The Access Control Study of Implementing Private Cloud for Enterprise

碩士 === 中華大學 === 資訊管理學系碩士在職專班 === 101 === Small enterprises need accurate and efficient reaction speed in their business processes. There are diversity information needs in different departments, locations, or offices around the world. When small enterprises adopt private cloud and consider the cost...

Full description

Bibliographic Details
Main Authors: Shih-Pin Lo, 羅仕斌
Other Authors: Mei-Yu Wu
Format: Others
Language:zh-TW
Published: 2013
Online Access:http://ndltd.ncl.edu.tw/handle/bmzde7
Description
Summary:碩士 === 中華大學 === 資訊管理學系碩士在職專班 === 101 === Small enterprises need accurate and efficient reaction speed in their business processes. There are diversity information needs in different departments, locations, or offices around the world. When small enterprises adopt private cloud and consider the cost condition, SSL VPN (Secure Sockets Layer Virtual Private Network) gateway is a possible solution. Integrating internal enterprise resource planning application to build a private cloud, the external users of company may use mobile device to access control resources at any time and any place, as long as the network. The main purpose of this research is to achieve the authentication of access control. The proposed approach adopts three-layers authentication, namely (1) using AD/LDAP to authenticate the user id and password (2) using dynamic password generated from MOTP Token to improve authentication (3) using device fingerprint verification to confirm that the mobile device was pre-authenticated. Based on the proposed three-layer authentication, the information security of company could be achieved and further increasing the feasibility of small enterprises to adopt enterprise private cloud.