-
公开(公告)号:KR1020100062803A
公开(公告)日:2010-06-10
申请号:KR1020090023607
申请日:2009-03-19
Applicant: 한국전자통신연구원
CPC classification number: G06F17/30073 , G06F21/602 , G06F21/72 , G06F21/78 , G06F2221/2107
Abstract: PURPOSE: A data encryption apparatus and a method thereof, a data decoding apparatus, a data searching method are provided to stably encode and store data by configuring a column of a table inside a database. CONSTITUTION: A conversion unit(120) searches a range interval corresponding to first unit character of input data at a domain interval, and divides the searched range interval through an interval division method. The conversion unit searches a range interval for the final character of input data, and an encryption unit(140) generates an encryption value of the input data by using the searched range interval for the final character. The encryption unit calculates the character length of the input data.
Abstract translation: 目的:提供一种数据加密装置及其方法,数据解码装置,数据搜索方法,通过在数据库中配置表的列来稳定地编码和存储数据。 构成:转换单元(120)以域间隔搜索对应于输入数据的第一单位字符的范围间隔,并且通过间隔分割方法来划分所搜索的范围间隔。 转换单元搜索输入数据的最终字符的范围间隔,并且加密单元(140)通过使用搜索到的最终字符的范围间隔来生成输入数据的加密值。 加密单元计算输入数据的字符长度。
-
62.
公开(公告)号:KR1020070059902A
公开(公告)日:2007-06-12
申请号:KR1020060074654
申请日:2006-08-08
Applicant: 한국전자통신연구원
CPC classification number: H04L63/0272 , H04L12/4641 , H04L63/164 , H04W8/04 , H04W12/00 , H04W60/00
Abstract: A method for providing a VPN(Virtual Private Network) service to a mobile node in an IPv6 network and a gateway for the same are provided to offer IP mobility in a VPN service and support the mobility of a mobile node inside and outside a VPN domain by executing a function corresponding to a mobile IPv6 HA(Home Agent). An MVPN gateway executes an IKE(Internet Key Exchange) negotiation with a mobile node which has executed handover, acquires a SA(Security Association), and authenticates the mobile node(S301). The MVPN gateway receives a BU(Binding Update) message from the mobile node, verifies it, stores new location information of the mobile node, transmits a BA(Binding Acknowledge) message, and executes mobility processing(S303). Then, the MVPN executes IPsec(IP security) processing for a packet to be transmitted to a CN(Correspondent Node) from the mobile node and delivers it to the CN(S305). For a packet transmitted to home address of the mobile node from the CN, the MVPN reconfigures it so that it can be delivered to the CoA(Care of Address) of the mobile node(S307).
Abstract translation: 提供了一种用于向IPv6网络中的移动节点提供VPN(虚拟专用网络)服务的方法及其网关,以在VPN服务中提供IP移动性,并支持VPN域内外的移动节点的移动性 通过执行与移动IPv6 HA(归属代理)相对应的功能。 MVPN网关对已执行切换的移动节点执行IKE(因特网密钥交换)协商,获取SA(安全关联),认证移动节点(S301)。 MVPN网关从移动节点接收BU(绑定更新)消息,验证该消息,存储移动节点的新位置信息,发送BA(绑定确认)消息,并执行移动性处理(S303)。 然后,MVPN对要从移动节点发送到CN(对等体节点)的分组执行IPsec(IP安全)处理,并将其传送到CN(S305)。 对于从CN发送到移动节点的归属地址的分组,MVPN将其重新配置,使得其可以被递送到移动节点的辅助(关心地址)(S307)。
-
公开(公告)号:KR100576720B1
公开(公告)日:2006-05-03
申请号:KR1020030096893
申请日:2003-12-24
Applicant: 한국전자통신연구원
IPC: H04L12/22
Abstract: 본 발명은 IP 기반 네트워크 보안관리 시스템에 관한 것으로 특히, 그래픽 사용자 인터페이스(Graphical User Interface, 이하 GUI)를 이용하여 네트워크 보안관리의 편리성을 꾀할 수 있는 보안관리 시스템에 관한 것이다.
본 발명이 제공하는 네트워크 보안관리 시스템은 IP 기반 네트워크상에 있는 복수 노드 상호간 보안연계 협상의 발생을 상기 각 노드에 있는 보안관리 에이전트로부터 통보받아 상기 보안연계 협상 정보를 분석하거나, 사용자로부터 상기 각 노드의 보안관련 처리 요청을 받아 상기 노드의 보안을 운용하는 보안관리 모듈; 및 상기 보안관리 모듈로부터 상기 발생을 통지받아 상기 보안연계 과정을 소정의 유채색으로 실시간으로 디스플레이하거나, 상기 보안관련 처리 요청시에 그 요청의 입력을 위한 화면을 상기 사용자에게 디스플레이하는 그래픽 사용자 인터페이스(GUI) 모듈을 포함하여 본 발명의 목적 및 기술적 과제를 달성한다.-
-
-
公开(公告)号:KR1020170092410A
公开(公告)日:2017-08-11
申请号:KR1020160013690
申请日:2016-02-03
Applicant: 한국전자통신연구원
CPC classification number: G01S5/0252 , G01S5/0027 , G01S5/02 , G01S5/0215 , G08G3/00
Abstract: 본발명은선박위치검사방법및 장치에관한것이다. 본발명에따르면, 선박으로부터무선신호를수신하는단계; 상기수신한무선신호로부터상기선박의위치정보를획득하는단계; 및상기획득된선박의위치정보와상기무선신호의수신신호세기에기초하여상기위치정보가유효한지여부를결정하는단계를포함하는선박위치검사방법이제공된다.
Abstract translation: 检查船位置的方法和设备技术领域本发明涉及一种检查船位置的方法和设备。 根据本发明,提供了一种方法,包括:从船接收无线电信号; 从接收到的无线电信号中获取船舶的位置信息; 并且基于获得的船舶的位置信息和无线电信号的接收信号强度来确定位置信息是否有效。
-
公开(公告)号:KR1020140105280A
公开(公告)日:2014-09-01
申请号:KR1020130019325
申请日:2013-02-22
Applicant: 한국전자통신연구원
CPC classification number: H04L63/1433 , H04L63/1408 , H04L63/1441 , H04L63/1458 , H04W12/12 , H04W84/12 , H04L12/22 , H04L41/00
Abstract: An apparatus for analyzing weakness of a wireless LAN is disclosed. According to the present invention, the apparatus for analyzing weakness of a wireless LAN comprises: a collecting unit for collecting a packet which transmits and receives from a wireless LAN service, an analyzing unit for analyzing the state of a network by using the collected packet, and an attack unit for executing wireless attacks against an object to be attacked by utilizing the state of the network and for controlling to change a mode of a device driver according to an operating mode.
Abstract translation: 公开了一种用于分析无线LAN的弱点的装置。 根据本发明,用于分析无线LAN的弱点的装置包括:收集单元,用于收集从无线LAN服务发送和接收的分组;分析单元,用于通过使用所收集的分组来分析网络的状态, 以及攻击单元,用于通过利用网络的状态对被攻击的对象执行无线攻击,并且根据操作模式来控制改变设备驱动程序的模式。
-
公开(公告)号:KR1020140071801A
公开(公告)日:2014-06-12
申请号:KR1020120139805
申请日:2012-12-04
Applicant: 한국전자통신연구원
Abstract: The present invention relates to a wireless device classifying apparatus for preventing wireless intrusion. The disclosed wireless device classifying apparatus includes an information collecting unit which collects information about a wireless device from an authentication server and a wireless terminal management server, an information storage unit which stores the collected information about the wireless device, and an information analyzing unit which analyzes the information about the wireless device based on a classification policy stored in a classification storage unit and classifies the wireless device according to an analysis result. Therefore, a wireless intrusion preventing service is efficiently performed by minutely classifying the wireless device.
Abstract translation: 本发明涉及一种防止无线入侵的无线设备分类装置。 所公开的无线设备分类装置包括从认证服务器和无线终端管理服务器收集关于无线设备的信息的信息收集单元,存储关于无线设备的收集的信息的信息存储单元,以及分析 基于存储在分类存储单元中的分类策略的关于无线设备的信息,并且根据分析结果对无线设备进行分类。 因此,通过对无线设备进行微小的分类来有效地执行无线入侵防御服务。
-
公开(公告)号:KR1020140071776A
公开(公告)日:2014-06-12
申请号:KR1020120139745
申请日:2012-12-04
Applicant: 한국전자통신연구원
IPC: H04L12/22
Abstract: The present invention detects attacks and unauthorized invasions from external or internal sources in a wireless LAN environment. The present invention can cooperate with an AP and invasion detection sensor in the wireless LAN environment to detect various types of invasions more swiftly which are generated in a wireless LAN based network such an unauthorized AP or service denial attack and to enable an AP to transmit a copy of critical message information to a threat management server, thereby increasing the intrusion detection performance.
Abstract translation: 本发明在无线LAN环境中检测来自外部或内部源的攻击和未授权的入侵。 本发明可以与无线LAN环境中的AP和入侵检测传感器配合,以便在诸如未授权的AP或服务拒绝攻击的无线LAN网络中产生的更迅速地检测各种类型的入侵,并且使AP能够发送 将关键消息信息复制到威胁管理服务器,从而增加入侵检测性能。
-
公开(公告)号:KR1020140071775A
公开(公告)日:2014-06-12
申请号:KR1020120139744
申请日:2012-12-04
Applicant: 한국전자통신연구원
CPC classification number: H04L9/0825 , H04L9/0866 , H04L9/0891 , H04L9/14 , H04L9/30 , H04L2209/16
Abstract: The present invention can prevent a malicious use of a terminal user or an internal attacker by dividing an encryption key of a user terminal into separate encryption key pieces and managing the separate encryption key pieces in order to provide a software based stable key management for an encryption key used in the user terminal in a platform operation environment such as a DRM, a game, Internet banking, and on-line shopping requiring reliability of a terminal by a server. Further, when a security key is upgraded due to a safety policy and other reasons, not in the case of exposing the security key, only a security key module can be separately updated without destroying a public key authentication.
Abstract translation: 本发明可以通过将用户终端的加密密钥划分成单独的加密密钥,并且管理单独的加密密钥件来防止恶意使用终端用户或内部攻击者,以便为加密提供基于软件的稳定密钥管理 在诸如DRM,游戏,网上银行的平台操作环境中使用的用户终端中的密钥,以及服务器需要终端的可靠性的在线购物。 此外,当由于安全策略和其他原因而升级安全密钥时,在公开安全密钥的情况下,只有安全密钥模块才能单独更新,而不会破坏公钥认证。
-
-
-
-
-
-
-
-
-