首页> 外文期刊>International Journal of Computer Systems Science & Engineering >A java card security framework: requirement analysis and enforcing techniques
【24h】

A java card security framework: requirement analysis and enforcing techniques

机译:Java卡安全性框架:需求分析和实施技术

获取原文
获取原文并翻译 | 示例
           

摘要

In this paper, we present a novel security framework for enhancing the password management and user authentication of a Java card systematically. It consists of two parts, security requirement analysis and enforcing techniques. For the security requirement analysis, we adopt the OWASP guideline and suggest 16 items that are needed to be addressed methodically at the various stages of software development lifecycle. As the security enforcing techniques, we propose two advanced schemes, multimodal password management and secure channel. Real implementation based experiments have shown that the two schemes indeed improve the confidentiality and manageability with lightweight space and time overheads. In addition, we have observed that the 16 items can be utilized effectively to verify the security level of the schemes.
机译:在本文中,我们提出了一种新颖的安全框架,用于系统地增强Java卡的密码管理和用户身份验证。它由安全需求分析和执行技术两部分组成。对于安全需求分析,我们采用OWASP指南,并建议在软件开发生命周期的各个阶段需要系统解决的16个项目。作为安全实施技术,我们提出了两种高级方案:多模式密码管理和安全通道。基于实际实现的实验表明,这两种方案确实以轻量级的空间和时间开销提高了机密性和可管理性。此外,我们观察到可以有效利用这16个项目来验证方案的安全级别。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号