首页> 外文学位 >Online safe vault.
【24h】

Online safe vault.

机译:在线安全保险库。

获取原文
获取原文并翻译 | 示例

摘要

The number of services used by people on the Internet continues to grow each day. Some of the services that are used on a daily basis are Electronic mail, Online Banking, Blogs, and Electronic Commerce. Most of these services require the creation of an account with the website. Websites often require the user to choose a username and a password to create an account, which are later used for authentication. The large number of services available on the Internet gives birth to the problem of remembering numerous passwords. Since every user cannot remember secure passwords easily, they tend to choose simple (and perhaps insecure) passwords or the same password for all of the services. There are security implications in either case.;This thesis focuses on designing an online service which manages a user's passwords securely. Since the application is hosted on the Internet, the passwords can be retrieved from anywhere, anytime using an Internet connection. A two-level security is designed using the username, password and the secret key combination and this increases the difficulty for the malicious users trying to retrieve other's passwords. The application encrypts these passwords locally using U.S. government approved 256-bit AES algorithm to ensure secure network communication and password storage. The use of this algorithm provides the ability to allow only the user and not even the application developer to retrieve the passwords. The thesis also focuses on providing anti-phishing and auto-login features in the application. The extensive use of AJAX for the design provides a highly responsive application with a rich user interface.;The thesis also compares the application with other similar systems namely Agatra, mySafeBox and PasswordSafe. The comparison highlights the strengths and weaknesses of each. It also explains how it overcomes the shortcomings of these existing similar systems. Also, discussed are the features that are not integrated in the system right now, but which would make good future enhancements.
机译:互联网上人们使用的服务数量每天都在增长。每天使用的一些服务是电子邮件,在线银行,博客和电子商务。这些服务大多数都需要在网站上创建一个帐户。网站通常要求用户选择用户名和密码来创建帐户,然后将其用于身份验证。 Internet上可用的大量服务催生了记住众多密码的问题。由于每个用户都不容易记住安全密码,因此他们倾向于为所有服务选择简单(甚至不安全)的密码或相同的密码。在这两种情况下都存在安全隐患。本论文着重于设计一种可以安全地管理用户密码的在线服务。由于该应用程序托管在Internet上,因此可以使用Internet连接随时随地检索密码。使用用户名,密码和秘密密钥组合设计了两级安全性,这增加了恶意用户尝试检索他人密码的难度。该应用程序使用美国政府批准的256位AES算法在本地加密这些密码,以确保安全的网络通信和密码存储。此算法的使用提供了仅允许用户甚至不允许应用程序开发人员检索密码的能力。本文还着重于在应用程序中提供反网络钓鱼和自动登录功能。 AJAX在设计中的广泛使用提供了一个具有丰富用户界面的高响应性应用程序。本文还将该应用程序与其他类似系统Agatra,mySafeBox和PasswordSafe进行了比较。比较突出显示了每种方法的优缺点。它还说明了它如何克服这些现有相似系统的缺点。此外,还讨论了目前尚未集成到系统中的功能,但这些功能将来会很好地进行增强。

著录项

  • 作者

    Shah, Pritesh J.;

  • 作者单位

    California State University, Long Beach.;

  • 授予单位 California State University, Long Beach.;
  • 学科 Computer Science.
  • 学位 M.S.
  • 年度 2008
  • 页码 82 p.
  • 总页数 82
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号