Design and Implementation of a Web Application Firewall with Multi-layered Web Filter (다중 계층 웹 필터를 사용하는 웹 애플리케이션 방화벽의 설계 및 구현)
-
- Journal of the Korea Society of Computer and Information
- /
- v.14 no.12
- /
- pp.157-167
- /
- 2009
Recently, the leakage of confidential information and personal information is taking place on the Internet more frequently than ever before. Most of such online security incidents are caused by attacks on vulnerabilities in web applications developed carelessly. It is impossible to detect an attack on a web application with existing firewalls and intrusion detection systems. Besides, the signature-based detection has a limited capability in detecting new threats. Therefore, many researches concerning the method to detect attacks on web applications are employing anomaly-based detection methods that use the web traffic analysis. Much research about anomaly-based detection through the normal web traffic analysis focus on three problems - the method to accurately analyze given web traffic, system performance needed for inspecting application payload of the packet required to detect attack on application layer and the maintenance and costs of lots of network security devices newly installed. The UTM(Unified Threat Management) system, a suggested solution for the problem, had a goal of resolving all of security problems at a time, but is not being widely used due to its low efficiency and high costs. Besides, the web filter that performs one of the functions of the UTM system, can not adequately detect a variety of recent sophisticated attacks on web applications. In order to resolve such problems, studies are being carried out on the web application firewall to introduce a new network security system. As such studies focus on speeding up packet processing by depending on high-priced hardware, the costs to deploy a web application firewall are rising. In addition, the current anomaly-based detection technologies that do not take into account the characteristics of the web application is causing lots of false positives and false negatives. In order to reduce false positives and false negatives, this study suggested a realtime anomaly detection method based on the analysis of the length of parameter value contained in the web client's request. In addition, it designed and suggested a WAF(Web Application Firewall) that can be applied to a low-priced system or legacy system to process application data without the help of an exclusive hardware. Furthermore, it suggested a method to resolve sluggish performance attributed to copying packets into application area for application data processing, Consequently, this study provide to deploy an effective web application firewall at a low cost at the moment when the deployment of an additional security system was considered burdened due to lots of network security systems currently used.
This study aims to investigate changes in the demand for ship officers in response to changes in the shipping industry environment in which Maritime Autonomous Surface Ships (MASS) emerge according to the application of the fourth industrial revolution technology to ships, and it looks into changes in the skill of ship officer. It also analyzes and proposes a plan for nurturing ship officers accordingly. As a result of the degree of recognition and AHP analysis, this study suggests that a new training system is required because the current training and education system may cover the job competencies of emergency response, caution and danger navigation, general sailing, cargo handling, seaworthiness maintenance, emergency response, and ship maintenance and management, but tasks such as remote control, monitoring diagnosis, device management capability, and big data analysis require competency for unmanned and shore-based control. By evaluating the importance of change factors in the duties of ship officers in Maritime Autonomous Surface Ships, this study provides information on ship officer educational institutions' response strategies for nurturing ship officers and prioritization of resource allocation, etc. The importance of these factors was compared and evaluated to suggest changes in the duties of ship officers and methods of nurturing ship officers according to the introduction of Maritime Autonomous Surface Ships. It is expected that the findings of this study will be meaningful as it systematically derives the duties and competency factors of ship officers of Maritime Autonomous Surface Ships from a practical point of view and analyzed the perception level of each relevant expert to diagnose expert-level responses to the introduction of Maritime Autonomous Surface Ships.
This study reviewed and derived the success factors of overseas agricultural startups and studied their integrated research model. Agricultural startups and general startups have in common that poor resources and infrastructure exist from a resource-based perspective after startup, but a differentiated approach from general startups is required due to the nature of the primary industry of agriculture. In this study, we approach the company internal factors (human resources/vision/distribution network capacity/capital capacity/cultivated crops/physical resources/farming technology, etc.) and external factors (agricultural infrastructure/laws/regulations/relationship with surrounding society, etc.) We tried to build a research model that can be integrated by focusing on various existing research models, success factors, and entrepreneurship. Through this, it is intended to present an integrated model that is practically helpful to business performance to entrepreneurs, business-related persons, and researchers who need an integrated understanding of agricultural startups at home and abroad. made for purpose In this paper, a standard model was established through three types (existing agricultural startup, small and medium-sized business startup, multinational company, and comprehensive approach) according to size and characteristics for modeling agricultural startup success factors. Through this, a total of 9 success factors (agricultural management, external environment, manager/founder characteristics, corporate identity, business management, organizational culture, infrastructure, commercialization capability, and sustainable growth) were derived. The implication of this study is that the success factors of agricultural startups were comprehensively presented based on 'entrepreneurship' for various domestic and foreign agricultural startup cases. By confirming the systematic categorization, a standard model for future agricultural startup success factors was presented, and as a result, a foundation was presented for systematic research and practical effectiveness of related research in the future.
Purpose: To improve the management of a medical linear accelerator, the records of operational failures of a Varian CL2l00C over a ten year period were retrospectively analyzed. Materials and Methods: The failures were classified according to the involved functional subunits, with each class rated Into one of three levels depending on the operational conditions. The relationships between the failure rate and working ratio and between the failure rate and outside temperature were investigated. In addition, the average life time of the main part and the operating efficiency over the last 4 years were analyzed. Results: Among the recorded failures (total 587 failures), the most frequent failure was observed in the parts related with the collimation system, including the monitor chamber, which accounted for
The 3D printing technology, which started from the patent registration in 1986, was a technology that did not attract attention other than from some companies, due to the lack of awareness at the time. However, today, as expiring patents are appearing after the passage of 20 years, the price of 3D printers have decreased to the level of allowing purchase by individuals and the technology is attracting attention from industries, in addition to the general public, such as by naturally accepting 3D and to share 3D data, based on the generalization of online information exchange and improvement of computer performance. The production capability of 3D printers, which is based on digital data enabling digital transmission and revision and supplementation or production manufacturing not requiring molding, may provide a groundbreaking change to the process of manufacturing, and may attain the same effect in the character merchandise sector. Using a 3D printer is becoming a necessity in various figure merchandise productions which are in the forefront of the kidult culture that is recently gaining attention, and when predicting the demand by the industrial sites related to such character merchandise and when considering the more inexpensive price due to the expiration of patents and sharing of technology, expanding opportunities and sectors of employment and cultivating manpower that are able to engage in further creative work seems as a must, by introducing education courses cultivating manpower that can utilize 3D printers at the education field. However, there are limits in the information that can be obtained when seeking to introduce 3D printers in school education. Because the press or information media only mentions general information, such as the growth of the industrial size or prosperous future value of 3D printers, the research level of the academic world also remains at the level of organizing contents in an introductory level, such as by analyzing data on industrial size, analyzing the applicable scope in the industry, or introducing the printing technology. Such lack of information gives rise to problems at the education site. There would be no choice but to incur temporal and opportunity expenses, since the technology would only be able to be used after going through trials and errors, by first introducing the technology without examining the actual information, such as through comparing the strengths and weaknesses. In particular, if an expensive equipment introduced does not suit the features of school education, the loss costs would be significant. This research targeted general users without a technology-related basis, instead of specialists. By comparing the strengths and weaknesses and analyzing the problems and matters requiring notice upon use, pursuant to the representative technologies, instead of merely introducing the 3D printer technology as had been done previously, this research sought to explain the types of features that a 3D printer should have, in particular, when required in education relating to the development of figure merchandise as an optional cultural contents at cartoon-related departments, and sought to provide information that can be of practical help when seeking to provide education using 3D printers in the future. In the main body, the technologies were explained by making a classification based on a new perspective, such as the buttress method, types of materials, two-dimensional printing method, and three-dimensional printing method. The reason for selecting such different classification method was to easily allow mutual comparison of the practical problems upon use. In conclusion, the most suitable 3D printer was selected as the printer in the FDM method, which is comparatively cheap and requires low repair and maintenance cost and low materials expenses, although rather insufficient in the quality of outputs, and a recommendation was made, in addition, to select an entity that is supportive in providing technical support.
Gwonwu Hong Chan-yu is one of the modern and contemporary Korean scholars of Sino-Korean literature and one of the literati of his era, so is respected as a guiding light by academic descendants. Gwonwu was a teacher of his era, who experienced all the turbulence of Korean society, such as the Japanese occupation by force, the Korean War, the military dictatorship, and the struggle for democracy, and who educated and led young scholars of his time. However, academia has not payed attention to his life and achievements since his death. This paper is to examine the poetry of Gwonwu Hong Chan-yu, one of the representative modern and contemporary scholar of Sini-Korean literature, which has not yet been discussed by academia. The minimal meaning of this paper is that it is a first work based on his anthology, which has not been discussed by academia, and a first full-scale study on Gwonwu Hongchan-yu. For the reason, this paper aims at the detailed inspection of his poetic pieces recorded in his anthology. Nonetheless, despite such intentions, some limits cannot be avoided here and there in this paper for the insufficient knowledge and academic capability of this paper's writer and for the lack of academic sources. Gwonwu's poetry examined through his anthology shows the characteristic which is that his poems focus on exposing his own internal emotions. Such a characteristic says that his idea of poetic literature payed attention more to individuality, that is exposition of private emotions, than to social utility of poems. Gwonwu's such an idea of poetic literature can be generally affirmed throughout his poetry. Accordingly, Gwonwu preferred classical Chinese poems to archaistic poems, and single poems to serial poems; and avoided writing poems within social relations such as farewell-poems, bestowal-poems, and mourning-poems. When the characteristics of Gwonwu's poetic literature get summarized as such, however, some questions remain. The preferential question is whether the poems in his anthology are the whole poetry of him. Although Gwonwu's poetic pieces that the writer of this paper have checked out till now are all in his anthology, it is very much questionable whether Gwonwu's poetry can be summed up only with these poems. The next question is what is the writing method for taking joy(spice), sentiment, and full-heart into his poems if Gwonwu's poems focus on exposing his internal emotions, and if poems exposing joy and poems exposing sentiment and full-heart appear coherently in various different spaces and circumstances of writing. The final question is what are the meanings of Gwonwu's poems if his poetry checked out through his anthology directly shows either the reality carried in his poems or the reality of a time in his life. The questions listed above are thought to be resolved by the synchronizing process of stereoscopic searches both for Gwonwu as an individual and for the era of his life. Especially, spurring deeper researches toward a new direction regarding Gwonwu's poetry has an important meaning for construction of a complete modern and contemporary history of Sino-Korean literature and for procurement of continuous research on Sino-Korean literature and its history. For the reason, it is thought that more efforts of researchers are required.
The small and medium sized enterprises (hereinafter SMEs) are already at a competitive disadvantaged when compared to large companies with more abundant resources. Manufacturing SMEs not only need a lot of information needed for new product development for sustainable growth and survival, but also seek networking to overcome the limitations of resources, but they are faced with limitations due to their size limitations. In a new era in which connectivity increases the complexity and uncertainty of the business environment, SMEs are increasingly urged to find information and solve networking problems. In order to solve these problems, the government funded research institutes plays an important role and duty to solve the information asymmetry problem of SMEs. The purpose of this study is to identify the differentiating characteristics of SMEs that utilize the public information support infrastructure provided by SMEs to enhance the innovation capacity of SMEs, and how they contribute to corporate performance. We argue that we need an infrastructure for providing information support to SMEs as part of this effort to strengthen of the role of government funded institutions; in this study, we specifically identify the target of such a policy and furthermore empirically demonstrate the effects of such policy-based efforts. Our goal is to help establish the strategies for building the information supporting infrastructure. To achieve this purpose, we first classified the characteristics of SMEs that have been found to utilize the information supporting infrastructure provided by government funded institutions. This allows us to verify whether selection bias appears in the analyzed group, which helps us clarify the interpretative limits of our study results. Next, we performed mediator and moderator effect analysis for multiple variables to analyze the process through which the use of information supporting infrastructure led to an improvement in external networking capabilities and resulted in enhancing product competitiveness. This analysis helps identify the key factors we should focus on when offering indirect support to SMEs through the information supporting infrastructure, which in turn helps us more efficiently manage research related to SME supporting policies implemented by government funded institutions. The results of this study showed the following. First, SMEs that used the information supporting infrastructure were found to have a significant difference in size in comparison to domestic R&D SMEs, but on the other hand, there was no significant difference in the cluster analysis that considered various variables. Based on these findings, we confirmed that SMEs that use the information supporting infrastructure are superior in size, and had a relatively higher distribution of companies that transact to a greater degree with large companies, when compared to the SMEs composing the general group of SMEs. Also, we found that companies that already receive support from the information infrastructure have a high concentration of companies that need collaboration with government funded institution. Secondly, among the SMEs that use the information supporting infrastructure, we found that increasing external networking capabilities contributed to enhancing product competitiveness, and while this was no the effect of direct assistance, we also found that indirect contributions were made by increasing the open marketing capabilities: in other words, this was the result of an indirect-only mediator effect. Also, the number of times the company received additional support in this process through mentoring related to information utilization was found to have a mediated moderator effect on improving external networking capabilities and in turn strengthening product competitiveness. The results of this study provide several insights that will help establish policies. KISTI's information support infrastructure may lead to the conclusion that marketing is already well underway, but it intentionally supports groups that enable to achieve good performance. As a result, the government should provide clear priorities whether to support the companies in the underdevelopment or to aid better performance. Through our research, we have identified how public information infrastructure contributes to product competitiveness. Here, we can draw some policy implications. First, the public information support infrastructure should have the capability to enhance the ability to interact with or to find the expert that provides required information. Second, if the utilization of public information support (online) infrastructure is effective, it is not necessary to continuously provide informational mentoring, which is a parallel offline support. Rather, offline support such as mentoring should be used as an appropriate device for abnormal symptom monitoring. Third, it is required that SMEs should improve their ability to utilize, because the effect of enhancing networking capacity through public information support infrastructure and enhancing product competitiveness through such infrastructure appears in most types of companies rather than in specific SMEs.
The response and effect on main upland crops to potassium were discussed and summarized as follows. 1. Adequate average amounts of potash per 10a were 32kg for forage crop; 22.5kg for vegetable crops; 17.3kg for fruit trees; 13.3kg for potatoes; and 6.5kg for cereal crops. Demand of potassium fertilizer in the future will be increased by expanding the acreage of forage crops, vegetable crops and fruit trees. 2. On the average, optimum potash rates on barley, wheat, soybean, corn, white potato and sweet potato were 6.5, 6.9, 4.5, 8.1, 8.9, and 17.7kg per 10a respectively. Yield increaments per 1kg of potash per 10a were 4-5kgs on the average for cereal crops, 68kg for white potato, and 24kg for sweet potato. 3. According to the soil testing data, the exchangeable potassium in the coastal area was higher than that in the inland area and medium in the mountainous area. The exchangeable potassium per province in decreasing order is Jeju>Jeonnam>Kangweon>Kyongnam. Barley : 4. The response of barley to an adequate rate of potassium seemed to be affected more by differences in climatic conditions than to the nature of the soil. 5. The response and the adequate rate of potassium in the southern area, where the temperature is higher, were low because of more release of potassium from the soil. However, the adequate rate of phosphorus was increased due to the fixation of applied phosphorus into the soil in high temperature regions. The more nitrogen application would be required in the southern area due to its high precipitation. 6. The average response of barley to potassium was lower in the southern provinces than northern provinces. Kyongsangpukdo, a southern province, showed a relatively higher response because of the low exchangeable potassium content in the soil and the low-temperature environment in most of cultivation area. 7. Large annual variations in the response to and adequate rates of potassium on barley were noticed. In a cold year, the response of barley to potassium was 2 to 3 times higher than in a normal year. And in the year affected by moisture and drought damage, the responses to potassium was low but adequate rates was higher than cold year. 8. The content of exchangeable potassium in the soil parent materials, in increasing order was Crystalline Schist, Granite, Sedimentary and Basalt. The response of barley to potash occurred in the opposite order with the smallest response being in Crystalline Schist soil. There was a negative correlation between the response and exchangeable potassium contents but there was nearly no difference in the adequate rates of potassium. 9. Exchangeable potassium according to the mode of soil deposition was Alluvium>Residium>Old alluvium>Valley alluvium. The highest response to potash was obtained in Valley alluvium while the other s showed only small differences in responses. 10. Response and adequate rates of potassium seemed to be affected greatly by differences in soil texture. The response to potassium was higher in Sandy loam and Loam soils but the optimum rate of potassium was higher in Clay and Clay loam. Especially when excess amount of potassium was applied in Sandy loam and Loam soils the yield was decreased. 11. The application of potassium retarded the heading date by 1.7 days and increased the length of culm. the number of spikelet per plant, the 1,000 grain weight and the ratio of grain weight to straw. Soybean : 12. Average response of soybean to potassium was the lowest among other cereal crops but 28kg of grain yield was incrased by applying potash at 8kg/10a in newly reclaimed soils. 13. The response in the parent materials soil was in the order of Basalt (Jeju)>Sedimentay>Granite>Lime stone but this response has very wide variations year to year. Corn : 14. The response of corn to potassium decreased in soils where the exchangeable potassium content was high. However, the optimum rate of applied potassium was increased as the soil potassium content was increased because corn production is proportional to the content of soil potassium. 15. An interaction between the response to potassium and the level of phosphorus was noted. A higher response to potassium and higher rates of applied potassium was observed in soils contained optimum level of phosphorus. Potatoes : 16. White potato had a higher requirement for nitrogen than for potassium, which may imply that potato seems to have a higher capability of soil potassium uptake. 17. The yield of white potato was higher in Sandy loam than in Clay loam soil. Potato yields were also higher in soils where the exchangeable potassium content was high even in the same soil texture. However, the response to applied potassium was higher in Clay loam soils than in Sandy loam soils and in paddy soil than in upland soil. 18. The requirement for nitrogen and phosphorus by sweet potato was relatively low. The sweet potato yield is relatively high even under unfavorable soil conditions. A characteristics of sweet potatoes is to require higher level of potassium and to show significant responses to potassium. 19. The response of sweet potato to potassium varied according to soil texture. Higher yields were obtained in Sandy soil, which has a low exchangeable potassium content, by applying sufficient potassium. 20. When the optimum rate of potassium was applied, the yields of sweet potato in newly reclaimed soil were comparable to that in older upland soils.
The wall shear stress in the vicinity of end-to end anastomoses under steady flow conditions was measured using a flush-mounted hot-film anemometer(FMHFA) probe. The experimental measurements were in good agreement with numerical results except in flow with low Reynolds numbers. The wall shear stress increased proximal to the anastomosis in flow from the Penrose tubing (simulating an artery) to the PTFE: graft. In flow from the PTFE graft to the Penrose tubing, low wall shear stress was observed distal to the anastomosis. Abnormal distributions of wall shear stress in the vicinity of the anastomosis, resulting from the compliance mismatch between the graft and the host artery, might be an important factor of ANFH formation and the graft failure. The present study suggests a correlation between regions of the low wall shear stress and the development of anastomotic neointimal fibrous hyperplasia(ANPH) in end-to-end anastomoses. 30523 T00401030523 ^x Air pressure decay(APD) rate and ultrafiltration rate(UFR) tests were performed on new and saline rinsed dialyzers as well as those roused in patients several times. C-DAK 4000 (Cordis Dow) and CF IS-11 (Baxter Travenol) reused dialyzers obtained from the dialysis clinic were used in the present study. The new dialyzers exhibited a relatively flat APD, whereas saline rinsed and reused dialyzers showed considerable amount of decay. C-DAH dialyzers had a larger APD(11.70
The wall shear stress in the vicinity of end-to end anastomoses under steady flow conditions was measured using a flush-mounted hot-film anemometer(FMHFA) probe. The experimental measurements were in good agreement with numerical results except in flow with low Reynolds numbers. The wall shear stress increased proximal to the anastomosis in flow from the Penrose tubing (simulating an artery) to the PTFE: graft. In flow from the PTFE graft to the Penrose tubing, low wall shear stress was observed distal to the anastomosis. Abnormal distributions of wall shear stress in the vicinity of the anastomosis, resulting from the compliance mismatch between the graft and the host artery, might be an important factor of ANFH formation and the graft failure. The present study suggests a correlation between regions of the low wall shear stress and the development of anastomotic neointimal fibrous hyperplasia(ANPH) in end-to-end anastomoses. 30523 T00401030523 ^x Air pressure decay(APD) rate and ultrafiltration rate(UFR) tests were performed on new and saline rinsed dialyzers as well as those roused in patients several times. C-DAK 4000 (Cordis Dow) and CF IS-11 (Baxter Travenol) reused dialyzers obtained from the dialysis clinic were used in the present study. The new dialyzers exhibited a relatively flat APD, whereas saline rinsed and reused dialyzers showed considerable amount of decay. C-DAH dialyzers had a larger APD(11.70