Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication
碩士 === 國立成功大學 === 電信管理研究所 === 104 === Safety and convenience are two key factors of the access control systems. In semi-open environments, it’s difficult to manage access control due to the variety of users. In this case, multilayered delegation provides flexibility in access control systems. But in...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2016
|
Online Access: | http://ndltd.ncl.edu.tw/handle/87422016721139409765 |
id |
ndltd-TW-104NCKU5435007 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-104NCKU54350072017-01-26T04:21:14Z http://ndltd.ncl.edu.tw/handle/87422016721139409765 Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication 以近場通訊技術設計具多層次授權與次數及時效許可證管理的門禁平台 Shih-JieYen 顏士傑 碩士 國立成功大學 電信管理研究所 104 Safety and convenience are two key factors of the access control systems. In semi-open environments, it’s difficult to manage access control due to the variety of users. In this case, multilayered delegation provides flexibility in access control systems. But in past access control systems, keys revocation is the major issue. So an ideal access control system require four characteristics: safe, convenient unlocking, convenient revocation and delegation ability. However, there are disadvantages in all of related works, such as the demand of Internet, no multilayered delegation, the lack of key life cycle and incomplete revocation. To improve the weaknesses of related works, provide administrators facilitation to manage keys and opearte the model in all scenarios. This study proposes Multilayered Delegable Access Control Model (MDAC), which combines the features of semi-offline architecture and multi-level authorization mechanism. It’s designed by RSA encryption, a chain of binding hardware serial numbers, and the system architecture can be applied to multi-level delegation. This work can not only effectively avoid key copying, tampering and other security risks, but execute delegation ability without going through the server. Furthermore, it’s possible to unlock the doors and revoke the key when smartphones are offline, and has the feature of key life cycle management including key valid period and access times control. User’s key is always limited by the life cycle whenever he/she is unlocking the door or delegating the key to someone. Our proposal provides administrators facilitation to manage keys and is able to apply to all access control scenarios. Wei-Hsun Lee 李威勳 2016 學位論文 ; thesis 91 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立成功大學 === 電信管理研究所 === 104 === Safety and convenience are two key factors of the access control systems. In semi-open environments, it’s difficult to manage access control due to the variety of users. In this case, multilayered delegation provides flexibility in access control systems. But in past access control systems, keys revocation is the major issue. So an ideal access control system require four characteristics: safe, convenient unlocking, convenient revocation and delegation ability.
However, there are disadvantages in all of related works, such as the demand of Internet, no multilayered delegation, the lack of key life cycle and incomplete revocation. To improve the weaknesses of related works, provide administrators facilitation to manage keys and opearte the model in all scenarios. This study proposes Multilayered Delegable Access Control Model (MDAC), which combines the features of semi-offline architecture and multi-level authorization mechanism. It’s designed by RSA encryption, a chain of binding hardware serial numbers, and the system architecture can be applied to multi-level delegation. This work can not only effectively avoid key copying, tampering and other security risks, but execute delegation ability without going through the server. Furthermore, it’s possible to unlock the doors and revoke the key when smartphones are offline, and has the feature of key life cycle management including key valid period and access times control. User’s key is always limited by the life cycle whenever he/she is unlocking the door or delegating the key to someone. Our proposal provides administrators facilitation to manage keys and is able to apply to all access control scenarios.
|
author2 |
Wei-Hsun Lee |
author_facet |
Wei-Hsun Lee Shih-JieYen 顏士傑 |
author |
Shih-JieYen 顏士傑 |
spellingShingle |
Shih-JieYen 顏士傑 Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication |
author_sort |
Shih-JieYen |
title |
Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication |
title_short |
Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication |
title_full |
Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication |
title_fullStr |
Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication |
title_full_unstemmed |
Multilayered Delegable Access Control Platform with Times and Period Token Management by Near Field Communication |
title_sort |
multilayered delegable access control platform with times and period token management by near field communication |
publishDate |
2016 |
url |
http://ndltd.ncl.edu.tw/handle/87422016721139409765 |
work_keys_str_mv |
AT shihjieyen multilayereddelegableaccesscontrolplatformwithtimesandperiodtokenmanagementbynearfieldcommunication AT yánshìjié multilayereddelegableaccesscontrolplatformwithtimesandperiodtokenmanagementbynearfieldcommunication AT shihjieyen yǐjìnchǎngtōngxùnjìshùshèjìjùduōcéngcìshòuquányǔcìshùjíshíxiàoxǔkězhèngguǎnlǐdeménjìnpíngtái AT yánshìjié yǐjìnchǎngtōngxùnjìshùshèjìjùduōcéngcìshòuquányǔcìshùjíshíxiàoxǔkězhèngguǎnlǐdeménjìnpíngtái |
_version_ |
1718410457844285440 |