• Title/Summary/Keyword: API Standard

Search Result 212, Processing Time 0.031 seconds

A Study on FIDO UAF Federated Authentication Using JWT Token in Various Devices (다양한 장치에서 JWT 토큰을 이용한 FIDO UAF 연계 인증 연구)

  • Kim, HyeongGyeom;Kim, KiCheon
    • Journal of Korea Society of Digital Industry and Information Management
    • /
    • v.16 no.4
    • /
    • pp.43-53
    • /
    • 2020
  • There are three standards for FIDO1 authentication technology: Universal Second Factor (U2F), Universal Authentication Framework (UAF), and Client to Authenticator Protocols (CTAP). FIDO2 refers to the WebAuthn standard established by W3C for the creation and use of a certificate in a web application that complements the existing CTAP. In Korea, the FIDO certified market is dominated by UAF, which deals with standards for smartphone (Android, iOS) apps owned by the majority of the people. As the market requires certification through FIDO on PCs, FIDO Alliance and W3C established standards that can be certified on the platform-independent Web and published 『Web Authentication: An API for Accessing Public Key Credentials Level 1』 on March 4, 2019. Most PC do not contain biometrics, so they are not being utilized contrary to expectations. In this paper, we intend to present a model that allows login in PC environment through biometric recognition of smartphone and FIDO UAF authentication. We propose a model in which a user requests login from a PC and performs FIDO authentication on a smartphone, and authentication is completed on the PC without any other user's additional gesture.

Development of real-time monitoring web BBS and the alerts service using mobile web (실시간 웹 게시판 모니터링 및 모바일웹을 이용한 알람 서비스 개발)

  • Kim, Jong-Keun;Sim, Kun-Ho;Lee, Yo-Seb;Lim, Young-Hwan
    • Journal of Digital Contents Society
    • /
    • v.13 no.1
    • /
    • pp.1-11
    • /
    • 2012
  • The BBS of Web Site is a space of informational communication to share information. At the moment, countless information is shared through various kinds of BBS. The shared information through the Web BBS can be gains to someone and losses to the other. Thus, for a long time, there have been many researches about technologies, which monitor information uploaded to Web BBS in real-time and inform the results to subjects. For BBS monitoring, existing methods have utilized direct approaches to DB or open API. Also, e-mail addresses have been utilized to inform results to subjects. However, there are two main problems for these methods. The one is a problem on closed BBS, which cannot be accessed, and the other is impossibility of supporting real-time alarm to e-mail. Especially, the real-time support for services, such as monitoring, is extremely important, since the main purpose of monitoring is based on the counter action for the result. The mobile Web has a merit to be accessed in anywhere, so that it is quite suitable for services requiring real-time support. However, the real-time support of mobile device has not been utilized enough, because each mobile phone has different standards of contents so that the contents should be pre-created. This paper suggests a technology that overcomes pitfalls of mobile Web while it is out of standard, and shows how the effect can be maximized through services such as monitoring, which requires the real-time support.

Isolation of Siderophore-producing Pseudomonas fluorescens GL7 and Its Biocontrol Activity against Root-rot Disease (Siderophore 생산성 생물방제균 Pseudomonas fluorescens GL7의 선발 및 식물근부병의 방제)

  • 이정목;임호성;장태현;김상달
    • Microbiology and Biotechnology Letters
    • /
    • v.27 no.6
    • /
    • pp.427-432
    • /
    • 1999
  • For the development of a multifunctional biocontrol agent, the siderophore-producing strain GL7 was isolated from a rhizosphere on chrome azurol S agar. The GL7 was identified as a strain of Pseudomonas fluorescents on the basis of their reactions to standard physicochemcial tests from Bergey's manual, API diagnostic test, and fatty acid analysis. P. fluorescents GL7 considerably inhibited spore germination and hyphal growth of phytopathogenic fungus Funsarium solani in a dual culture. In pot trials of bean with P. fluorescens GL7, the disease incidence was significantly reduced down to 5% from 70% of incidence in the untreated control. P. fluorescens GL7 also enhanced plant growth to nearly 1.5 times than that of the untreated control, promoting elongation and development of the roots. These results suggest that the plant growth-promoting P. fluorescens GL7 can play an important role in the biological control of soil-borne plant disease in a rhizosphere.

  • PDF

Study on implementation of Secure HTML5 Local Storage (안전한 HTML5 로컬스토리지 구현에 대한 연구)

  • Myeong, Hee-Won;Paik, Jung-Ha;Lee, Dong-Hoon
    • Journal of Internet Computing and Services
    • /
    • v.13 no.4
    • /
    • pp.83-93
    • /
    • 2012
  • HTML5 has developed not to have browser dependancy considering interoperability as same as maintaining compatability with lower versions of HTML. HTML5, the newest web standardization is on going of being structured. Along with the smart phone boom, HTML5 is spotlighted because it can be applied to cross platforms in mobile web environments. Specially the local Storage that has been listed in new features in HTML5 supports offline function for web application that enables web application to be run even when the mobile is not connected to 3G or wifi. With Local storage, development of server-independent web application can be possible. However Local storage stores plaintext data in it without applying any security measure and this makes the plaintext data dangerous to security threats that are already exist in other client side storages like Cookie. In the paper we propose secure Local storage methods to offer a safe way to store and retrieve data in Local storage guaranteeing its performance. Suggested functions in this paper follow localStorage standard API and use a module that provide cryptographic function. We also prove the efficiency of suggested secure Local storage based on its performance evaluation with implementation.

A Study on the Construction of Moving Route Information Sharing System of COVID-19 Confirmed Cases

  • Kim, Byungkyu;You, Beom-Jong;Shim, Hyoung-Seop
    • Journal of the Korea Society of Computer and Information
    • /
    • v.25 no.12
    • /
    • pp.155-163
    • /
    • 2020
  • This study developed a system that can collect, manage, and utilize the travel routes of individuals who tested positive for coronavirus disease 2019 (COVID-19) based on the data standardization and quality management principles and presented the analysis data collected from the existing system. Unlike many other countries in the world, Korea demonstrated a rapid response by conducting epidemiological investigations. Further, the local governments have actively shared the travel routes of individuals who tested positive for COVID-19 to facilitate proactive prevention of the infectious disease per the Infectious Disease Control and Prevention Law. However, currently, there is no standard protocol for the local governments to share the information, thus complicating the process of sharing, managing, and utilizing the collected data. Therefore, this study developed a system that can facilitate sharing of the travel routes of individuals who tested positive for COVID-19 by establishing database construction procedures and using the travel route of COVID-19 patients as per the Disaster & Safety Information Sharing Platform and developing a data processing guideline, a data entry system with default templates, and Open API. Although this sharing system was designed to communicate the travel routes of COVID-19 patients, it can also be utilized in case of other infectious diseases. Therefore, it can be used as a response strategy for future outbreaks of infectious diseases.

Extending the OMA DRM Framework for Supporting an Active Content (능동형 콘텐츠 지원을 위한 OMA DRM 프레임워크의 확장)

  • Kim, Hoo-Jong;Jung, Eun-Su;Lim, Jae-Bong
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.16 no.5
    • /
    • pp.93-106
    • /
    • 2006
  • With the rapid growth of the wireless Internet communication, a new generation of mobile devices have made possible the broad distribution of mobile digital contents, such as image, music, video, games and applications over the wireless Internet. Mobile devices are rapidly becoming the major means to extend communication channels without copy Protection, usage rule controlling and authentication. As a result, mobile digital contents may be illegally altered, copied and distributed among unauthorized mobile devices. In this paper, we take a look at Open Mobile Alliance (OMA) DRM v2.0 in general, its purpose and function. The OMA is uniquely the focal point for development of an open standard for mobile DRM. Next we introduces features for an active content and illustrates the difference between an active content and an inactive content. Enabling fast rendering of an active content, we propose an OMA-based DRM framework. This framework include the following: 1) Extending DCF Header for supporting an selective encryption, 2) Content encryption key management, 3) Rendering API for an active content. Experimental results show that the proposed framework is able to render an active content fast enough to satisfy Quality of Experience. %is framework has been proposed for a mobile device environment, but it is also applicable to other devices, such as portable media players, set-top boxes, or personal computer.

CFD-based Fire Accident Impact Analysis in Clean Room for semiconductor PR Process (반도체 PR 공정의 클린룸내 CFD 기반 화재 사고 영향 분석)

  • Chun, Kwang-Su;Yi, Jinseok;Park, Myeongnam
    • Journal of the Korean Institute of Gas
    • /
    • v.25 no.6
    • /
    • pp.35-44
    • /
    • 2021
  • The PR (Photo Resist) process in the semiconductor process is a process that uses a mixture of flammable substances. Due to the process equipment is installed in a clean room and when flammable substances leak, there is a high risk of suffocation, fire, and explosion. It is necessary to analyze the impact of accidents that may occur during operation and to evaluate whether the safety of workers can be guaranteed. In this study, the value of radiant heat and temperature change at the monitor point set up virtual inside the clean room was confirmed through CFD simulation of 10 leak and fire scenarios using the FLACS CFD - Fire Module. A fire that occurs inside a clean room transfers high radiant heat to the inter-story structure, but its scope is quite limited, and it is unlikely that it will collapse in a single fire accident. There was no scenario in which two stairs leading to the exit were exposed to high radiant heat at the same time due to a fire accident, therefore workers were able to escape in case of a fire. In addition, it was confirmed that the level of radiant heat and temperature rise rapidly decreased as they moved downstairs. According to the API 520 standard, workers exposed to 6.31 kW/m2 of radiant heat that workers can withstand for 30 seconds were confirmed that it was possible to sufficiently escape from the inside.

Trustworthy AI Framework for Malware Response (악성코드 대응을 위한 신뢰할 수 있는 AI 프레임워크)

  • Shin, Kyounga;Lee, Yunho;Bae, ByeongJu;Lee, Soohang;Hong, Heeju;Choi, Youngjin;Lee, Sangjin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.32 no.5
    • /
    • pp.1019-1034
    • /
    • 2022
  • Malware attacks become more prevalent in the hyper-connected society of the 4th industrial revolution. To respond to such malware, automation of malware detection using artificial intelligence technology is attracting attention as a new alternative. However, using artificial intelligence without collateral for its reliability poses greater risks and side effects. The EU and the United States are seeking ways to secure the reliability of artificial intelligence, and the government announced a reliable strategy for realizing artificial intelligence in 2021. The government's AI reliability has five attributes: Safety, Explainability, Transparency, Robustness and Fairness. We develop four elements of safety, explainable, transparent, and fairness, excluding robustness in the malware detection model. In particular, we demonstrated stable generalization performance, which is model accuracy, through the verification of external agencies, and developed focusing on explainability including transparency. The artificial intelligence model, of which learning is determined by changing data, requires life cycle management. As a result, demand for the MLops framework is increasing, which integrates data, model development, and service operations. EXE-executable malware and documented malware response services become data collector as well as service operation at the same time, and connect with data pipelines which obtain information for labeling and purification through external APIs. We have facilitated other security service associations or infrastructure scaling using cloud SaaS and standard APIs.

A Study of the Transition Process in Presidential Electronic Records Transfer and Improvement Measures : Focused on the Electronic Records of the 19th President Moon Jae-in's Administration (대통령 전자기록물의 이관방식 변천과 개선방안 연구 19대 문재인 정부 대통령 전자기록물을 중심으로 )

  • Yun, Jeonghun
    • The Korean Journal of Archival Studies
    • /
    • no.75
    • /
    • pp.41-89
    • /
    • 2023
  • Since the enactment of the Act on the Management of Presidential Archives in 2007, the cases of electronic records transfer in the 16th President Roh Moo-hyun's administration have played the role of an advance guard in managing public records and served as a test bed for new electronic records management. When transferring the electronic records of the 19th President Moon Jae-in's administration, the electronic records transfer method of President Roh's administration was inherited, while several innovative attempts were made. For instance, the Presidential Archives have for the first time converted the electronic documents from institutions advising the President into a long-term preservation package and transferred them online. In addition, considering the characteristics of the data, the administrative information dataset of the Presidential record creation institutions was transferred to the SIARD standard. Furthermore, the Presidential Archives had websites transferred in the form of OVF as a pilot test and collected social media directly through the API. Thus this study investigated the transition process of the presidential electronic records transfers from the 16th President Roh Moo-hyun's administration to the 19th President Moon Jae-in's. In addition, major achievements and issues were analyzed centering on the transfer method by type of electronic records during President Moon Jae-in's administration, and future improvement plans were presented.

Comparison of the Standard Culture Method and Real-time PCR for the Detection of Vibrio parahaemolyticus in Seafoods and Vegetables (해산식품과 채소에서 Vibrio parahaemolyticus 검출을 위한 배지배양법과 real-time PCR의 비교검증)

  • Chon, Jung-Whan;Hyeon, Ji-Yeon;Hwang, In-Gyun;Kwak, Hyo-Sun;Han, Jeong-A;Chung, Yun-Hee;Song, Kwang-Young;Seo, Kun-Ho
    • Korean Journal of Food Science and Technology
    • /
    • v.42 no.3
    • /
    • pp.355-360
    • /
    • 2010
  • Vibrio parahaemolyticus (V. parahaemolyticus), which is commonly found in raw seafood, causes gastroenteritis in humans. Rapid and effective methods have been developed as culture methods require up to 5-7 days. In this study, real-time PCR was compared with the standard culture method for detecting V. parahaemolyticus in seafood and radish sprout samples. Five hundred grams of the samples were artificially contaminated with V. parahaemolyticus then divided into 20 samples. The samples were incubated in alkaline peptone water and then streaked onto thiosulfate-citrate-bile saltssucrose agar. Biochemical tests for suspicious colonies were performed using the API 20NE strip. In parallel, real-time PCR was performed targeting the toxR gene using the enrichment broth. The real-time PCR was sensitive in discriminating V. parahaemolyticus from other foodborne pathogens. The detection limit of the real-time PCR was $10^3\;CFU/mL$ in phosphate-buffered saline. Although the real-time PCR detected more positive samples (76 out of 180, 42%) than the culture method (66 out of 180, 37%), there was no significant statistical difference (p>0.05) between the two methods. In conclusion, real-time PCR assays could be an alternative to the standard culture method for detecting V. parahaemolyticus in seafood and radish sprouts, which has many advantages in terms of detection time, labor, and sensitivity.