• Title/Summary/Keyword: Single Sign-On

Search Result 197, Processing Time 0.025 seconds

Trustworthy Mutual Attestation Protocol for Local True Single Sign-On System: Proof of Concept and Performance Evaluation

  • Khattak, Zubair Ahmad;Manan, Jamalul-Lail Ab;Sulaiman, Suziah
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.6 no.9
    • /
    • pp.2405-2423
    • /
    • 2012
  • In a traditional Single Sign-On (SSO) scheme, the user and the Service Providers (SPs) have given their trust to the Identity Provider (IdP) or Authentication Service Provider (ASP) for the authentication and correct assertion. However, we still need a better solution for the local/native true SSO to gain user confidence, whereby the trusted entity must play the role of the ASP between distinct SPs. This technical gap has been filled by Trusted Computing (TC), where the remote attestation approach introduced by the Trusted Computing Group (TCG) is to attest whether the remote platform integrity is indeed trusted or not. In this paper, we demonstrate a Trustworthy Mutual Attestation (TMutualA) protocol as a proof of concept implementation for a local true SSO using the Integrity Measurement Architecture (IMA) with the Trusted Platform Module (TPM). In our proposed protocol, firstly, the user and SP platform integrity are checked (i.e., hardware and software integrity state verification) before allowing access to a protected resource sited at the SP and releasing a user authentication token to the SP. We evaluated the performance of the proposed TMutualA protocol, in particular, the client and server attestation time and the round trip of the mutual attestation time.

Grid 보안

  • Lee, Jae-Gwang
    • Journal of Scientific & Technological Knowledge Infrastructure
    • /
    • s.8
    • /
    • pp.78-84
    • /
    • 2002
  • 그리드 환경에서 사용자는 각 시스템을 사용하는데 있어서 하나의 사이트에 한번 로그인을 한 후에 다른 그리드 상의 지원에 접근할 때 추가적인 인증 과정을 거치지 않는다는 단일 인증(Single Sign on)과 같은 인증서비스, 실제로 그 사용자가 해당 시스템을 사용할 수 있는지에 대한 권한에 관련된 접근제어(Access Control) 서비스 등과 같은 보안문제에 대한 기반이 뒷받침되어야 효과적이고 안전하게 수행될 수 있을 것이다.

  • PDF

Design of a Floating Point Multiplier for IEEE 754 Single-Precision Operations (IEEE 754 단정도 부동 소수점 연산용 곱셈기 설계)

  • Lee, Ju-Hun;Chung, Tae-Sang
    • Proceedings of the KIEE Conference
    • /
    • 1999.11c
    • /
    • pp.778-780
    • /
    • 1999
  • Arithmetic unit speed depends strongly on the algorithms employed to realize the basic arithmetic operations.(add, subtract multiply, and divide) and on the logic design. Recent advances in VLSI have increased the feasibility of hardware implementation of floating point arithmetic units and microprocessors require a powerful floating-point processing unit as a standard option. This paper describes the design of floating-point multiplier for IEEE 754-1985 Single-Precision operation. Booth encoding algorithm method to reduce partial products and a Wallace tree of 4-2 CSA is adopted in fraction multiplication part to generate the $32{\times}32$ single-precision product. New scheme of rounding and sticky-bit generation is adopted to reduce area and timing. Also there is a true sign generator in this design. This multiplier have been implemented in a ALTERA FLEX EPF10K70RC240-4.

  • PDF

Surface Conductance Modulation of Single-Walled Carbon Nanotubes and Effects on Dielectrophoresis (단일벽 탄소나노튜브의 표면 전도도 조절 및 유전영동에 대한 영향)

  • Hong Seung-hyun;Jung Se-hun;Kim Young-jin;Choi Jae-bong;Baik Seunghyun
    • Transactions of the Korean Society of Mechanical Engineers A
    • /
    • v.30 no.2 s.245
    • /
    • pp.179-186
    • /
    • 2006
  • Dielectrophoresis has received considerable attention for separating nanotubes according to electronic types. Here we examine the effects of surface conductivity of semiconducting single-walled carbon nanotubes (SWNT), induced by ionic surfactants, on the sign of dielectrophoretic force. The crossover frequency of semiconducting SWNT increases rapidly as the conductivity ratio between the particle and medium increases, leading to an incomplete separation of ionic surfactant suspended SWNT at an electric field frequency of 10 MHz. The surface charge of SWNT is neutralized by an equimolar mixture of anionic surfactant sodium dodecyl sulfate (SDS) and cationic surfactant cetyltrimenthylammonium bromide (CTAB), resulting in negative dielectrophoresis of semiconducting species at 10 MHz. A comparative Raman spectroscopy study shows a nearly complete separation of metallic SWNT.

Study on the Anti-allergic Effect of Armeniacae Semen Herbal Acupuncture Solution (행인약침(杏仁藥鍼)이 항알레르기에 미치는 영향)

  • Kim, Yu-Seung;Song, Choon-Ho
    • Korean Journal of Acupuncture
    • /
    • v.24 no.4
    • /
    • pp.151-162
    • /
    • 2007
  • Objectives : The purpose of this study was to examine the anti-allergic effect in vivo, and to observe single toxicity in mice of Armeniacae Semen herbal acupuncture solution (ASHA). Methods : We investigated anti DNP IgE-mediated passive cutaneous anaphylaxis in rodents and compound 48/80-induced active systemic anaphylatic shock in mice after treatment at both BL13 with ASHA of 25 ${\mu}{\ell}$(mice) or 50 ${\mu}{\ell}$(rats) 3 times for 5 days. To ascertain safety and toxicity of ASHA, we examined single toxicity test. In single test, three groups were treated with different dosages of ASHA (ASHA250, ASHA500 and ASHA1000) according to on Korean Food and Drug Administration, respectively. We observed attentively motality, abnormal clinical sign, body weight change, and organ weight of mice after ASHA treatment. Results : ASHA inhibited passive cutaneous anaphylaxis and active systemic anaphylatic shock by oral administration. During toxicity experiment period, there was no difference in body weight change, and organ weight among different dose groups. Death were not found in single test i.p. group. (ASHA250, ASHA500 and ASHA1000). Several individuals of single test i.p. group were observed yellow brown discharge around anus in early period after administration. Conclusions : These results indicate that ASHA have inhibition effects on passive cutaneous anaphylaxis and active systemic anaphylatic shock, and suggest that has some toxicity in high dosage.

  • PDF

Remote Integrated Server Management System Based on PKI (PKI를 이용한 원격 통합 서버 관리 시스템)

  • 김지호;박세현;송오영
    • Proceedings of the Korea Institutes of Information Security and Cryptology Conference
    • /
    • 2002.11a
    • /
    • pp.280-283
    • /
    • 2002
  • 본 논문에서는 기존 서버 원격관리 시스템이 안고있던 보안상의 문제점을 최근에 보안 인프라로써 각광을 받고 있는 PKI(Public Key Infrastructure)를 사용한 원격 통합 서버관리 시스템을 제안하고자 한다. 통합 인증서버는 관리자의 인증을 SCVP를 사용해서 검증하며, SSL(Secure Socket Layer)을 통해서 데이터의 기밀성을 보장한다. 또한 제안된 시스템은 관리자가 다양한 종류의 플랫폼과 운영체제를 한번의 인증과정으로 원격에서 통합 관리가 가능한 SSO(Single-Sign On) 시스템이다.

  • PDF

Design of User Management System for e-Logistics System Based on ebXML (ebXML 기반 e-Logistics 시스템의 사용자 관리 시스템 설계)

  • 채정숙;김영희;이용준
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2003.04a
    • /
    • pp.725-727
    • /
    • 2003
  • 사용자 관리 시스템은 single sign on 개념의 통합인증시스템으로 처음 1회 인증으로 이미 정의된 업무 규칙에 따리 부여된 권한으로 시스템에 접근하게 하는 모듈로써, 시스템에 대한 사용자들의 시스템 접근을 편리하게 해 줄 뿐 아니라 정보를 보호하고 시스템의 안정성을 극대화 한다. 본 논문에서는 e-Logistics 통합 플랫폼의 서브 시스템(or 모듈)별로 접근권한체계를 DAC(Discretionary Access Control) 기반으로 통합 관리하는 사용자 관리 시스템을 제시함으로써 효율적인 시스템의 접근 권한을 관리하는 것을 목적으로 한다.

  • PDF

Design of SAML Authority System based on Web Service (웹 서비스 기반의 SAML 인증 시스템의 설계)

  • 송준홍;성백호;차석일;김현희;신동일;신동규
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2002.10c
    • /
    • pp.565-567
    • /
    • 2002
  • SAML(Security Assertion Markup Language)은 웹 서비스 환경에 최적화된 인중과 권한 부여를 표준적이면서도 확장성 있는 구조를 제공하는 공개된 표준이다. ebXML과 같은 공개된 XML 기반 거래 프레임워크에 SAML을 적용함으로써 기업 간 협력형 비즈니스 모델 내어서 문제가 되었던 550(Single Sign-on)를 위한 사용자 관리 및 인증의 부담을 최소화 할 수 있다 본 연구에서는 SAML에 대한 기술 분석과 함께 ebXML 및 웹 서비스 비즈니스 트랜잭션 내에서 적용 방안을 논의하고 원 서비스 모델 기반의 SAML 인증 시스템을 제시한다.

  • PDF

Operation of biofilters with different packing material (담체 변화에 따른 Labscale 바이오 필터의 성능 실험)

  • D. Cho;Kwon, Sung-Hyun
    • Proceedings of the KAIS Fall Conference
    • /
    • 2003.06a
    • /
    • pp.331-333
    • /
    • 2003
  • The low-pH biofiltration system in laboratory experiments demonstrate defective performance for treating H2S. When leachate pH was in the range of 1.5 to 4, the biofilters in three different media removed H2S wi th efficiencies greater than 99% while it was treated as a single contaminant. The posibility of using a single-stage low pH biofilter depends on its performance in treating VOCs. During Phase 2, a single-stage biofilter was effective for treating mixtures of H2S and toluene with toluene concentrations below 20ppm and leachate pH between 2 and 3.5. Biofiltration of xylene was ineffective when pH was lower than 1.5. The treatment system acclimated most slowly to benzene, and treatment of benzene was apparently subject to some competive inhibition from xylene and toluene. However. co-treatment was possible after some acclimation time. Xylene was not easily treated, with higher elimination capacities and no sign of competitive inhibition.

  • PDF