针对客户端HTTP攻击的基于web代理的认证授权机制

Mrunali Bukkawar, Pathan Mohd. Shafi
{"title":"针对客户端HTTP攻击的基于web代理的认证授权机制","authors":"Mrunali Bukkawar, Pathan Mohd. Shafi","doi":"10.4018/IJSE.2017010105","DOIUrl":null,"url":null,"abstract":"Therehasbeenahugedevelopmentinhowtoreadadatafromsensordevicesuchasinfrared(IR) device, temperature device, etc. Sensor data collection has wide issues of information security. Informationsecurityisalsothecurrenttopicofdiscussionduetoitsuseinapplicationinvarious fields.Therearenumberofusershavingdifferentuserroleswithsmartdevices.Thesepersonneluse devicesforvariouspurposeslikeaccesstheinformationfromvariousdevicessuchaswirelesssensors sothatasecureandefficientmutualauthenticationandauthorizationschemeisusedinthesmartgrid networktopreventvariousinsiderandoutsiderattacksoninformationordata.Therefore,proposed workdesignnovelapproachtoovercomethatattack,malicioususeranddevicebyauthentication andauthorization.Thetechniqueofauthenticateauthenticateseachuserroledynamicallyusinga signaturebasedaccesscontrolandverifiestheidentityofusertogetherwiththedevice.Accesscontrol mechanismnotonlypreventsunauthorizedaccessbutalsopreventmisuseofdata.Existingsystem generatessharedkeyforeachsessionbutitgenerateshugeoverheadandnotsuitablefortherealworldapplicationssoinproposedsystemweusedpublickeycryptographytoreducetheoverhead. KEyWoRdS Anomaly Detection, Authentication, Authorization, DDoS Attack, SQL Injection","PeriodicalId":272943,"journal":{"name":"Int. J. Synth. Emot.","volume":"76 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1900-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Web-Proxy-Based Authentication and Authorization Mechanism Against Client-Based HTTP Attacks\",\"authors\":\"Mrunali Bukkawar, Pathan Mohd. Shafi\",\"doi\":\"10.4018/IJSE.2017010105\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Therehasbeenahugedevelopmentinhowtoreadadatafromsensordevicesuchasinfrared(IR) device, temperature device, etc. Sensor data collection has wide issues of information security. Informationsecurityisalsothecurrenttopicofdiscussionduetoitsuseinapplicationinvarious fields.Therearenumberofusershavingdifferentuserroleswithsmartdevices.Thesepersonneluse devicesforvariouspurposeslikeaccesstheinformationfromvariousdevicessuchaswirelesssensors sothatasecureandefficientmutualauthenticationandauthorizationschemeisusedinthesmartgrid networktopreventvariousinsiderandoutsiderattacksoninformationordata.Therefore,proposed workdesignnovelapproachtoovercomethatattack,malicioususeranddevicebyauthentication andauthorization.Thetechniqueofauthenticateauthenticateseachuserroledynamicallyusinga signaturebasedaccesscontrolandverifiestheidentityofusertogetherwiththedevice.Accesscontrol mechanismnotonlypreventsunauthorizedaccessbutalsopreventmisuseofdata.Existingsystem generatessharedkeyforeachsessionbutitgenerateshugeoverheadandnotsuitablefortherealworldapplicationssoinproposedsystemweusedpublickeycryptographytoreducetheoverhead. KEyWoRdS Anomaly Detection, Authentication, Authorization, DDoS Attack, SQL Injection\",\"PeriodicalId\":272943,\"journal\":{\"name\":\"Int. J. Synth. Emot.\",\"volume\":\"76 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"1900-01-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Int. J. Synth. Emot.\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.4018/IJSE.2017010105\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Int. J. Synth. Emot.","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.4018/IJSE.2017010105","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

摘要

Therehasbeenahugedevelopmentinhowtoreadadatafromsensordevicesuchasinfrared(IR)设备、温度设备等。传感器数据收集存在大量信息安全问题。Informationsecurityisalsothecurrenttopicofdiscussionduetoitsuseinapplicationinvarious fields.Therearenumberofusershavingdifferentuserroleswithsmartdevices。Thesepersonneluse devicesforvariouspurposeslikeaccesstheinformationfromvariousdevicessuchaswirelesssensors sothatasecureandefficientmutualauthenticationandauthorizationschemeisusedinthesmartgrid networktopreventvariousinsiderandoutsiderattacksoninformationordata。Therefore,proposed workdesignnovelapproachtoovercomethatattack,malicioususeranddevicebyauthentication andauthorization。Thetechniqueofauthenticateauthenticateseachuserroledynamicallyusinga signaturebasedaccesscontrolandverifiestheidentityofusertogetherwiththedevice。Accesscontrol mechanismnotonlypreventsunauthorizedaccessbutalsopreventmisuseofdata。Existingsystem generatessharedkeyforeachsessionbutitgenerateshugeoverheadandnotsuitablefortherealworldapplicationssoinproposedsystemweusedpublickeycryptographytoreducetheoverhead。关键词异常检测,认证,授权,DDoS攻击,SQL注入
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Web-Proxy-Based Authentication and Authorization Mechanism Against Client-Based HTTP Attacks
Therehasbeenahugedevelopmentinhowtoreadadatafromsensordevicesuchasinfrared(IR) device, temperature device, etc. Sensor data collection has wide issues of information security. Informationsecurityisalsothecurrenttopicofdiscussionduetoitsuseinapplicationinvarious fields.Therearenumberofusershavingdifferentuserroleswithsmartdevices.Thesepersonneluse devicesforvariouspurposeslikeaccesstheinformationfromvariousdevicessuchaswirelesssensors sothatasecureandefficientmutualauthenticationandauthorizationschemeisusedinthesmartgrid networktopreventvariousinsiderandoutsiderattacksoninformationordata.Therefore,proposed workdesignnovelapproachtoovercomethatattack,malicioususeranddevicebyauthentication andauthorization.Thetechniqueofauthenticateauthenticateseachuserroledynamicallyusinga signaturebasedaccesscontrolandverifiestheidentityofusertogetherwiththedevice.Accesscontrol mechanismnotonlypreventsunauthorizedaccessbutalsopreventmisuseofdata.Existingsystem generatessharedkeyforeachsessionbutitgenerateshugeoverheadandnotsuitablefortherealworldapplicationssoinproposedsystemweusedpublickeycryptographytoreducetheoverhead. KEyWoRdS Anomaly Detection, Authentication, Authorization, DDoS Attack, SQL Injection
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信