Abstract:
An authentication server and a method for processing an authentication-related message are provided to classify various kinds of messages inputted from clients, and to process the classified messages by independent processes or threads, thereby preventing a processing of other messages from being delayed. A connection processor(210) classifies authentication-related messages into a connection message, a session authentication message, and an accounting message, and generates a connection response message by processing the connection message in an independent thread. A session processor(220) receives the session authentication message to classify into an authentication message and an unnecessary session message, and generates a session response message by processing the session message in an independent thread. An authentication processor(230) receives the authentication message to generate an authentication response message by processing the authentication message in an independent thread. An accounting processor(250) receives the accounting message to generate an accounting response message.
Abstract:
PURPOSE: A wireless Internet system using an application layer script and a point to point security session information managing method are provided to manage security information on entire sessions in a web server out of one transaction range, thereby supplying a security service in an application layer among all messages transceived between a browser and the web server. CONSTITUTION: A web server(130) comprises as follows. A script interpreter(132) interprets web daemon receiving a service request of a browser(110) and a script at the request of the web daemon, and performs an interpretation. A script security API(133) supplies a security service of a script, performs security negotiation with the browser(110), and manages session information. A session information object(134) stores the session information. The script security API(133) comprises as follows. A security negotiation API supplies a security negotiation function with the browser(110). A security service API supplies a security service function. A session control block stores and manages security session information negotiated with the browser(110).
Abstract:
PURPOSE: A method for designing a password based authentication and key exchange protocol by using zero-knowledge interactive proof is provided to be strong to the offline dictionary attack. CONSTITUTION: A method for designing a password based authentication and key exchange protocol by using zero-knowledge interactive proof includes the steps of: setting various system parameters required to the authentication, sending the message made of a first inquire number generation value(X) to the server(60) by arbitrary selecting the random number(r,x) by the user based on the set parameter, sending the message made of a second inquire number generation value(Y) known to only the server(60) and the user(50), transmitting the number of witness(B) to the server(60) to authenticate the user after the result(c) value of secret flip of coin and the session key(SK) are calculated, authenticating the B by the server(60) stored therein the password identifier to each of the users by using the A, V and c and exchanging the session key by calculating the SK.
Abstract:
PURPOSE: A method for setting a communication environment of a smart card and a mobile terminal which use a protocol stack of a hierarchical structure is provided to construct the optimized communication environment with respect to each application rapidly and stably in a multi-application smart card system. CONSTITUTION: If a smart card(100) is inserted into a mobile terminal(200), the mobile terminal(200) applies power to the smart card(100, S100). If a power is applied from the mobile terminal(200), the smart card(100) executes a reset operation in accordance with the applied power and transmits information with respect to a supportable communication environment to the mobile terminal(200) as a response signal thereto(S202). After analyzing a communication environment of the smart card(100), the mobile terminal(200) transmits a logic channel opening request message for opening a logic channel with the smart card(100) to the smart card(100, S203). The smart card(100) opens a logic channel with the mobile terminal(200) in accordance with the logic channel opening request message received from the mobile terminal(200) and transmits a response message with respect to the logic channel opening request to the mobile terminal(200, S204).