Abstract:
PURPOSE: A system for processing a DES(Data Encryption Standard) in parallel by using a graphic processing unit is provided to improve a processing speed by performing a high speed parallel process of a DES based on the resources of a graphic processor. CONSTITUTION: A round key generator(303) generates 16 round keys for a DES(Data Encryption Standard) from 56-bit key. A main unit(302) stores the round keys and an Sbox(Secret box) at a first memory of a graphic processor. In addition, the main unit stores the 64-bit data strings at a second memory of the graphic processor. Furthermore, the main unit processes the stored 64-bit data strings in parallel simultaneously by using the round keys and the Sbox which are stored in the first memory.
Abstract:
PURPOSE: An apparatus and a method for encrypting user authentication information and data using MAC(Mandatory Access Control) and RBAC(Role Based Access Control) are provided to perform an encrypting process corresponding to a grade of the user information by encrypting selectively a transmitting file according to an important grade of the transmitting file. CONSTITUTION: An apparatus for encrypting user authentication information and data using MAC and RBAC includes an FTP client program(10), a kernel layer(20), an FTP demon program(15), and a security database(30). The FTP client program(10) provides a user authentication information request and a server connection request. The kernel layer(20) is used for requesting the user authentication according to the server connection request of the FTP client program. In addition, the kernel layer is used for performing an encrypting/decrypting processing data of the FTP client program when being connected by a grade of MAC corresponding to the user authentication request. The FTP demon program(15) is used for analyzing the encrypted user authentication information and performing a user authentication process according to the grade of MAC. The security database(30) is used for storing the grade of MAC for the client and the grade of MAC for the data.
Abstract:
PURPOSE: An apparatus and a method for providing a reliable channel in a security OS(Operating System) to which MAC(Mandatory Access Control) is applied is provided to offer a new header for independently encoding a packet used in communication by a security level of the MAC and minimize network performance degradation using the security level of the MAC. CONSTITUTION: If data according to a communication request provided from a transmission-side user(S1) are for a packet transmission request, a reliable channel subsystem(12) judges whether a reliable channel is applied. If the reliable channel is applied, the reliable channel subsystem(12) composes a reliable channel header, encodes a specific portion of a packet, stores authentication information in the reliable channel header, and transmits the packet through a network(A). A MAC module(20) provides MAC information for indicating whether the reliable channel is applied. A kernel memory(30) provides an encryption key and an authentication key necessary for encoding a reliable channel application host address and the packet and generating authentication data. A reliable channel subsystem(12-1) retrieves the authentication data of the reliable channel header before decoding the packet received through the network(A). If the authentication data are valid, the reliable channel subsystem(12-1) decodes the encoded packet. If process for the reliable channel is ended, the reliable channel subsystem(12-1) transmits the packet to an upper level to transmit the packet to a reception-side user(S2). A kernel memory provides an authentication key and an encryption key necessary for checking authentication with respect to the packet encoded by the reliable channel subsystem(12) and decoding the packet.
Abstract:
PURPOSE: A file security system using a security level and a method for managing an encryption key are provided to encrypt or decrypt a file having the security level by using the encryption key of each security level, and to offer the file to a user, or save the file in a disk. CONSTITUTION: The disk(130) stores the encryption key matched with the security level set by an access control module(120), a key file storing the encryption key, and the file encrypted by the encryption key. A kernel memory(140) stacks the encryption key stored in the disk(130) according to the driving of the encryption file system(110). The encryption file system(110) draws out the encryption key matched with the security level of the file to read or stored by the user from the kernel memory(140), and transmits the file decrypted or encrypted by the encryption key to the user, or stores the file in the disk.
Abstract:
본 발명은 제한 수신 시스템을 위한 스마트 카드에 있어서, 외부로부터의 명령이 전달되면 그 값들 및 그 처리 결과를 일시적으로 기억하는 제1저장 수단(2,1); 가입자 개인 정보, 유료채널에 대한사용량 기록, 변경 가능성이 있는 각종 키, 채널 수신자격을 포함하는 정보가 기록되거나 소거되는 제2저장 수단(2,2); 스마트 카드를 운용하는 기능들을 위한 프로그램이 기록된 제3저장수단(2,5); 전체 구성 요소를 관장하며, 상기 제3 저장 수단에 저장되어 있는 프로그램을 명령에 따라 구동하여 상기 제1저장 수단을 이용하여 계산한 후, 상기 제2저장 수단 영역에 기록 또는 소거하고, 외부와 메세지를 주고받는 것에 대한 제어기능을 수행하는 중앙처리장치(2,3); 및 외부와 접촉하여 전원, 리셋 신호, 클럭, 그리고 메시지들을 전송하거나 입수하는입·출력수단(2,4)을 구비하는 것을 특징으로 하는 제한 수신 시스템을 위한 스마트 카드 및 그 제어 방법에 관한 것으로 통신 방송분야에 있어서 고부가가치 서비스를 가입자에게 제공하고자 할때, 보다 안전하고 신뢰성 있는 서비스를 제공할 수 있도록 한 것이다.
Abstract:
본 발명은 파일 입출력 처리를 줄여 대용량 이미지의 텍스트 추출 시간을 줄이고, 삭제된 파일이나 비할당 영역까지 텍스트를 추출하여 수사에 필요한 유효 정보를 제공하는 대용량 포렌식 이미지의 정보 추출 장치에 관한 것이다. 이를 위하여 본 발명의 실시 예에 따른 대용량 포렌식 이미지의 정보 추출 장치는 디지털 포렌식 이미지를 파일 시스템 형태로 처리하는 파일 시스템 처리부와, 파일 시스템 형태의 파일들을 분석하여 추출 형태를 결정하는 추출 형식 분석부와, 결정된 추출 형태에 따라 파일 시스템 형태의 파일들에서 텍스트를 추출하거나, 속성 정보를 추출하거나, 삭제된 파일, 비할당 영역, 페이지 파일에서 유효 정보를 추출하는 유효 정보 추출부와, 유효 정보 추출부에서 추출한 결과물을 UTF-8이나 한글 KS완성형으로 변환하는 인코딩 변환부를 포함할 수 있다.
Abstract:
PURPOSE: A company information leakage preventing system having a civil suit action function is provided to reduce civil suit costs and to have an integrated computer security function and a civil suit action function. CONSTITUTION: A company information leakage preventing apparatus(160) is installed in an end terminal, a storage, a database server, a file server, or a network server. The company information leakage preventing apparatus prevents leakage of information. An e-discovery device(210) is installed in the end terminal, the storage, the database server, the file server, or the network server. The e-discovery device collects the information.
Abstract:
PURPOSE: A device for extracting information about a large scale forensic image is provided to reduce the number of file input/output processes, thereby reducing time for which a text of an image is extracted. CONSTITUTION: A valid information extracting unit(420) extracts texts from files of a file system type according to a determined extraction format. The valid information extracting unit extracts attribute information according to the determined extraction format. The valid information extracting unit extracts valid information from a deleted file, an unassigned area, and a page file according to the determined extraction format. An encoding unit(500) converts the extracted result into an EUC-KR or Korean KS complete format.
Abstract:
PURPOSE: A password searching device and method is provide to separately check password without additional control data in each work node by only one message transferation. CONSTITUTION: A password searching device comprises: a graphic user interface node(GUI)(100) transferring inspection range information of password comprising at least one of the length of password, the position of known letters, starting point of an inspection target password, and the number of the inspection target password to at least one or more work nodes(150); and the work node breaking the pass word by the input of the password.