2010-3-11
 
Account:
 
Password:
     
Home | E-Business | Technology | Software Engineering | Security | Education | Outsourcing
Security
Security of Internet..
Access Control...
Encrpytion Tachniques
Standard & Protocols
Security Management
Intrusion Detection...
Survivability
Digital Contents...
Privacy Protection
Security Tech Resource
 
 Content
Experts  
Industry Report
Shanghai SPIN  
Services
 Column
Tom Gilb
Q & A
Advanced Inspections
Inspection Economics
Evo Project Management
 
 
 
Security

    Openness of Network always bring about latent perils to security of information systems. How to improve the security of networked applications has became the most concerned topic in the IT world. After multiple years of devoted R&D, many effective security techniques have been brought forward. This column contains a systematic collection and introduction.
    In the first part, a general overview on Internet & Information System Security is given for elaborating the basic security concepts and covering aspects. In the Access Control & Authentication section, we discussed how to authenticate the user identification, prevent and control invalid access. The involved techniques include application of smart cards, biometric authentication and digital signature etc. The Encryption section compiled many common used standard algorithms, such as DES, AES, RSA, MD5, SHA, Quantum, DNA and so on. The main part of course is the Public Key Infrastructure (PKI). In addition, the voice encryption issue is touched also. In the Security Standards & Protocols section, there are many of useful security standards and protocols collected, like SET, SSL, PGP, Ipsec, DNSSec, S/MIME, L2TP, PPTP, XrML, SAML, IPSP, IPSRA, Msec, TLS etc. Security is not just a technical problem. Robust security needs going together with good Security Management which provides with a series of reliable security solutions, for example, security strategy planning, best security practices, guidance, checklists and management procedures etc. The Intrusion Detection/Prevention section introduced related techniques, methods, and experiences, including the Firewall technique. High reliable system should be survived even after an invalid attack. It will be an important issue discussed in the System Survivability section. In this column, we also discussed the Protection Of Digital Contents & Copyright issue, and the application of digital watermarking techniques. Also, one section referred the Privacy issue, and related legislation. To relieve the concerns of customers, the enterprise should consider to set up their own clear policy and rules for protecting customers' privacy. Similar to others, this column also provide with wide links to Related Security Resources in the world for helping more complete search.
 

 Links: ACM || CiteSeer || CMU SEI || Construx || Cutter || IEEE-CS || itmWEB
Shanghai IT || Shanghai Economic Commission || SSIA || Shanghai Component Repository
LJYW || SPRT || PKSPIN || CCW Shanghai || China IT Outsourcing Summit more 
contribution guide | FAQ | about | copyright | contact
last update on 2005-04-08
better use IE 5.0 or above (800*600 or above)
© 2000-2005 Software Export and IT Transfer Center, ASTI Shanghai
All Rights Reserved.