110 likes | 262 Views
Smart Card & Database Security. Project Status Report for Cis600 internet security Fall 2001 By Anli He ahe@syr.edu & Zhijun Zhan zhzhan@syr.edu. Project Description……………. Today, the most popular way to establish identity is with
E N D
Smart Card & Database Security Project Status Report for Cis600 internet security Fall 2001 By Anli He ahe@syr.edu& Zhijun Zhan zhzhan@syr.edu
Project Description…………… Today, the most popular way to establish identity is with a user ID and a password – it’s a weak authentic strategy ! While to use a smart card and a personal identification number(PIN) provide a high assurance that persons logging on are who they say they are. Smart card can store personal information with high degree of security and portability. Smart card user need only memorize their PIN instead of using a different password for every application.
Our Team for this project: • Anli He -- Research -- Web search -- Document -- Compose Report -- Presentation now… • Zhijun Zhan -- Research -- Web search -- Document
Focus Areas • What is smart card? --- the structure and organization of smart card • How can smart card store information? • The communication between smart card and the computer. 4. The encryption in smart card. • About Authentication
Current Research Source • http://www.smartcard.co.uk • http://www.etsi.org • http://ieeexplore.ieee.org • http://www.slb.com --- Schlumberger Technology Co.Ltd (the largest smart card provider in the world) • Friends in that company
Papers From IEEE: Applications in health care using public-key certificates and attribute certificates - Wohlmacher, P.; Pharow, P.Syst. Security Group, Klagenfurt Univ., Austria Integrating access control with user authentication using smart cards- Nam-Yih LeeAppl. Eng. Dept., Southern Taiwan Univ. of Technol., Tainan, Taiwan Practical security systems with smartcards- Itoi, N.; Honeyman, P.Center for Inf. Technol. Integration, Michigan Univ., Ann Arbor, MI, USA Smart cards aren't always the smart choice- Chadwick, D.Inf. Syst. Inst., Salford Univ., UK
Progress To date • Searching data from internet • Talk about it for 3 times • Read several papers • Ask some specialist technical problems
Main Bottleneck • Which method shall we use • No such books • Some protocols we don’t understand • Is smart card really safe ?
Proposed Outline • Executive summary • Introduction to smart card & database system • Body * the card we use – Java card * How to use card to authenticate * the safety properties • Result – the total system • Reference
That’s All…… • Thank you for listening • Sorry for my poor English • Have a nice weekend!!!