• 제목/요약/키워드: key negotiation

검색결과 53건 처리시간 0.021초

인프라 클라우딩(Infra Clouding) 환경에서 자가조직 저장매체의 보안을 위한 3자간 협상 프로토콜 설계 (A 3-Party Negotiation Protocol Design for the Security of Self-Organized Storage on Infra-Clouding Environment)

  • 이병관;정은희
    • 한국멀티미디어학회논문지
    • /
    • 제14권10호
    • /
    • pp.1303-1310
    • /
    • 2011
  • 본 논문은 인프라 클라우딩 환경에서 데이터를 소유한 소유자 노드와 데이터를 보관하는 보관 노드 그리고 데이터를 검증하는 검증 노드로 구성된 자가 조직 저장 매체 보안을 위한 3자간 협상 프로토콜을 설계를 제안한다. 제안한 자가 조직 저장 매체의 보안기법은 보관 노드의 데이터 검증을 검증 노드에게 위임함으로써 데이터 검증의 효율성을 증가시키고, EC-DH 알고리즘을 이용하여 생성된 암호키와 저장 매체 내의 인증서로 보안을 강화시켰다. 또한, 자가 조직 저장 매체를 구성할 때, 3자간 인증키를 설정하여 외부적인 플러딩 공격 방지하고, 검증노드의 개수를 제한함으로써 내부적인 플러딩 공격을 방지하였다. 그리고 검증단계에서 발생할 수 있는 재전송 공격은 검증을 요청할 때마다 새롭게 생성된 Seed 값을 이용하여 자동적으로 재전송 공격을 탐지하도록 하였다.

An Exploratory Study of Cloud Service Level Agreements - State of the Art Review

  • Saravanan, K.;Rajaram, M.
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제9권3호
    • /
    • pp.843-871
    • /
    • 2015
  • Cloud computing evolve as a cost effective business model for IT companies to focus on their core business without perturbing on infrastructure related issues. Hence, major IT firms and Small & Medium Enterprises (SME) are adopting cloud services on rental basis from cloud providers. Cloud Service level agreements (SLA) act as a key liaison between consumers and providers on renting Anything as a Service (AaaS). Design of such an agreement must aim for greater profit to providers as well as assured availability of services to consumers. However in reality, cloud SLA is not satisfying the parties involved because of its inherent complex nature and issues. Also currently most of the agreements are unilateral to favour the provider. This study focuses on comprehensive, 360-degree survey on different aspects of the cloud service agreements. We detailed the life cycle of SLA based on negotiation, different types of SLA, current standards, languages & characteristics, metrics and issues involved in it. This study will help the cloud actors to understand and evaluate the agreements and to make firm decision on negotiation. The need for standardized, bilateral, semantic SLA has also been proposed.

SD를 이용한 공공 프로젝트의 지체요인 분석 (Delay Factor Analysis of Public Project Based on System Dynamics)

  • 이만형;이정민
    • 한국시스템다이내믹스연구
    • /
    • 제4권2호
    • /
    • pp.95-130
    • /
    • 2003
  • The purpose of this study is to find what causes make public projects hold off, going beyond the planned deadline and budget. Using System Dynamics(SD) and their derivative Urban Dynamics(UD) models, it intends to analyze major feedback loops based on VENSIM and to simulate them with STELLA software, all of which are interrelated with various causes of project delay. To prevent or ameliorate project delay, first of all it advises to focus on endogenous delaying factors not exogenous ones. These factors either reinforce or balance certain loops in complex causal structure, In the case example on the Cremation Building Project in Cheongju, Residents’ participation demand make negotiation put off and delayed negotiation reinforces administrative-expediency planning in order to observe a time limit, on the other hand, once building consensus, it increase both the level of planning performance and public trust. In the meantime, the real planning process used to neglect residents opinions and manage public grievance only through compensation, he a result of simulation, visible fruit of negotiation in the initial phase seems to be not satisfactory owing to funds and time consumed, but after reaching an mutual agreement among stakeholders, planning performance is effective and strategic than administrative-expediency planning viewed in both financial and time angle. It proposes to devise specific tools schematizing project implementation. In order to upgrade the quality of project management, it recommends for planners to adopt key concepts based on SD/UD diagrams and causal loops, which would contribute to enriching Planning abbots.

  • PDF

Efficient Certificateless Authenticated Asymmetric Group Key Agreement Protocol

  • Wei, Guiyi;Yang, Xianbo;Shao, Jun
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제6권12호
    • /
    • pp.3352-3365
    • /
    • 2012
  • Group key agreement (GKA) is a cryptographic primitive allowing two or more users to negotiate a shared session key over public networks. Wu et al. recently introduced the concept of asymmetric GKA that allows a group of users to negotiate a common public key, while each user only needs to hold his/her respective private key. However, Wu et al.'s protocol can not resist active attacks, such as fabrication. To solve this problem, Zhang et al. proposed an authenticated asymmetric GKA protocol, where each user is authenticated during the negotiation process, so it can resist active attacks. Whereas, Zhang et al.'s protocol needs a partially trusted certificate authority to issue certificates, which brings a heavy certificate management burden. To eliminate such cost, Zhang et al. constructed another protocol in identity-based setting. Unfortunately, it suffers from the so-called key escrow problem. In this paper, we propose the certificateless authenticated asymmetric group key agreement protocol which does not have certificate management burden and key escrow problem. Besides, our protocol achieves known-key security, unknown key-share security, key-compromise impersonation security, and key control security. Our simulation based on the pairing-based cryptography (PBC) library shows that this protocol is efficient and practical.

A Case Study on Position Descriptions for the Testing Department at CESC Limited

  • Kumari, Neeraj
    • Asian Journal of Business Environment
    • /
    • 제4권4호
    • /
    • pp.19-26
    • /
    • 2014
  • Purpose - The study is primarily aimed at framing "Position Descriptions" for some key positions in the executive cadre of the testing department of CESC Limited. Research design, data, and methodology - The questionnaire, interview, and observation methods have been used for the purpose of data collection. The position descriptions are validated by superiors belonging to the respective departments. Results - It has been found that there is overlapping of job duties and job responsibilities in the department. This overlapping is quite alarming for the organization and may even become a hurdle in the path of its progress. It can be seen as a classic case of de-layering. Conclusions - The study concludes that good communication along with interpersonal and negotiation skills are absolutely essential to facilitate the performance of the day-to-day duties of a job, including handling the union, solving IR related issues, development of the subordinates, job setting, distribution and allocation, etc. Position descriptions will help in the alignment of the employee direction, and can be a useful tool to aid the communication between management and employees.

무역분쟁(貿易紛爭)의 해결수단(解決手段)으로서 ADR활성화(活性化) 방안(方案)에 관한 연구(硏究) (A Study on the Ways to expand ADR System As a Method of International Trade Dispute Resolution)

  • 신군재
    • 무역상무연구
    • /
    • 제20권
    • /
    • pp.343-365
    • /
    • 2003
  • Dispute plays a key role in maintaining the desirable performance of trade transaction. In an effort to stay competitive in a global marketplace, the Korean companies need to become more aware of alternatives to costly and time-consuming litigation. Korean companies, therefore, should be more concerned with ADR(Alternative Dispute Resolution) system and should utilize ADR to settle their disputes effectively and efficiently. ADR encompasses all process of dispute resolution as a substitute for the traditional litigation. Generally, three kinds of ADR are available in Korea: Negotiation, mediation, and arbitration. This article investigates reasons why ADR isn't used well in Korea and suggests ways how ADR can work best in international trade disputes. To expand ADR system in international trade disputes, it is very important for both the company and the scholar to recognize the concept and usefulness of ADR system. The Korean Commercial Arbitration Board also must help both Korean companies and scholars recognize the mechanism of dispute resolution and utilize ADR system in international trade disputes.

  • PDF

분산시스템관리를 위한 관리 프로토콜에 관한연구 (A Study On Management Protocol For Distributed Systems Management)

  • 박승섭
    • 한국항만학회지
    • /
    • 제13권2호
    • /
    • pp.289-302
    • /
    • 1999
  • As the size and complexity of network increase Distributed System Management (DSM) will be significant issue within information network in order to increase the high reliability and to improve the flexibility of network management. The OSI management model has several problems. The key problems are that it does not fully address the problem of how to develop communication protocol in support of DSM and how to classify the management connection criteria. In this paper to solve first problem described above this paper propose the connectionless CMIP to accomplish for effectively managing the distributed management managing systems to handle the dynamic informations. To work out second problem we introduce the connection criteria in the hierarchy of management system and finally evaluate the efficiency of a suggested protocol during cooperative negotiation among the managing system.

  • PDF

분산시스템관리를 위한 관리 프로토콜에 관한 연구 (A Study On Management Porgocol For Distributed Systems Management)

  • 박승섭
    • 한국항해항만학회:학술대회논문집
    • /
    • 한국항해항만학회 1999년도 추계학술대회논문집
    • /
    • pp.163-175
    • /
    • 1999
  • As the size and complexity of network increase, Distributed Systems Management (DSM) will be significant issue within information network in order to increase the high reliability and to improve the flexibility of network management. The OSI management model has several problems. The key problems are that it does not fully address the problems of how to develop communication protocol in support of DSM, and how to classify the management connection criteria. In this paper, to solve first problem described above, this paper propose the connectionless CMIP(Common Management Information Protocol) to accomplish for effectively managing the distributed management system, and indicate its efficiency; this protocol is available to negotiate among the managing systems, handle the dynamic information. To work out second problem, we introduce the connection criteria in the hierarchy of management systems, and finally evaluate the efficiency of a suggested protocol during cooperative negotiation among the managing systems.

한국대학생들의 콘돔협상전략 탐색: 콘돔연구에서 협응적 관점의 제안 (Condom negotiation strategies of Korean college students: Interactive perspective of Sexual-risk behavior)

  • 허태균;조자의
    • 한국심리학회지 : 문화 및 사회문제
    • /
    • 제13권1호
    • /
    • pp.43-61
    • /
    • 2007
  • 콘돔사용과 관련된 기존 연구들은 일반적으로 콘돔태도, 통제감, 사용의지, 동기와 같은 각 개개인의 내적변인에 초점을 맞추어 왔다. 최근 소수의 일부 연구들이 콘돔사용을 한 개인의 행동결정과정으로 보지 않고 타인과의 협응적 행동결정과정으로 이해하는 콘돔협상의 개념을 제안하였다. 본 연구는 한국대학생들의 콘돔협상과정에서 선호되는 콘돔사용설득전략과 콘돔포기설득전략을 알아보기 위하여 186명의 대학재학생에게 콘돔을 사용하고자 상대방을 설득시킬 때와 콘돔을 사용하지 않고자 상대방을 설득시킬 때 가장 사용할 것 같은 전략을 자유응답문항을 통해 조사하였다. 또한 그 전략들과 성관련 변인들과의 관계를 알아보기 위해, 성관련연상단어와 콘돔사용에 대한 태도, 통제감, 의도와 행동 등을 측정하였다. 한국대학생들의 콘돔사용설득전략유형은 임신위험성강조, 책임감, 상대방배려, 성관계거부, 질병예방, 직접적 요구, 성적만족감무관 순으로 보고되었다. 반면에 콘돔포기설득전략유형은 임신위험성안심, 성적만족감강조, 책임감, 직접적 요구, 콘돔불신, 성관계거부의 순으로 보고되었다. 남녀, 성관계유무 등에 따른 차이와 기존 서구연구결과들과의 차이 등을 문화/사회적 특성들의 관점에서 논의하였고, 성교육에서의 여러 시사점을 제안하였다.

  • PDF

IPsec System에서 IKEv2 프로토콜 엔진의 구현 및 성능 평가 (An Implementation and Performance Evaluation of IPsec System engaged IKEv2 Protocol Engine)

  • 김성찬;천준호;전문석
    • 정보보호학회논문지
    • /
    • 제16권5호
    • /
    • pp.35-46
    • /
    • 2006
  • 기존의 보안 시스템에서 키 교환에 사용되어 왔던 인터넷 키 교환 프로토콜은 확장성과 속도, 효율성 그리고 안정성에 문제가 있다는 지적을 받아 왔다. 본 연구에서는 이러한 문제점을 해결하고자 했으며, 새로 구현한 인터넷 키 교환 프로토콜을 IPsec에 연동되는 테스트베드에 탑재하여 성능평가를 하였다. 네트워크가 점점 확장되어 가는 상황에서 기존의 인터넷 키 교환 프로토콜은 네트워크의 확장성에 한계가 있기 때문에 RFC에서 제안하는 표준에 따라서 구현하였으며 키 교환 및 인증 과정에서 지적된 복잡성과 속도 문제를 해결하였다. 복잡한 메시지 교환 단계를 줄여서 속도를 향상시켰고, 재협상 시 기존 상태 값들을 재활용함으로써 효율성을 증가 시켰다.