• Refine Query
  • Source
  • Publication year
  • to
  • Language
  • 22
  • 18
  • 4
  • Tagged with
  • 22
  • 22
  • 5
  • 5
  • 5
  • 5
  • 4
  • 4
  • 4
  • 4
  • 4
  • 4
  • 4
  • 4
  • 4
  • About
  • The Global ETD Search service is a free service for researchers to find electronic theses and dissertations. This service is provided by the Networked Digital Library of Theses and Dissertations.
    Our metadata is collected from universities around the world. If you manage a university/consortium/country archive and want to be added, details can be found on the NDLTD website.
21

可搜尋式加密和密文相等性驗證 / Searchable encryption and equality test over ciphertext

黃凱彬, Huang, Kaibin Unknown Date (has links)
本文深入探討許多基於公開金鑰密碼和通行碼的密文運算方案。首先第一個主題是「公開金鑰密碼」,從其基本架構和安全定義開始,透過文獻探討逐步地討論公開金鑰密碼學的各項特性、以及討論公開金鑰密碼中兩個常見的密文運算:同態加密系統和可交換性加密系統。同態運算是針對同一把公鑰加密的不同密文間的運算:兩個以同一把公鑰加密的密文可以在不解密的前提下進行運算,進而成為另一個合法密文。這個密文運算的結果等同於兩個明文做運算後再以該公鑰加密。可交換性加密系統是一個容許重複的加密系統:已用甲方公鑰加密的密文可以再度用乙方公鑰再加密,進而之成一個多收件者的密文。第一個主題圍繞著這兩個密文運算的技巧討論相關的加密方案。接下來第二個研究的的主題是「基於公開金鑰密碼之密文相等性驗證」,「密文相等性驗證」是密文運算中一個基礎但重要的功能,經授權的測試者可以在不解密密文的前提下,驗證兩個加密後的訊息是否相等。此外,除了相等或不相等之外,測試者無法得知密文中的其他訊息。「基於公開金鑰密碼之密文相等性驗證」相當於在「公開金鑰密碼」的基礎上,再加上「授權」和「密文相等性驗證」的功能。其中「授權」的範圍和「授權」的設計,直接影響到該方案的實用性及安全性,本文提出三個關於「授權」的主題:「單一密文授權」、「相容性授權」和「語意安全授權」。第三個研究主題是「 可搜尋式加密系統」, 常被應用於以下情境:使用者一個檔案及數個「關鍵字」進行加密,然後儲存在雲端伺服器上。當使用者想要對加密檔案進行關鍵字搜尋時,他可以自訂幾個想搜尋的「關鍵字」並對雲端伺服器發出搜尋要求。在收到搜尋要求後,雖然關鍵字都是加密儲存,仍可利用「可搜尋式加密」技巧將符合關鍵字搜尋的檔案傳回給收件者。整個過程中檔案和關鍵字都被加密保護,伺服器無法得知其儲存及搜尋內容。本文提出兩個「 可搜尋式加密系統」,分別是「子集合式多關鍵字可搜尋式加密系統」和「基於通行碼的可搜尋式加密系統」 。 / This dissertation addresses the research about ciphertext computation skills over public key encryption and password-authenticated cryptosystems. The first topic is related to the public key encryption, the framework and security notions for public key encryption are revised; and two common ciphertext-computable public key encryptions including homomorphic encryption and commutative encryption are following discussed. The homomorphic encryption denotes computations over ciphertexts encrypted using the same public key. The homomorphic operation over ciphertexts may be equal to the encryption of a new message computed between two original messages. In terms of commutative encryption, it stands for a repeated encryption system that Alice’s ciphertext can be duplicated encrypted using Bob’s public key. A dual-receiver ciphertext will appear after the commutative encryption. Following, based on the public key encryption, the second topic focuses on the public key encryption with equality test schemes, the basic and fundamental ciphertext computation. Briefly, the user-authorized testers are able to verify the equivalence between messages hidden in ciphertexts after they acquire trapdoors from ciphertext receivers; and the ciphertexts were never decrypted in the whole equality testing process. The scope and architecture of the authorization directly influence the application and security for equality test schemes. Three authorizations including “cipher-bound authorization”, “compatible authorization” and “semantic secure authorization” will be proposed. The third topic is keyword search. It works in the following scenario: a user outsources encrypted files and encrypted keywords on a cloud file storage system; then, when needed, the user is able to request a search query to the file server, which is corresponding to some encrypted keywords. Although files and keywords are encrypted, the server is still able to verify the match-up and return related files to the user. Two researches about keyword search are proposed: the subset multi-keyword search based on public key encryption, and the password-authenticated keyword search.
22

IC卡應用發展趨勢之研究

徐核朋, hsu,Hopeng Unknown Date (has links)
隨著IC卡的使用,它正深深地影響著我們的未來生活方式,其應用發展趨勢也是值得我們重視的課題。本研究主要從「IC智慧卡成為主流的資訊載具」、「我國內政部、衛生署、交通部及財政部等中央各部,對IC卡之應用發展各擁管轄範圍且各自發展」、「民間業者各自引進或發行電子現金儲值卡」等三方面,說明其可能造成的結果及相關重要課題,以作為本研究之動機。 本研究從我國IC卡應用發展相關文獻中,搜集和本研究主題較相關者,提出IC卡票證整合、IC卡安全整合機制及IC卡規模經濟等值得研究課題,以作為進行IC卡應用發展趨勢研究之參考。 對於IC卡目前應用發展現況,本研究主要說明政府推動國民卡的沿革、政府推動自然人憑證的沿革、政府推動健保IC卡沿革及交通IC票卡目前應用發展,以利了解我國IC卡目前應用發展現況。 針對交通IC票卡,本研究說明北、中、南各地區電子票證IC智慧卡應用發展,包括悠遊卡、台中e卡通、Taiwan Money Card等,後續說明IC票卡規格發展及交通IC票卡系統架構發展,以更深入了解交通IC票卡目前應用發展現況。 本研究針對IC卡應用發展問題,進行更深入的分析,主要論述面向,包括技術面(IC卡規格、IC卡系統架構) 、法令面(IC卡法令規定)、經營管理面(含IC卡管理組織、發行、經營模式)等方面,以發掘問題,分析問題及提出解決策略。 本研究針對所提出之解決策略,予以聚焦,以提出更關鍵的解決策略,包括:(一)技術面:1.建立IC卡共同憑證。2.建立IC卡安全認證。3.建立IC卡整合架構。(二)法律面:1.修改銀行法及交通運輸相關法規中不合IC卡現有運作之規定。2.增訂電子票證法規。(三)經營管理面:1.建立規模經濟發卡量。2.建立IC卡發卡機構經營模式。 3.建立憑證認證機構公信力。4.建立IC卡資訊交換中心。 本研究針對三個構面,提出核心解決策略為「一卡通用」及其整體解決架構及實施步驟,且對整體解決策略之構想方案,提出IC卡卡片規格整合矩陣架構圖,以找出更為適當的IC卡規格方案,該矩陣架構圖,以「共同憑證一卡整合」及「多憑證一卡整合」二構面為縱軸,及「IC卡規格中不存放各類別資料」和「IC卡規格中存放各類別資料」二構面為橫軸,提出四種IC卡片規格整合架構,並列出其優缺點,經研析後,本研究建議初期以具有共同憑證及各類別憑證但不存放各類別資料之架構,作為一卡通用整合規格初期架構,稱為「IC卡共同多憑證不存放各類別資料一卡整合」,最後本研究提出長期一卡通用願景,以「IC卡共同憑證不存放各類別資料一卡整合」為目標。 本研究之結論為:1.我國各類別IC卡規格各行其道,未有整合前瞻性。2.各產業IC卡系統運作架構未整合,導致我們卡滿為患。3.IC卡應用發展於法律面應積極訂定「交通運輸業電子票證法」。4.「非銀行不得發行現金儲值卡」已超越母法規定應修法。5.IC票卡發行機構透過銀行發卡可享有發卡權利金等商機。6.建立IC票卡資訊中心作為全台IC票卡整合運作中心。7.IC票卡業者透過整合可增加發卡量,共創雙贏。8.IC卡於技術面應發展整合技術,以達成一卡通用目標。9.IC卡一卡通用宜建立IC卡資訊交換中心及憑證整合認證中心。10.IC卡一卡通用宜建立整體解決架構之實施步驟。11.IC卡一卡通用卡片規格整合可建立矩陣架構圖,以利分析。12.IC卡一卡通用共同憑證之運作於技術上為可行方案。 最後建議未來可持續探討之課題:1.IC卡一卡通用宜建立認證API(Application Programming Interface)程式介面及標準作業程序。2.IC卡一卡通用宜建立憑證整合認證中心及資訊中心之經營模式。3.IC卡一卡通用宜評估對IC卡產業及憑證認證產業之衝擊。 / A study of trends in the applications and developments of IC cards The IC card is being used widely and it will deeply affect our future living mode. Therefore, trends in its applications and developments have become important subjects of study. This research explores the possible outcome and related important subjects for the utilization of IC card, based on the following three propositions. 1. The IC card is one of the modern world’s primary information media. 2. Government units such as the Ministry of the Interior, the Ministry of Transportation and Communications, the Ministry of Finance ROC, the Department of Health and the Executive Yuan ROC all have jurisdiction over the development and control of development and potential applications of the IC card. 3. Private enterprises have introduced or developed electronic cash-stored cards. The information related to the research subject was collected from the relevant literatures in regard to the applications and developments of IC card in Taiwan, presenting the current safety and integration mechanism of IC ticket cards and the economical magnitude of IC card use, which are both topics that should be taken into consideration in the study of the applications and developments of IC cards. Based on the current situation of the applications and developments for IC cards, the main purpose of this research is to show the evolution of IC cards promoted by the our government, including National Card, Citizen Digital Certificate IC Card, National Health Insurance IC Card, as well as current applications and developments of the Transportation IC Card, in order to help understand the current situation for the applications and developments for existing IC cards in Taiwan. In the Transportation sector, this research shows the applications and developments of various IC smart cards in north, central and south Taiwan, i.e. Easy Card, Taichung e-Cartoon Ticket Card and Taiwan Money Card. It also shows the development of the specification for IC Ticket Cards as well as the development of Transportation IC Cards’ systematic infrastructure, in order to help understand the present situation for the applications and developments of a Transportation IC Card. This research is an analysis of IC card’s applications and developments, covering technical issues (specification and systematic framework of IC card), legislation issues (laws and regulations for IC Card), management issues (operation and administration, release and business model for IC cards), so as to discover and analyze the possible problems as well as propose solutions. Focusing on strategies for finding solutions, presenting more critical strategies for IC Cards, consisting of: 1. Technical: (1) To establish a common certificate (2) To establish safety authentication (3) To establish integration infrastructure 2. Legislation: (1) To revise the Banking Law as well as the laws and regulations relating to public transportation, which are not suitable for the existing operations (2) To revise and augment the laws and regulations for electronic tickets 3. Management: (1) To establish an economic circulation of scale (2) To establish the management pattern for card-issuing organization (3) To establish public credibility for a certificate authentication organization (4) To establish information interchange center To consolidate the above-mentioned three areas, this research proposes a core strategic solution – the concept of “one card for common use (All-in-One Card)” along with integrated solution scheme and operation steps. In addition, for an overall solution strategic plan, in this research it also presents a matrix composition for the integration of specifications to discover a more applicable specification scheme for the IC card. The matrix composition is proposed in four types of framework of specification integration with a file of advantages/disadvantages, based on the concept of X, Y coordinate system – X axis being “One Card integrated with Common Certificate” and “One Card integrated with Multi-Certificates”, Y axis being “No data deposited in the IC card specification” and “All sorts of data deposited in the IC the card specification”. Through detailed research and analysis, it is suggested that at the primary stage, to create the “One card for common use” with an integration of “Common Certificate and Multi-Certificates but no data depositing in the IC card specification”, which is called “One card with common and multi-certificates but no any data deposited in the specification.” The long-term goal will be to achieve “One card with common certificate only and no data deposited in the card specification” for long-term use. Conclusions: 1. In this country, various IC cards have their own specifications and there is still no prospect for integration. 2. The IC card system being used by different industries is still not being integrated, so the market is full of different IC cards. 3. The enactment of the “law on electronic tickets” should be pursued more vigorously for the IC card applications and developments. 4. The stipulation of “A non-bank may not issue a stored value card” might have overtaken the stipulation of “Banking Act”. It should be amended. 5. So long as the IC Ticket Card agency issues IC cards through a bank, the agency will possess the business opportunity of charging the bank a card-issuing fee. 6. To establish an IC Ticket Card information center to integrate the operation of the many IC ticket cards using in Taiwan area. 7. It will be a win-win situation, if IC ticket card operations can be integrated, and this will increase card-issuing quantity as well. 8. On the technical front, integration technology for IC cards should be developed in order to achieve the goal of an “All-in-One Card”. 9. An “IC Card Information Interchange Center” and an “Authentication Center of Certificate Integration” for the “All-in-One Card” should be established. 10. A standardized operational procedure should be established for an overall solution to the “All-in-One IC Card”. 11. The integration of the specifications of the “All-in-One IC Card” can be done through a matrix composition to assist analysis. 12. Technically, an “All-in-One IC Card” with “Common Certificate” is a feasible plan. In the end, this research also offers suggestion on valuable topics that can be the subject of continued discussion in the future: 1. “All-in-One IC Cards” should have an authentication with API (Application Programming Interface) program as well as a standard operational procedure. 2. A business model for “IC Card Information Center” and “Authentication Center of Certificate Integration” should be established. 3. An evaluation of the impact on the IC card industry and the certificate authentication industry should be made.

Page generated in 0.0179 seconds