• Title/Summary/Keyword: IP-SEC

Search Result 43, Processing Time 0.025 seconds

Analysis and Countermeasure of Threats using SIP Vulnerabilities on VoIP Network (VoIP 망에서 SIP 취약점을 이용한 위협의 분석과 대응)

  • Kim, Mu-Sung;Mun, Gil-Jong;Yang, Seung Ho;Noh, Bong-Nam;Kim, Yong-Min
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2010.11a
    • /
    • pp.1112-1115
    • /
    • 2010
  • VoIP를 위한 개방형 규약 중 SIP는 IETF에서 정의한 시그널링 규약으로 IP 네트워크에서 음성, 영상의 호와 같은 멀티미디어 통신 세션을 제어하기 위해 널리 사용한다. 공격자는 SIP의 취약점을 이용한 전화번호 스캐닝, 사용자 암호를 알아내기 위한 사전공격, 콜 플러딩 공격을 통해 VoIP 서비스 정보를 절취하거나 이용을 방해 할 수 있다. 본 논문에서는 VoIP 환경의 SIP 스캐닝, 콜 플러딩, 그리고 무차별 대입 공격을 분석하고 대응방안을 제시한다.

A Design of Authentication/Security Processor IP for Wireless USB (무선 USB 인증/보안용 프로세서 IP 설계)

  • Yang, Hyun-Chang;Shin, Kyung-Wook
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.12 no.11
    • /
    • pp.2031-2038
    • /
    • 2008
  • A small-area and high-speed authentication/security processor (WUSB_Sec) IP is designed, which performs the 4-way handshake protocol for authentication between host and device, and data encryption/decryption of wireless USB system. The PRF-256 and PRF-64 are implemented by CCM (Counter mode with CBC-MAC) operation, and the CCM is designed with two AES (Advanced Encryption Standard) encryption coles working concurrently for parallel processing of CBC mode and CTR mode operations. The AES core that is an essential block of the WUSB_Sec processor is designed by applying composite field arithmetic on AF$(((2^2)^2)^2)$. Also, S-Box sharing between SubByte block and key scheduler block reduces the gate count by 10%. The designed WUSB_Sec processor has 25,000 gates and the estimated throughput rate is about 480Mbps at 120MHz clock frequency.

Adaptive Playout Buffer Control Method for Improvement of VoIP Speech Quality (VoIP 통화품질 개선을 위한 적응 재생 버퍼 제어 기법)

  • Kang, Jin-Ah;Ko, Sung-Taek;Lim, Jea-Yun
    • Proceedings of the Korea Contents Association Conference
    • /
    • 2006.11a
    • /
    • pp.75-79
    • /
    • 2006
  • In a VoIP(Voice over IP) system which support the realtime speech service, speech quality is deteriorated by the delay, the jitter, the loss, and the reversed packet order. In this thesis, APBC for receiver site is proposed, which compensate the jitter by the adaptive playout algorithm and conceal the packet loss, and align the packet order. Also, a VoIP application system is implemented, and the performance of APBC is verified on the implemented system by measuring the processing speed and the speech quality. From the result, processing speed is 257$\mu$sec, which is fast enough to deal with packet being received in realtime. Also, the speech quality by MOS(Mean Opinion Score) is improved as 18 percent compared with algorithm of fixed playout delay.

  • PDF

TRANSIT OF THE INTERPLANETARY SHOCKS ASSOCIATED WITH TYPE II RADIO BURSTS WITHIN 1AU (Type II 전파폭발이 관측된 행성간 충격파의 1AU 내에서의 전파 과정)

  • Oh, Su-Yeon;Yi, Yu;Kim, Yong-Ha
    • Journal of Astronomy and Space Sciences
    • /
    • v.24 no.3
    • /
    • pp.219-226
    • /
    • 2007
  • Among the interplanetary shock (IP shock)s observed by ACE spacecraft at 1AU during 1997 to 2000, we have selected 31 IP shocks which had triggered the interplanetary type II radio bursts detected by the WIND spacecraft while those shocks were leaving the Sun. We compared the observed IP shock propagation speeds and the IP shock transit speeds estimated by time difference between the interplanetary type II radio burst detection and the IP shock observation. Then, we found that the mean acceleration of the IP shocks between the Sun and the Earth is about $-1.02m/sec^2$, which means the deceleration contrary to the positive acceleration predicted by Parker solar wind model. It is also verified that the acceleration of the IP shock does not show any linear correlation with the shock propagation speed and the Mach number of the IP shock.

Role and Properties of Rhythm in French Intonation

  • Yuh, Hea-Ok;Lee, Eun-Yung
    • Speech Sciences
    • /
    • v.12 no.1
    • /
    • pp.107-119
    • /
    • 2005
  • The current study considers that the distinctive acoustic properties and variations in the closed plateau are realized by four different pitch accents(/Hi*_ H*/ or /Hi*_$h*_f$ for an emphatic phrase and /hi*_ H*/ for a neutral phrase) in an intermediate phrase in the French intonational structure. Thus, an attempt is made to define the acoustic property of the CP in the ip according to the duration time and pitch range, while different combinations of the four pitch accents of the CP are used to explain the way a speaker will highlight. The duration time of the CP was measured at about 0.67 sec. for males and 0.75 sec. for females. The duration properties of the plateau in the CP were found to control the pitch range based on two different prominent pitch accents, which appeared in more than two APs. Therefore, the ip was identified as having a hierarchical level in the French intonational structure, along with the AP and IP. In addition, the CP in the ip was used as a specific location to explain the pragmatic meaning of the rhythm using the two acoustic factors and different combinations of the four pitch accents.

  • PDF

Implementation of a Secure VoIP System based on SIP (SIP 기반의 VoIP 보안 시스템 구현)

  • Choi, Jae-Deok;Jung, Tae-Woon;Jung, Sou-Hwan;Kim, Young-Han
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.29 no.9B
    • /
    • pp.799-807
    • /
    • 2004
  • In this paper, a security mechanism for a VoIP system based on SIP was implemented. This was satisfied sec security requirement of RFC 3261. The SIP standard proposes a HTTP digest authentication for user authentication mechanism, TLS for hop-by-hop security and S/MIME for end-to-end security. SRTP draft was implemented for media security. We also analyzed security of proposed SIP standard.

Design of RTP/UDP/IP Header Compression Protocol in Wired Networks (유선망에서의 RTP/UDP/IP 헤더 압축 설계)

  • Kim Min-Yeong;Khongorzul D.;Shinn Byung-Cheol;Lee Insung
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.9 no.8
    • /
    • pp.1696-1702
    • /
    • 2005
  • Real Time Transport Protocol (RTP) is the Internet standard protocol for transport of real time data audio/video IP Telephony, Multimedia Seivece. In case of 8kbps voice codec, the size of packet per data is 20bytes and become more large to minimal 40bytes with adding each layer's header in RTP/UDP/IP. To solve this problem, various header compression skill were suggested on point-to-point networks. But it compress even IP header and cannot be suitable to apply to end-to-end network Thus, We will renew header compression protocol to apply wired router-based network.

The IPv6 Router Design on Embedded Linux (임베디드 리눅스를 이용한 IPv6 라우터의 설계에 관한 연구)

  • 류재훈;김정태;류광렬
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2003.10a
    • /
    • pp.243-246
    • /
    • 2003
  • The design of router that converts IP packets from IPv4 network to IPv6 network using embedded Linux toolkit based on processor is presented. As an address transition platform, IPv6 module is transplanted to Linux using processor and the experiment was done with IPv4 and IPv6. In order to build the test network, it is constructed with Tunneling mechanism of IPv4 and IPv6 network. The packet value is obtained about 2$\mu$sec on average a 2 hops on the ICMP ping6.

  • PDF

효율적 센서 데이터 수집 전략과 비정상 데이터 검출에 관한 연구

  • Shon Tae-Shik;Choi Wook
    • Review of KIISC
    • /
    • v.16 no.4
    • /
    • pp.69-76
    • /
    • 2006
  • 센서 네트워크는 네트워크 특성상 근본적으로 기존의 네트워크와 다른 많은 제약 사항을 가지고 있다. 이러한 제약사항으로는 대량의 센서를 위한 비용 문제, 센서 자체의 물리적 취약성 문제 그리고 센서가 취합하는 데이터의 중요도에 따른 보안성 문제 등이 제기될 수 있다. 특히, 본 논문에서는 다양한 센서 네트워크의 기술 이슈 중에서 센서 네트워크의 특정 애플리케이션 지향적 정보 습득 특성에 초점을 맞추었다. 이때 센서 네트워크에서 빼놓을 수 없는 전력 소비 문제가 함께 고려된 센서 네트워크의 효율적인 데이터 수집을 위한 클러스터 기반 지연 적응적 전략과 커버리지 적응적 전략을 소개하였다. 또한 이러한 데이터 습득 과정에서 발생할 수 있는 이상 데이터에 대한 검출 문제를 제시하고 그 대응방안으로서 K-means clustering을 사용한 비교사 학습 기반 방식을 제하였다.

Performance Analysis of Forwarding Engine in MPLS Network (MPLS 망에서의 포워딩 엔진에 대한 성능 분석)

  • Lee, Jae-Seop;Ryu, Ho-Young;Im, Jun-Mook;Suh, Jae-Joon
    • IE interfaces
    • /
    • v.14 no.3
    • /
    • pp.263-271
    • /
    • 2001
  • MPLS LER is located at the boundary of MPLS domain as an ingress or an egress router and plays a role in connecting with the existing Internet. Among the components of the MPLS LER, forwarding engine(FE) is a key device which assigns a label to an IP packet by analyzing the destination address of its header in order to enter the MPLS domain, or restructures the cells from MPLS domain into IP packet by reversely processing. In this paper, we investigate the design of FE by analyzing the traffic performance of its components and estimate the IP packet processing capacity of a FE using queueing model and simulation. It is found that the maximum IP packet processing capacity of the Forwarding Engine is about 150,000 packets/sec.

  • PDF