首页> 外文学位 >Development of human factor password guidelines for authentication with passwords.
【24h】

Development of human factor password guidelines for authentication with passwords.

机译:制定人为因素密码准则以进行密码认证。

获取原文
获取原文并翻译 | 示例

摘要

With technology being ever present in organizations, it is prudent to believe that new challenges develop along with new technological breakthroughs. In a world of ever increasing technological advances, users of technology are at risk of overloading human memory limitations as the number and complexity of passwords, user Id's, and other electronic identifiers increase. The role that understanding human factors (HF) limitations plays in the development of a security policy from a password authentication standpoint is in minimizing the demands that passwords place on the human memory system. The problem is defined to be "the identification and management of vulnerabilities due to the proliferation of personal and professional authentication needs in information systems." This research focused on the link between password and workload issues on human memory limitations. A model was developed for HF practitioners and information technology (IT) professionals to use in determining the vulnerabilities that password practices are producing on their information systems. This model enables researchers to identify specific password issues and workload issues that make a system vulnerable to security breaches.; This research evaluated how passwords and humans impact the security of information systems and how human error (HE) in information security can be reduced or eliminated in systems. This research produced methods that were useful in mitigating the risks that result when these demands exceed human capabilities by developing HF password guidelines for authentication with passwords. The HF guidelines for passwords were created that enable an individual to choose a strong password that is acceptable to the IT community yet be a password that does not exceed human memory limitations. The research indicated that reduced demands are placed on human memory capabilities since the passwords are comprised of data that can be easily retrieved from memory. This research helps those that design security policies through providing applicable and understandable simplistic guidelines for information system users that reduce the vulnerabilities produced by information systems within organizations and increase the trust that can be placed in the users of information systems.
机译:鉴于组织中一直存在技术,因此请谨慎地相信,随着新的技术突破而出现新的挑战。在技​​术进步日新月异的世界中,随着密码,用户ID和其他电子标识符的数量和复杂性的增加,技术用户面临超载人类存储限制的风险。从密码认证的角度来看,了解人为因素(HF)限制在安全策略的开发中所起的作用是最大程度地减少密码对人存储系统的要求。该问题被定义为“由于信息系统中个人和专业身份验证需求的激增而导致的漏洞的识别和管理”。这项研究的重点是密码和工作量问题之间有关人的内存限制的联系。为HF从业人员和信息技术(IT)专业人员开发了一个模型,用于确定密码实践在其信息系统上产生的漏洞。该模型使研究人员能够识别特定的密码问题和工作负载问题,这些问题使系统容易受到安全漏洞的攻击。这项研究评估了密码和人员如何影响信息系统的安全性以及如何减少或消除系统中信息安全中的人为错误(HE)。这项研究产生了一些方法,这些方法可通过开发用于使用密码进行身份验证的HF密码准则来缓解这些需求超出人类能力时所产生的风险。创建了用于密码的HF准则,使个人可以选择IT社区可以接受的强密码,但该密码应不超过人员存储限制。研究表明,由于密码由可以很容易地从内存中检索到的数据组成,因此对人的存储能力的要求降低了。这项研究通过为信息系统用户提供适用且易于理解的简化指南来帮助设计安全策略的人员,这些指南减少了组织内信息系统产生的漏洞并增加了对信息系统用户的信任。

著录项

  • 作者

    Carstens, Deborah Sater.;

  • 作者单位

    University of Central Florida.;

  • 授予单位 University of Central Florida.;
  • 学科 Engineering Industrial.
  • 学位 Ph.D.
  • 年度 2000
  • 页码 161 p.
  • 总页数 161
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 一般工业技术;
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号