근거리 통신망은 인접 지역에 분산된 정보 기기를 상호 연결하여 고속으로 정보를 전송하는 통신망으로서 많은 발전을 하고 있다. 그러나, 근거리 통신망은 통신망 구성 형태 및 엑세스 방...

http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.
변환된 중국어를 복사하여 사용하시면 됩니다.
https://www.riss.kr/link?id=T1979503
서울 : 광운대학교 대학원, 1992
1992
한국어
028.65 판사항(3)
서울
92p. : 삽도 ; 26cm.
0
상세조회0
다운로드근거리 통신망은 인접 지역에 분산된 정보 기기를 상호 연결하여 고속으로 정보를 전송하는 통신망으로서 많은 발전을 하고 있다. 그러나, 근거리 통신망은 통신망 구성 형태 및 엑세스 방...
근거리 통신망은 인접 지역에 분산된 정보 기기를 상호 연결하여 고속으로 정보를 전송하는 통신망으로서 많은 발전을 하고 있다. 그러나, 근거리 통신망은 통신망 구성 형태 및 엑세스 방식에 의해 정보보호의 취약성을 가짐으로써, 이를 해결하기 위한 근거리 통신망의 정보보호 구조와 정보보호 프로토콜의 연구가 매우 중요한 과제로 대두되고 있다. 근거리 통신망의 정보보호 프로토콜은 현재 IEEE 802.10 표준안인 SILS가 있으나, 표준안에 대한 일부분만 draft가 발표되어 있다.
본 논문에서는 근거리 통신망에서 LLC와 MAC 계층 사이에서 정보보호 서비스를 수행하도록 하는 정보보호 프로토콜을 제안하였다. 근거리 통신망에서 필요한 정보보호 서비스를 제공하기 위하여 Time Quantum에 의한 암호화 키이 분배 프로토콜을 제안하고, 제안된 키이 분배 프로토콜에 의해 분배된 암호화 키이를 사용하여 LLC/MAC 서비스 프리미티브를 이용한 정보보호 프로토콜(SP2 : Security Protocol 2)을 제안하였다.
제안된 암호화 키이 분배 프로토콜은 암호화 키이에 Time Quantum을 부여하여 암호화 키이 사용 시간을 제한함으로써, 각 일정 길이의 메시지마다에 서로 다른 암호화 키이틀 분배하는 방식이다. 따라서, PDU 딘위의 도청으로 인하여 암호화 키이의 노출이 발생 하더라도 전체 메세지의 내용은 알 수 없으므로 정보보호 및 안전성을 더욱 강화한 특징을 갖는다. 또, 제안된 키이 분배프로토콜은 키이의 Concurrency와 상대방의 인증을 더욱 확실하게 할 수 있었다.
분배된 암호화 키이를 이용한 SP2 프로토콜을 구성하기 위하여 DES 알고리즘의 ECB, CBC 모드와 FIPS외 DAA를 이용하였다. 제안된 SP2 프로토콜은 근거리 통신망에서 필요한 정보보호 서비스인 데이타 발신처 인증, 데이타 비밀유지, 데이타 무결성, 액세스 제어 서비스를 제공 할 수 있었다.
다국어 초록 (Multilingual Abstract)
LAN (Local Area Network) which transfers data fastly between interconected computers and peripherals has developed greatly. But LAN has a security problem from its topology and access method. Thus study about this solution become very important IEEE 8...
LAN (Local Area Network) which transfers data fastly between interconected computers and peripherals has developed greatly. But LAN has a security problem from its topology and access method. Thus study about this solution become very important IEEE 802.10 SLIS recommeded the security protocol of LAN partly but futher study is needed currently.
This paper proposes a security protocol that excutes a security service between LLC and MAC layer in LAN. This paper proposes an encoded key distribution method using time quantum for LAN security and presents SP2(Security Protocol 2) protocol which applies LLC/MAC service primitive using distributed encoded key. The encoded key distribuion method gives different encoded key to each fixed length message by restricting encoded key usage time within time quantum.
Although the encoded key is disclosed by PDU listening, entire message can not be decoded, and security and safty is better than existed protocol. Also the proposed key distribution method certified key concurrency and data origin authentification more certainly. For constructing SP2 protocol, it uses ECB and CBC mode of DES algorithm and DAA of FIPS.
The proposed SP2 protocol can provide necessary LAN security services(data origin authentification, data confidentiality, data integrity, and access control service).
목차 (Table of Contents)