• 제목/요약/키워드: leakage-resilience

검색결과 12건 처리시간 0.022초

New Security Layer for OverLay Networks

  • Imai, Hideki;Shin, Seong-Han;Kobara, Kazukuni
    • Journal of Communications and Networks
    • /
    • 제11권3호
    • /
    • pp.211-228
    • /
    • 2009
  • After clarifying the underlying problems in a secure network storage, we introduce two important requirements, leakageresilience and availability in higher levels respectively, for data keys that are used to protect remotely-stored data. As a main contribution of this paper, we give a new security layer for overlay networks by proposing a leakage-resilient authentication and data management system. In this system, we specifically propose a single mode and a cluster mode where the latter provides a higher level of both leakage-resilience and availability for the data key.

Introduction to Leakage-Resilient Authenticated Key Exchange Protocols and Their Applications

  • Imai, Hideki;Shin, Seong-Han;Kobara, Kazukuni
    • 정보보호학회논문지
    • /
    • 제18권6B호
    • /
    • pp.207-217
    • /
    • 2008
  • Secure channels, indispensable to many applications, can be established by using an authenticated key exchange (AKE) protocol where the involving parties authenticate one another and then share authenticated session keys over insecure networks. In this paper, we introduce a new type of AKE protocols that are especially designed to minimize the damages caused by leakages of stored secrets. Such protocols are called Leakage-Resilient AKE (LR-AKE) protocols, whose motivation, design principles, several constructions, security analysis and applications are explained in detail.

피해규모를 고려한 용수공급시스템 누수복구 우선순위 선정 (Determination of a priority for leakage restoration considering the scale of damage in for water distribution systems)

  • 김률;권희근;최영환
    • 한국수자원학회논문집
    • /
    • 제56권10호
    • /
    • pp.679-690
    • /
    • 2023
  • 누수는 용수공급시스템 내에서 발생할 수 있는 대표적인 비정상상황 중 하나이다. 누수는 관로가 매설된 이후부터 잠재적으로 발생할 수 있으며 발생 직후부터 즉시 경제적 및 수리학적 피해를 입을 수 있기 때문에 이를 적시에 감지하고 탐지하는 것이 중요하다. 하지만 시스템이 지하에 매설되어 있어 이를 빠르게 인지하는 것은 쉽지 않으며 인지한다 하여도 복구하기 위해서는 상대적으로 많은 가용자산이 요구된다. 따라서 다중 누수가 발생할 시 누수규모 및 위치에 따라 복구 우선순위에 대한 우선순위를 선정해야 할 필요성이 있으며 최적의 복구전략이 도출되어 이를 수행할 시 시스템의 탄력성 측면에 있어 유리함을 가질 수 있다. 본 연구에서는 프로그램 기반 모의 누수를 발생시켜 비정상상황 시나리오를 구축하였으며 이에 따라 딥러닝 기반 모델로 누수탐사를 수행하였다. 탐사 결과로 얻어지는 누수위치와 누수량은 이 후 누수복구 우선순위를 위한 요소로써 활용되며 타 요소와 함께 최적의 누수복구 시나리오를 도출하였다.

USN에서의 이동성을 위한 핸드오버 인증 프로토콜 (Handover Protocol for Mobility Support in Ubiquitous Sensor Network)

  • 니반제 브루스;김태용;이훈재
    • 한국컴퓨터정보학회:학술대회논문집
    • /
    • 한국컴퓨터정보학회 2012년도 제46차 하계학술발표논문집 20권2호
    • /
    • pp.203-206
    • /
    • 2012
  • The System of communication with wireless devices is experiencing a huge growth. While traditional communication paradigms deal with fixed networks, mobility raises a new set of questions, techniques, and solutions. In order to realize service mobility, there is a need of protocol that can support mobility while nodes are communicating without any disruption of their connection status. This paper proposes a handover authentication protocol for mobility support. Careful considerations must be taken in priority to security issues since many unreliable public and private resources; both networks and devices are involved. The protocol is based on public key cryptography with Diffie-Hellman algorithm which provides security against both leakage-resilience of private keys on untrustworthy devices and forward secrecy.

  • PDF

An Efficient Broadcast Authentication Scheme with Batch Verification for ADS-B Messages

  • Yang, Haomiao;Kim, Hyunsung;Li, Hongwei;Yoon, Eunjun;Wang, Xiaofen;Ding, Xuefeng
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제7권10호
    • /
    • pp.2544-2560
    • /
    • 2013
  • As a cornerstone of the next generation air traffic management (ATM), automatic dependent surveillance-broadcast (ADS-B) system can provide continual broadcast of aircraft position, identity, velocity and other messages over unencrypted data links to generate a common situational awareness picture for ATM. However, since ADS-B messages are unauthenticated, it is easy to insert fake aircrafts into the system via spoofing or insertion of false messages. Unfortunately, the authentication for ADS-B messages has not yet been well studied. In this paper, we propose an efficient broadcast authentication scheme with batch verification for ADS-B messages which employs an identity-based signature (IBS). Security analysis indicates that our scheme can achieve integrity and authenticity of ADS-B messages, batch verification, and resilience to key leakage. Performance evaluation demonstrates that our scheme is computationally efficient for the typical avionics devices with limited resources, and it has low communication overhead well suitable for low-bandwidth ADS-B data link.

IEEE 802.15.4 LR-WPAN의 실시간 음성 데이터 응용에 대한 적용 가능성 연구 (Feasibility Study of IEEE 802.15.4 LR-WPAN to the Real-time Voice Application)

  • 허윤강;김유진;허재두
    • 대한임베디드공학회논문지
    • /
    • 제2권2호
    • /
    • pp.82-94
    • /
    • 2007
  • Wireless sensor networking technology is one of the basic infrastructures for ubiquitous environment. It enables us to gather various sensory data such as temperature, humidity, gas leakage, and speed from the remote sensor devices. To support these networking functions, IEEE WPAN working group makes standards for PHY and MAC, while ZigBee Alliance defines the standards for the network, security, and applications. The low-rate WPAN was emerged to have the characteristics of network resilience, low cost, and low power consumption. It has a broad range of applications including, but not limit to industrial control and monitoring, home automation, disaster forecast and monitoring, health care. In order to provide more intelligent and robust services, users want voice-based solutions to accommodate to low-rate WPAN. In this paper, we have evaluated voice quality of an IEEE 802.15.4 standard compliant voice node. Specifically, it includes the design of a voice node and experiments based on the prediction of voice quality using the E-model suggested by ITU-T G.107, and the network communication mechanisms considering beacon-enabled and nonbeacon-enabled networks for real-time voice communications.

  • PDF

Zero-Knowledge Realization of Software-Defined Gateway in Fog Computing

  • Lin, Te-Yuan;Fuh, Chiou-Shann
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제12권12호
    • /
    • pp.5654-5668
    • /
    • 2018
  • Driven by security and real-time demands of Internet of Things (IoT), the timing of fog computing and edge computing have gradually come into place. Gateways bear more nearby computing, storage, analysis and as an intelligent broker of the whole computing lifecycle in between local devices and the remote cloud. In fog computing, the edge broker requires X-aware capabilities that combines software programmability, stream processing, hardware optimization and various connectivity to deal with such as security, data abstraction, network latency, service classification and workload allocation strategy. The prosperous of Field Programmable Gate Array (FPGA) pushes the possibility of gateway capabilities further landed. In this paper, we propose a software-defined gateway (SDG) scheme for fog computing paradigm termed as Fog Computing Zero-Knowledge Gateway that strengthens data protection and resilience merits designed for industrial internet of things or highly privacy concerned hybrid cloud scenarios. It is a proxy for fog nodes and able to integrate with existing commodity gateways. The contribution is that it converts Privacy-Enhancing Technologies rules into provable statements without knowing original sensitive data and guarantees privacy rules applied to the sensitive data before being propagated while preventing potential leakage threats. Some logical functions can be offloaded to any programmable micro-controller embedded to achieve higher computing efficiency.

Dynamic Configuration and Operation of District Metered Areas in Water Distribution Networks

  • Bui, Xuan-Khoa;Kang, Doosun
    • 한국수자원학회:학술대회논문집
    • /
    • 한국수자원학회 2021년도 학술발표회
    • /
    • pp.147-147
    • /
    • 2021
  • A partition of water distribution network (WDN) into district metered areas (DMAs) brings the efficiency and efficacy for water network operation and management (O&M), especially in monitoring pressure and leakage. Traditionally, the DMA configurations (i.e., number, shape, and size of DMAs) are permanent and cannot be changed occasionally. This leads to changes in water quality and reduced network redundancy lowering network resilience against abnormal conditions such as water demand variability and mechanical failures. This study proposes a framework to automatically divide a WDN into dynamic DMA configurations, in which the DMA layouts can self-adapt in response to abnormal scenarios. To that aim, a complex graph theory is adopted to sectorize a WDN into multiscale DMA layouts. Then, different failure-based scenarios are investigated on the existing DMA layouts. Here, an optimization-based model is proposed to convert existing DMA layouts into dynamic layouts by considering existing valves and possibly placing new valves. The objective is to minimize the alteration of flow paths (i.e., flow direction and velocity in the pipes) while preserving the hydraulic performance of the network. The proposed method is tested on a real complex WDN for demonstration and validation of the approach.

  • PDF

Real Estate Industry in the Era of Technology 5.0

  • Sun Ju KIM
    • 융합경영연구
    • /
    • 제11권6호
    • /
    • pp.9-22
    • /
    • 2023
  • Purpose: This paper aims to suggest ways to apply the leading technologies of Industry 5.0 to the housing welfare field, tasks for this, and policy implications. Research design, data, and methodology: The analysis method of this study is a literature study. The analysis steps are as follows. Technology trends and characteristics of Industry 5.0 were investigated and analyzed. The following is a method of applying technology 5.0 in the industrial field. Finally, the application areas of each technology and the challenges to be solved in the process were presented. Results: The results of the analysis are 1) the accessibility and diffusion of technology. This means that all citizens have equal access to and use of the latest technology. To this end, the appropriate use of technology and the development of a user-centered interface are needed. 2) Data protection and privacy. Residential welfare-related technologies may face risks such as personal information leakage and hacking in the process of collecting and analyzing residents' data. 3) Stability, economic feasibility, and sustainability of the technology. Conclusions: The policy implications include: 1) Enhancing technology education and promotion to improve tech accessibility for groups like the low-income, rural areas, and the elderly, 2) Strengthening security policies and regulations to safeguard resident data and mitigate hacking risks, 3) Standardization of technology, 4) Investment and support in R&D.

맹꽁이 대체서식지 조성 평가 및 유지관리 방안 연구 - 서울시립대학교 맹꽁이 대체서식지를 사례로 - (A Study on the Evaluation and Maintenance for Alternative Habitats of the Narrow-mouth Frog (Kaloula borealis) - A Case Study on the Alternative Habitats of Kaloula borealis at the University of Seoul -)

  • 박석철;한봉호;박민진
    • 한국조경학회지
    • /
    • 제47권1호
    • /
    • pp.76-87
    • /
    • 2019
  • 본 연구는 서울시립대학교 맹꽁이 대체서식지의 2015~2017년 사후모니터링 이후 대체서식지 조성 평가 및 유지관리방안 도출을 목적으로 하였다. 연구대상지는 2014년에 조성되었으며, 면적은 $191m^2$이다. 조성 평가는 목표종의 서식환경 유지, 목표종의 개체수와 번식률 유지, 자생종 서식환경 유지, 자연생태계로의 회복력, 주변 환경과의 조화로 구분 평가하였다. 목표종의 서식환경 유지 측면에서 대체서식지 내 토양을 기존 맹꽁이 서식지에서 채취하여 토심 30cm 깊이로 조성하였다. 대체서식지 수원은 우수와 수돗물이라 자연적으로 이루어질 수 없으므로 맹꽁이와 함께 다른 양서류 산란 및 부화시기에 인위적인 물 공급이 매년 필요하였다. 그리고 연구대상지는 대체서식지 조성 이후 산란 및 번식을 하는 시기인 6~8월의 평균 기온이 $26.2^{\circ}C$로 맹꽁이 서식에는 어려움이 없는 것으로 판단되었다. 맹꽁이 개체수와 번식률 유지 측면에서는 맹꽁이가 점차 안정적인 서식 및 번식을 이루고 있는 것으로 평가하였다. 자생종 서식환경 유지 측면에서는 피식자 또는 포식자 특성을 고려한 식생 종 및 식생 구조 개선이 필요하였고, 환삼덩굴, 미국가막사리 등 외래종은 자생종의 습지생태계 유지를 위해 제거가 필요하였다. 자연생태계로 회복 평가에서 물빠짐 현상의 완화를 위해 수심 변화 모니터링을 통한 진흙다짐을 실시하였다. 진흙은 대상지 주변에 위치한 하늘연못 습지 바닥에서 채취하여 이설했다. 식생 관리는 부분적인 예초관리가 필요하고, 자연적인 식생 군락 형성 유도가 필요하였다. 또한 고목, 나뭇가지 등 다공질 공간을 조성하여 소생물의 서식 공간 및 은신처, 먹이 산란처를 조성할 필요가 있었다. 주변 환경과 조화 측면에서는 차량 및 보행자에 의한 양서류 로드킬, 인공 배수로에 양서류 빠짐, 주변 이용자 접근 등 위협요인 관리가 필요하였다. 대체서식지 관리방안은 모니터링 결과를 바탕으로 산란 및 은신할 수 있는 다양한 수변구조, 지속적인 수환경 관리, 자생종 서식환경 중심의 식생관리, 야생생물의 서식환경을 위한 주변 환경관리를 제시하였다. 창출형 대체서식지는 모니터링을 통해 대상지 변화 특성을 반영한 관리와 복원 목표종의 서식 환경 개선 노력이 지속적으로 필요하다.