-
公开(公告)号:KR1020110071687A
公开(公告)日:2011-06-29
申请号:KR1020090128315
申请日:2009-12-21
Applicant: 한국전자통신연구원
CPC classification number: H04L9/0836
Abstract: PURPOSE: A key tree configuration and key distribution method for hierarchial role base access control is provided to provide data stream to a user safely and efficiently under the internet environment, by using a key table management method. CONSTITUTION: A key tree including relation between data and hierarchial structure of each role group is generated. Encoding and decoding for a data key and a role key are performed. A key table including the data key and the role key is generated. The data key is used in a decoding process of coded data by referring to the key tree. The role key is used in decoding the coded data key. The data key is acquired by using the generated key tree and the key table.
Abstract translation: 目的:提供层次角色访问控制的密钥树配置和密钥分发方法,通过使用密钥表管理方法,在互联网环境下安全有效地向用户提供数据流。 构成:生成包括每个角色组的数据和层次结构之间关系的关键树。 执行数据密钥和角色密钥的编码和解码。 生成包含数据密钥和角色密钥的关键表。 数据密钥通过参照密钥树在编码数据的解码处理中使用。 角色密钥用于解码编码数据密钥。 通过使用生成的密钥树和密钥表获取数据密钥。
-
公开(公告)号:KR1020110066611A
公开(公告)日:2011-06-17
申请号:KR1020090123343
申请日:2009-12-11
Applicant: 한국전자통신연구원
Abstract: PURPOSE: An apparatus and method for performing data communication using an authenticated wireless channel are provided to establish stable wireless channel by inserting a wireless communication device. CONSTITUTION: A controller(408) performs wireless interconnection with a first user device through an established wireless channel. The controller directly performs interconnection while being connected with a second user device. The controller controls data transmission between the first and the second user devices. A communication unit(406) performs data transceiving with the first and the second devices by the controller. A memory unit(410) stores a secret key which is shared by each devices.
Abstract translation: 目的:提供一种使用认证无线信道执行数据通信的装置和方法,以通过插入无线通信设备建立稳定的无线信道。 构成:控制器(408)通过建立的无线信道与第一用户设备进行无线互连。 控制器在与第二用户设备连接时直接进行互连。 控制器控制第一和第二用户设备之间的数据传输。 通信单元(406)通过控制器与第一和第二设备执行数据收发。 存储单元(410)存储由每个设备共享的秘密密钥。
-
公开(公告)号:KR1020110061420A
公开(公告)日:2011-06-09
申请号:KR1020090118065
申请日:2009-12-01
Applicant: 한국전자통신연구원
Abstract: PURPOSE: A settlement service method and apparatus thereof are provided to increase the use convenience and effectiveness by supplying a direct payment function. CONSTITUTION: A client group(100) supplies a payment service using account information to a user. A payment service server(104) approves debit settlement for the client group through the network. A client management unit(104') is connected to client information database and manages client group information. The client management unit offers the credit limit information of the client group according to the managed information. An account management server(106) manages account information of the client group.
Abstract translation: 目的:提供一种结算服务方法和装置,通过提供直接支付功能来提高使用的便利性和有效性。 规定:客户群(100)使用帐户信息向用户提供支付服务。 支付服务服务器(104)通过网络批准客户端组的借方结算。 客户管理单元(104')连接到客户端信息数据库,并管理客户端组信息。 客户管理单位根据管理信息提供客户群组的信用限额信息。 帐户管理服务器(106)管理客户端组的帐户信息。
-
公开(公告)号:KR100993333B1
公开(公告)日:2010-11-09
申请号:KR1020080069508
申请日:2008-07-17
Applicant: 한국전자통신연구원
Abstract: 본 발명은, 개인용 단말을 이용하여 서비스 제공자 서버에 사용자 인증을 수행하는 방법에 있어서, 서비스 제공자 서버로부터 인증정보 생성용 메시지 및 서버 식별자를 수신하는 단계; 서버 식별자를 이용하여 서비스 제공자 서버가 등록되어 있는 지를 확인하는 단계; 서비스 제공자 서버가 등록되어 있으면, 인증정보 생성용 메시지와 서비스 제공자 서버에 해당하는 인증용 키를 이용하여 인증정보를 생성하고, 생성된 인증정보를 사용자 식별자와 함께 상기 서비스 제공자 서버에 전송하는 단계를 포함한다. 본 발명에 따르면, PC, 휴대폰, PDA 등과 같은 다양한 개인 인터넷 접속도구에서 동일한 사용자경험을 제공하면서도 편리한 방법으로 서버에 사용자를 등록하고 인증할 수 있게 된다. 또한, 공용 단말을 사용한 인증 시에 개인용 단말을 이용하여 안전하고 편리하게 인증하는 방법을 제공한다.
-
公开(公告)号:KR1020100068046A
公开(公告)日:2010-06-22
申请号:KR1020080126708
申请日:2008-12-12
Applicant: 한국전자통신연구원
CPC classification number: G06F21/41 , G06F21/6245 , G06F21/88
Abstract: PURPOSE: A device for managing identity data and a method thereof are provided to backup ID data in a backup server, thereby securing safety rather than storage on a existing storage medium and storage of a user PC. CONSTITUTION: A data storage unit(20) stores identity data of ID management unit base on user terminal(1). According to restoration request of a user ID management device, a restoring processor(24) transmits stores backup data to the user ID management device. According to ID usage stop request of a authenticated user, a stop request unit(28) requests usage stop of website ID corresponding to a web site system(3) based on information of data storage unit.
Abstract translation: 目的:提供一种用于管理身份数据的设备及其方法,用于备份备份服务器中的ID数据,从而确保安全性而不是存储在现有存储介质上并存储用户PC。 构成:数据存储单元(20)存储基于用户终端(1)的ID管理单元的身份数据。 根据用户ID管理装置的恢复请求,恢复处理器(24)将备份数据发送到用户ID管理装置。 根据认证用户的ID使用停止请求,停止请求单元(28)根据数据存储单元的信息请求与网站系统(3)对应的网站ID的使用停止。
-
公开(公告)号:KR1020100021818A
公开(公告)日:2010-02-26
申请号:KR1020080080439
申请日:2008-08-18
Applicant: 한국전자통신연구원
IPC: G06F21/20
CPC classification number: G06F21/43 , G06F2221/2137 , G06F2221/2153
Abstract: PURPOSE: A method and a system capable of easily and safely authenticating a user using temporary identification information are provided to prevent a theft of an identification providing to server user by phishing or hacking. CONSTITUTION: An authentication unit(120) performs a user authentication by connecting to the service provider server. A authentication supporting unit(125) generates a temporary password. A communication unit(110) transmits a temporary password to the service provider server. The communication unit receives a temporary identifier from the service provider server. An interaction unit(130) displays the temporary password and the temporary identifier to a user.
Abstract translation: 目的:提供一种能够使用临时识别信息轻松安全地认证用户的方法和系统,以防止通过网络钓鱼或黑客窃取向服务器用户提供的标识。 构成:认证单元(120)通过连接到服务提供商服务器执行用户认证。 认证支持单元(125)生成临时密码。 通信单元(110)向服务提供者服务器发送临时密码。 通信单元从服务提供商服务器接收临时标识符。 交互单元(130)向用户显示临时密码和临时标识符。
-
公开(公告)号:KR1020090068183A
公开(公告)日:2009-06-25
申请号:KR1020080130686
申请日:2008-12-19
Applicant: 한국전자통신연구원
IPC: G06F15/00
CPC classification number: H04L63/062 , G06F21/33 , G06F21/6218 , G06F21/6245 , G06F2221/2103 , G06F2221/2141 , G06F2221/2149 , H04L63/08
Abstract: An apparatus and a method for sharing user control enhanced digital identity are provided to enable a user to perform self control about using user personal information, thereby reducing damages of user personal information due to wrong use or misuse. A user interface unit(110) manages identity of a user in an application layer(210). The user interface unit displays the identity and credential as screen information to the user. An identity exchange service unit(130) performs share and synchronization of identity between an identity provider(50) and an identity consumer(60) by modifying the identity suitably for an application environment.
Abstract translation: 提供用于共享用户控制增强数字身份的装置和方法,以使得用户能够执行关于使用用户个人信息的自我控制,由此减少由于错误使用或误用造成的用户个人信息的损害。 用户接口单元(110)管理应用层(210)中的用户的身份。 用户界面单元将用户的身份和凭证显示为屏幕信息。 身份交换服务单元(130)通过针对应用环境适当地修改身份来执行身份提供者(50)和身份消费者(60)之间的身份的共享和同步。
-
148.
公开(公告)号:KR100903122B1
公开(公告)日:2009-06-16
申请号:KR1020070074630
申请日:2007-07-25
Applicant: 한국전자통신연구원
Abstract: 본 발명은 사용자 중심의 ID 관리를 위한 ID 관리 장치의 신뢰 관리 방법 및 시스템을 개시한다.
사용자가 ID 관리 장치를 자유롭게 선택할 수 있는 사용자 중심의 ID 관리 를 위해 응용서비스 제공 장치가 사전에 ID 관리 장치와 협약을 통해 신뢰를 결정하지 않은 상태에서 ID 관리 장치에서 제공한 정보를 신뢰할 수 있는지를 판단할 수 있도록 하는 방법 및 시스템을 제공한다.
이로써 ID 관리 장치가 제공하는 정보의 종류에 따라 각기 다른 신뢰도를 판단할 수 있고, 특정 단일 주체가 아닌 응용서비스 제공 장치들의 평판에 따라 ID 관리 장치의 신뢰도를 판단할 수 있게 된다.
ID 관리, 신뢰도-
公开(公告)号:KR1020090059029A
公开(公告)日:2009-06-10
申请号:KR1020080108911
申请日:2008-11-04
Applicant: 한국전자통신연구원
CPC classification number: G06Q30/02
Abstract: An identity management system with a privacy policy per a grade and a method thereof are provided to simplify privacy policy representation and simply process policy comparison. A request module(110) produces a user information request message. A communication module(240) transmits the user information request message to an information provider server(200). The user information request message comprises a privacy policy expressing at least one of use subject, use object and use period by a grade.
Abstract translation: 提供了具有每个等级的隐私策略的身份管理系统及其方法,以简化隐私策略表示并简单地处理策略比较。 请求模块(110)产生用户信息请求消息。 通信模块(240)将用户信息请求消息发送到信息提供者服务器(200)。 用户信息请求消息包括表示使用对象,使用对象和等级的使用期间中的至少一个的隐私策略。
-
公开(公告)号:KR1020090058149A
公开(公告)日:2009-06-09
申请号:KR1020070124803
申请日:2007-12-04
Applicant: 한국전자통신연구원
IPC: H04L9/06
CPC classification number: G06F17/2235 , H04L61/303 , H04L67/1095 , H04L67/2804 , H04L67/2819
Abstract: A system and a method for synchronizing data are provided to easily process data synchronization in an application program by providing a data synchronization function by an XRI(eXtensible Resource Identifier) data link. A user data provider(100) provides data to user. A user data consumer(200) consumes user data provided by the user data provider. An XRI interpreter(300) interprets an XRI identifier received from the user data provider or the user data consumer, and provides meta data related to the XRI identifier. The user data provider indicates data update to the user data consumer by using the meta data related to the XRI identifier.
Abstract translation: 提供用于同步数据的系统和方法,以通过由XRI(可扩展资源标识符)数据链路提供数据同步功能来容易地处理应用程序中的数据同步。 用户数据提供者(100)向用户提供数据。 用户数据使用者(200)消耗由用户数据提供者提供的用户数据。 XRI解释器(300)解释从用户数据提供者或用户数据消费者接收到的XRI标识符,并提供与XRI标识符相关的元数据。 用户数据提供者通过使用与XRI标识符相关的元数据来指示对用户数据使用者的数据更新。
-
-
-
-
-
-
-
-
-