confidential computing framework according to the design purpose of TEE-based applications.

우리 나라 중소수출업체의 인터넷 활용상의 장애요인과 성과

  • 문희철;이진석
    • Proceedings of the Korea Society for Industrial Systems Conference
    • /
    • 1999.12a
    • /
    • pp.81-99
    • /
    • 1999
  • 인터넷 및 전자상거래의 확산과 함께 국내에서도 인터넷을 이용한 수출을 지칭하는 이른바 “인터넷 무역”내지 “전자무역”의 시대가 열리고 있다. 그러나 아직도 우리 나라의 대다수 중소기업들의 경우에는 보안, 신뢰, 인터넷관련비용, 기술, 제도적 지원의 미흡, 하부구조의 미비 등 인터넷 활용에는 많은 장애요인이 있는 것으로 알려지고 있다. 따라서 본 연구에서는 우리 나라 중소기업들이 인터넷무역을 구현하는데 영향을 미치는 주요 요인들은 무엇이며, 또 이들이 인터넷 무역을 구현하기 위해 노력하는 과정에서의 장애요인에는 어떠한 것들이 있는지, 그리고 그에 따른 성과에는 어떠한 차이가 있는가를 규명하였다. 실증분석 결과 산업의 경쟁강도와 하부구조 등 외부환경특성과 최고경영자의 태도, 전자상거래 담당인력, 수출대상국 수 등의 기업특성이 실행범위에 영향을 미치는 것으로 나타났으며, 인터넷무역의 실행범위가 넓을수록, 장애요인에 대한 인지도가 낮을수록 성과가 높은 것으로 밝혀졌다 그러나 장애요인과 실행범위에는 유의한 관계가 발견되지 않았다. 이는 기업들의 입장에서는 보다 적극적으로 인터넷을 다양한 무역범위에 활용할 필요가 있으며, 정부는 실효성있는 정책적 지원을 동해 인터넷무역의 장애요인을 완화시켜 나갈필요가 있음을 의미한다.

  • PDF

GIS 하천수질정보를 활용한 수질모델링 시스템 개발

  • 엄명철;임종완;이광야;김계현
    • Proceedings of the Korea Water Resources Association Conference
    • /
    • 2002.05a
    • /
    • pp.317-322
    • /
    • 2002
  • 본 연구는 유역 수질의 효과적인 관리와 수질 모델의 효율적인 활용을 위하여 GIS를 기반으로 수질 모델과 지형 및 문자 데이터베이스를 통합한 모델링 시스템(Water Quality Management System)을 개발하고 전라북도 내 동진강에 대해 적용하였다. WQMS는 DOS 기반의 수질모델이 가지는 복잡성과 결과해석의 불편을 최소화하기 위하여 윈도우 기반의 하천모델을 운용하기 위한 시스템을 구축하고, 나아가 GIS 기반의 사용자에게 보다 편리한 모델링 환경을 제공하도록 설계되었다. 개발된 시스템의 구현 단계는 전처리와 모델링 실행, 후처리의 세단계로 구분될 수 있다. 전처리단계는 DB에 의해 모델실행을 지원하며 후처리 단계에서는 GIS를 이용하여 모델실행 결과를 그래프와 속성 자료로 확인할 수 있도록 하였다. 또한 실측자료를 활용하여 WQMS의 적용성을 평가한 결과 신뢰성이 높게 평가되었다. WQMS는 기존 DOS 기반의 모델링의 복잡성을 제거하고 정도 높은 수질분석을 수행하므로서 효율적인 유역 수질관리에 필요한 기본자료를 제공할 것으로 기대된다.

  • PDF

The Impact of ESG Activities on the Corporate Performance : Focused on Logistics Companies (ESG 활동이 기업성과에 미치는 영향: 물류기업을 중심으로)

  • Kim, Young-Soo
    • Journal of Korea Port Economic Association
    • /
    • v.39 no.2
    • /
    • pp.143-163
    • /
    • 2023
  • This study aims to analyze the impact of ESG activities on the corporate performance of logistics companies in Korea. To achieve this, the study examines the factors influencing the adoption and implementation of ESG activities, assesses the extent to which ESG activities enhance corporate trust and image, and empirically analyzes the effect of ESG implementation on the corporate performance of logistics companies. An online survey was conducted using Google Forms for Korean logistics companies, and a total of 463 data sets were utilized for PLS structural equation analysis using the SmartPLS 4.0 software tools. The findings of the study are as follows: Firstly, external pressure, specifically government pressure, significantly influences environmental responsibility activities, while investor pressure significantly affects social responsibility activities and governance responsibility activities. Additionally, internal management pressures significantly impact environmental responsibility activities, and employees have a significant influence on all ESG responsibility activities. Secondly, environmental responsibility activities positively affect corporate image, whereas social and governance responsibility activities influence trust and corporate image. Thirdly, trust and corporate image demonstrate significant effects on both financial and non-financial performance. Fourthly, trust significantly mediates the relationship between social responsibility, governance responsibility, and non-financial performance, while image mediates the connection between ESG responsibility and both financial and non-financial performance. The contribution of this study lies in providing practical insights for logistics companies to actively promote ESG activities, thereby establishing a reputation for being environmentally, socially, and governance responsible and gaining customer trust. By doing so, this study aims to raise awareness of the importance of ESG activities in the logistics industry and help companies recognize their significance for sustainable management

A Study of minimization of Playback Loss Time on IP-TV Platform based on TIT (TIT 기반에 IP-TV 플랫폼의 재생 소실 시간 최소화에 관한 연구)

  • Sso, Sang-Jin;Jin, Hyun-Joon;Park, Noh-Kyung
    • Journal of Internet Computing and Services
    • /
    • v.8 no.3
    • /
    • pp.1-7
    • /
    • 2007
  • Since the DirectTV started its digital broadcasting services in 1994 for the first time in the U.S., digital broadcasting widened its services in many areas. In korea, TIT(Transport Information Technology) based IP-TV services have been provided in Saemaeul trains and some sections of subway trains. But the software systems for the service performed in alternated fashions and suffered from many problems such as suspension, memory leaking and overflow. These problems increased playback loss time and resulted in bad reliabilities. In this paper, a software TIT monitor is designed and implemented for the TIT system in physically poor environments. The designed system formalized monitoring time intervals for effective monitoring. Through the real experiments, playback time is improved in 14% comparing to existing system.

  • PDF