RISS 학술연구정보서비스

검색

인기 검색어

    다국어 입력

    http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.

    변환된 중국어를 복사하여 사용하시면 됩니다.

    예시)
    • 中文 을 입력하시려면 zhongwen을 입력하시고 space를누르시면됩니다.
    • 北京 을 입력하시려면 beijing을 입력하시고 space를 누르시면 됩니다.
    닫기

    내부자에 의한 정보유출 방지를 위한 보안시스템 구축에 관한 연구 = (A) Study on Construction of Security System for Prevent of Information Extracion by an Insider

    한글로보기

    https://www.riss.kr/link?id=T11007926

    • 0

      상세조회
    • 0

      다운로드
    서지정보 열기
    • 내보내기
    • 내책장담기
    • 공유하기
    • 오류접수

    부가정보

    국문 초록 (Abstract) kakao i 다국어 번역

    우리나라는 초고속인터넷 가입률 1위, 인터넷 사용자 수 세계 3위를 기록하고 유비쿼터스 기술을 활발하게 개발하는 등 세계 어느 나라보다도 인터넷을 이용한 정보화가 급속하게 추진하고 있다.
    하지만 정보화가 빠르게 진행될수록 그에 따른 역기능도 증가하고 있는데 특히, 최근 3년간 90조원에 달하는 산업기밀 유출 시도가 적발되는 등 중요 정보에 대한 사이버위협이 커지고 있는 실정이다. 더군다나 정보보호를 위한 지속적인 노력에도 불구하고 정보유출은 끊이지 않고 발생하고 있는데, 이는 정보유출의 80% 이상이 내부자에 의해 발생하고 있으나 기존 분산처리 시스템은 외부의 침입만을 막는데 치중하고 있기 때문이다.
    따라서 본 논문에서는 오늘날 가장 큰 보안위협으로 대두되고 있는 정보유출을 효과적으로 차단하기 위해 SSPIE(Security System for Prevent Information Extraction by an Insider)를 설계하였다.
    SSPIE는 중앙처리 시스템 구조로 구성되어 분산처리 시스템의 보안취약점인 저장장치와 입·출력장치에 의한 정보유출을 차단하였다.
    그리고 SSPIE는 사용자의 정보유출을 차단하기 위한 보안정책을 생성·적용하고, 보안정책 위반을 자동으로 탐지하여 대응하는 메커니즘으로 시스템의 내부 보안을 강화한 보안정책 기반 시스템이다.
    또한 사용자의 시스템 접속과 사용 기록, 보안위반 발생 현황, 보안정책 적용 결과 등 시스템의 상태를 모니터할 수 있으므로 체계적이고 일관된 보안관리 환경을 제공한다.
    번역하기

    우리나라는 초고속인터넷 가입률 1위, 인터넷 사용자 수 세계 3위를 기록하고 유비쿼터스 기술을 활발하게 개발하는 등 세계 어느 나라보다도 인터넷을 이용한 정보화가 급속하게 추진하고 ...

    우리나라는 초고속인터넷 가입률 1위, 인터넷 사용자 수 세계 3위를 기록하고 유비쿼터스 기술을 활발하게 개발하는 등 세계 어느 나라보다도 인터넷을 이용한 정보화가 급속하게 추진하고 있다.
    하지만 정보화가 빠르게 진행될수록 그에 따른 역기능도 증가하고 있는데 특히, 최근 3년간 90조원에 달하는 산업기밀 유출 시도가 적발되는 등 중요 정보에 대한 사이버위협이 커지고 있는 실정이다. 더군다나 정보보호를 위한 지속적인 노력에도 불구하고 정보유출은 끊이지 않고 발생하고 있는데, 이는 정보유출의 80% 이상이 내부자에 의해 발생하고 있으나 기존 분산처리 시스템은 외부의 침입만을 막는데 치중하고 있기 때문이다.
    따라서 본 논문에서는 오늘날 가장 큰 보안위협으로 대두되고 있는 정보유출을 효과적으로 차단하기 위해 SSPIE(Security System for Prevent Information Extraction by an Insider)를 설계하였다.
    SSPIE는 중앙처리 시스템 구조로 구성되어 분산처리 시스템의 보안취약점인 저장장치와 입·출력장치에 의한 정보유출을 차단하였다.
    그리고 SSPIE는 사용자의 정보유출을 차단하기 위한 보안정책을 생성·적용하고, 보안정책 위반을 자동으로 탐지하여 대응하는 메커니즘으로 시스템의 내부 보안을 강화한 보안정책 기반 시스템이다.
    또한 사용자의 시스템 접속과 사용 기록, 보안위반 발생 현황, 보안정책 적용 결과 등 시스템의 상태를 모니터할 수 있으므로 체계적이고 일관된 보안관리 환경을 제공한다.

    더보기

    다국어 초록 (Multilingual Abstract) kakao i 다국어 번역

    Korea is ranked as the first place in the subscription rate of super-high speed internet and as the third place in the number of internet users in the world, and actively develops the ubiquitous technology, it is possible to promote the information using internet more quicker than any other countries.
    However, the dysfunctions are increased following by fast growing of information (-oriented). Especially, during the recent three years, the attempts to extract the industrial secrets, which amounts to 90 trillion won, have been exposed, and so the cyber-threat to major information is increasing. Moreover, in spite of the continuous effort to protect information, the extraction of information occurs continuously. The reason is that more than 80% of information extractions occur owing to insiders, but the existing distributed processing system focuses on the external penetration.
    The purpose of this study is to design SSPIE (Security System for Prevent Information Extraction by an Insider) in order to block effectively the information extraction, which is emerging as the largest security threat nowadays.
    SSPIE is composed of the central processing system, and blocks the information extraction by the storage device and input/output device, which are the decisive vulnerable points for security in the existing distributed processing system.
    The SSPIE is the mechanism, which generates and applies the security policy for blocking the extraction of users' information, detects and responds to the violation of security policy automatically. Also, SSPIE is the security policy-based system which strengthens the internal security of system.
    The SSPIE provides the systematic and consistent environment of security management so as to monitor the system conditions including users' system connection, use record, the actual state of security violation occurrence, and the application results of security policy.
    번역하기

    Korea is ranked as the first place in the subscription rate of super-high speed internet and as the third place in the number of internet users in the world, and actively develops the ubiquitous technology, it is possible to promote the information us...

    Korea is ranked as the first place in the subscription rate of super-high speed internet and as the third place in the number of internet users in the world, and actively develops the ubiquitous technology, it is possible to promote the information using internet more quicker than any other countries.
    However, the dysfunctions are increased following by fast growing of information (-oriented). Especially, during the recent three years, the attempts to extract the industrial secrets, which amounts to 90 trillion won, have been exposed, and so the cyber-threat to major information is increasing. Moreover, in spite of the continuous effort to protect information, the extraction of information occurs continuously. The reason is that more than 80% of information extractions occur owing to insiders, but the existing distributed processing system focuses on the external penetration.
    The purpose of this study is to design SSPIE (Security System for Prevent Information Extraction by an Insider) in order to block effectively the information extraction, which is emerging as the largest security threat nowadays.
    SSPIE is composed of the central processing system, and blocks the information extraction by the storage device and input/output device, which are the decisive vulnerable points for security in the existing distributed processing system.
    The SSPIE is the mechanism, which generates and applies the security policy for blocking the extraction of users' information, detects and responds to the violation of security policy automatically. Also, SSPIE is the security policy-based system which strengthens the internal security of system.
    The SSPIE provides the systematic and consistent environment of security management so as to monitor the system conditions including users' system connection, use record, the actual state of security violation occurrence, and the application results of security policy.

    더보기

    목차 (Table of Contents)

    • Ⅰ. 서론 = 1
    • Ⅱ. 인터넷의 발달과 내부자 위협 = 3
    • 1. 인터넷의 발달과 정보유출의 위협 = 3
    • 2. 최근 사이버침해 위협 동향 = 4
    • 3. 내부자에 의한 정보유출 = 6
    • Ⅰ. 서론 = 1
    • Ⅱ. 인터넷의 발달과 내부자 위협 = 3
    • 1. 인터넷의 발달과 정보유출의 위협 = 3
    • 2. 최근 사이버침해 위협 동향 = 4
    • 3. 내부자에 의한 정보유출 = 6
    • Ⅲ. 분산처리 시스템과 중앙처리 시스템 = 8
    • 1. 분산처리 시스템 = 8
    • 2. 중앙처리 시스템 = 11
    • Ⅳ. 정보유출 방지를 위한 보안 시스템 설계 = 14
    • 1. SSPIE의 필요성 = 14
    • 2. SSPIE의 전체 구성도 = 16
    • 3. SSPIE의 특징 = 17
    • 4. SSPIE의 내부 구조와 블록의 기능 = 18
    • 5. SSPIE에서의 보안정책의 흐름 = 40
    • 6. SSPIE의 내부 기능 흐름도 = 41
    • 7. SSPIE의 내부자에 의한 정보유출 차단 시나리오 = 42
    • Ⅴ. 결론 = 45
    • 참고문헌 = 47
    • ABSTRACT = 48
    더보기

    분석정보

    View

    상세정보조회

    0

    Usage

    원문다운로드

    0

    대출신청

    0

    복사신청

    0

    EDDS신청

    0

    동일 주제 내 활용도 TOP

    더보기

    주제

    연도별 연구동향

    연도별 활용동향

    연관논문

    연구자 네트워크맵

    공동연구자 (7)

    유사연구자 (20) 활용도상위20명

    이 자료와 함께 이용한 RISS 자료

    나만을 위한 추천자료

    해외이동버튼