Abstract:
A method and a system for an access control are provided to handle multiple access entities as an integrated one access entity by using integrated identifier information of the multiple access entities. An integrated identifier database(300) stores integrated identifier information corresponding to an identifier combination of an accessible entity. When multiple access entities request an access in a service, an access control part(200) performs an access control about the multiple-access entities and the integrated identifier information based on a service identifier of the multiple-access entities. The integrated identifier information is extracted from the integrated identifier database in response to an identifier list of the multiple-access entities.
Abstract:
프라이버시를 보장하는 암호화와 복호화를 이용한 파일 공유 방법 및 시스템이 개시되어 있다. 클라이언트는 대칭키 알고리즘을 사용하여 파일과 관련된 키워드들을 해싱(hashing)하여 암호화하고, 해싱된 키워드로 파일들을 암호화한 후, 파일 m과 키워드들 을 암호화한 암호문(D)을 파일 공유 서버로 업로드한다. 원하는 파일을 다운로드 받기 위해, 클라이언트는 파일 공유 서버로 사용자가 원하는 파일과 관련된 해싱된 키워드(KW)로 쿼리(Q)를 요청한다. 클라이언트는 파일 공유 서버로부터 쿼리된 키워드와 동일한 키워드로부터 만들어진 암호문들의 집합( )를 수신받아 키워드를 복호화하고, 복호화된 키워드(KW)에 의해 파일 m을 복호화한다. 파일공유, 프라이버시, 암호화/복호화, 기밀성, 키워드 검색
Abstract:
본 발명은 다중 도메인 홈네트워크 환경에서의 디바이스 인증 방법 및 장치에 관한 것으로서, 각 로컬 도메인별로 해당 로컬 도메인의 홈 게이트웨이가 루트 CA로서 동작하여 디바이스별로 로컬 도메인 인증서를 발급하고, 다른 로컬 도메인에 등록된 디바이스를 인증할 수 있도록 로컬 도메인간에 협약을 수행하여 공개키 및 크로스 도메인 인증서를 발급하며, 디바이스로부터 서비스 요청시 해당 홈게이트웨이가 상기 로컬 도메인 인증서 및 크로스 도메인 인증서를 이용하여 로컬 도메인 내부의 통신만으로 상기 디바이스를 인증하도록 하여, 사용자의 개입을 최소화하여 비전문가도 쉽게 사용할 수 있도록 하고, 성능이 낮은 디바이스를 고려하여 인증을 위한 디바이스 연산을 최소화하며, 쉽게 확장가능하도록 한다. 홈네트워크(Home Network), 디바이스 인증(Device Authentication), PKI
Abstract:
A computer readable recording medium recording data structure which performs a data search operation, and a method for searching for, saving and deleting data are provided to provide a data structure, for enabling a memory to be maintained efficiently and a user to search for data rapidly when various computer applications are developed. A method for searching for data by using a data structure includes the following several steps. A pointer moves to a root cloud in order to search for a specific key in cloud fields(S200). A computer checks over whether or the root cloud is a null cloud(S210). If so, the computer finishes searching for the key(S260). If not so, the computer checks whether there exists the specific key within a range from the cloud(S220). If not so in the step S220, the pointer moves to a right side cloud(S250) and the computer repeats the step S210. If so in the step S220, the computer checks whether there exists a node having the same distance attribute as the specific key among the nodes forming the cloud(S230). If there exists the node, the computer finishes searching for the specific key(S270). If there exists no node, the pointer moves to a lower level cloud having a representative node having the distance attribute nearest to the specific key among the lower level clouds(S240).
Abstract:
A system and a method for authenticating products and verifying a service provider by using an RFID signature tag are provided to enable a user to determine authenticity of the products or documents online by using RFID technology, and to offer the authenticity result to the user, thereby enabling the user to receive a reliable service. A terminal(201) performs verification for a signature of a service provider(206) providing products with an RFID(Radio Frequency Identification) tag(202) or a service related to the products, by accessing the RFID tag. A key management server(203) stores keys of service providing objects of the service provider, and provides the keys according to a request of the terminal. The service provider provides the products or the products related service.
Abstract:
A method and a device for issuing a certificate including agreement details of a parent to a minor are provided to offer a reliable certification tool for the minor and agreement information of the parent in a certificate form, and offer a service to the minor after verifying the certificate when the minor requests the service by using the certificate reflecting a policy of the parent. A certificate generation server(110) generates and issues a certificate for a minor receiving protection from a parent according to information received from the parent. A relation checker(120) determines whether relation between the parent and the minor is legal or illegal, and provides a determination result when a request is received from the certificate generation server. A service providing server provides a service to a user presentation the certificate for the minor. The certificate generation server includes an authenticator(111) authenticating the certificate of the parent, a policy setter(113) setting condition for allowing the minor to use an online environment, and a certificate issuer(115) generating the minor certificate reflecting the condition when the authentication is successful.
Abstract:
A method and a system for identifying a user with multimodal biometric information are provided to increase a recognition rate by applying at least one single biometric recognition technology through a multimodal biometric recognition technology for accepting all users, and using the multimodal biometric information, and reduce the number of target users by filtering the immigration-prohibited users before immigration control. An immigration-prohibited user searcher(500) checks whether a user is an immigration-prohibited user by searching a database storing ID or biometric information of the immigration-prohibited users based on ID information of the user or biometric information(501) identifying the user. A biometric recognizer(510) compares feature(530) extracted from the respective biometric information of the user with the stored feature when the user is not the immigration-prohibited user. A biometric searcher(520) generates a candidate list according to a matching degree by comparing the feature extracted according to a type of each biometric information with the feature stored in the database storing biometric feature when the biometric recognizer does not identify the user. A display unit displays the candidate list at an immigration gate.
Abstract:
A device and a method for performing an e-vote using a mobile terminal are provided to identify a voter with a certificate without making the voter report the e-vote previously when the voter casts a ballot with a mobile terminal of the voter, and guarantee secrecy of the e-vote by encoding voting contents of the voter and deleting a user ID of a mobile terminal user. A voter ID checker(310) authenticates a voter based on a certificate received from a mobile terminal(100) of the voter through the mobile network. An encoding key manager(330) generates and transmits an encoding key for encoding voting contents to the mobile terminal. An election information provider(340) transmits election information including candidate information to the mobile terminal. A voting result storing part(350) decodes the encoded voting contents of which an ID of the voter is removed from the encoded voting contents. A duplicated voting preventer(320) rejects a reconnection trial to an e-vote device(300), and an online/offline duplicated voting trial after the e-vote is completed. An external connector(360) is connected to a CA(Certificate Authority) issuing the certificate including a PIN(Personal ID Number) of the voter to the mobile terminal.
Abstract:
A DRM(Digital Rights Management) system and a contents distribution management method using the same are provided to enable a contents owner to declare a right clearly with a control right for assigning a use right, and enable a contents distributor to interact with contents users and perform various business models flexibly by including a contents protector for protecting contents from illegal users. A contents user(400) has a terminal for using contents. A clearing house(300) transmits a contents use contract to the contents user by receiving a contents charge from the contents user, pays royalty to a contents owner(100), and makes a contents use contract by paying distribution expenses to a contents distributor(200). The contents owner receives the royalty through the clearing house by transmitting contents use right information of the contents user to the contents distributor. The contents distributor receives the distribution expenses from the clearing house by receiving the use right information from the contents owner, and transferring the contents and a license of the contents to the contents user. The terminal includes a license verifying module, a contents decoding module and a contents service module.
Abstract:
본 발명은 생체인식을 이용한 통합인증 방법 및 그 시스템에 관한 것으로, 클라이언트, 상기 클라이언트에 대한 사용자 식별정보가 등록되어 있는 다수개의 서비스 제공서버 및 상기 사용자 식별정보와 함께 사용자 생체정보가 등록되어 있는 통합서버로 구성되는 통합인증 시스템에서 상기 클라이언트에서 상기 다수개의 서비스 제공서버로의 접속을 통합인증하는 방법에 있어서, (a) 상기 클라이언트는 사용자 생체정보와 상기 사용자 식별정보를 가지고 상기 통합서버의 사용자 생체정보 재생성을 통해 제1 서비스 제공서버로의 접속을 인증받는 단계; (b) 상기 (a)단계에서 접속이 이루어진 경우, 상기 클라이언트는 상기 제1 서비스 제공서버에서 생성된 제1 접속 인가 메시지를 전송받아 저장하는 단계; 및 (c) 상기 클라이언트는 상기 제1 접속 인가 메시지와 상기 사용자 식별정보를 이용하여 제2 서비스 제공서버로의 접속을 인증받는 단계;로 구성된다. 따라서, 사용자의 불편을 최소화 하면서도 보안성 또한 유지할 수 있는 생체인식을 이용한 통합인증 방법 및 시스템을 제공할 수 있다.