透過您的圖書館登入
IP:3.137.220.120
  • 期刊
  • OpenAccess

設計具安全機制之國軍人事資料管理系統

Design of Security Mechanism for Military Personnel Information Management System

摘要


我國個人資料保護法已於2012年10月1日正式實施,資料保密儼然已成為基本且重要的問題。國軍人事資料管理系統儲存了國軍所有官士兵龐大的個資,單位內管理人事的使用者及資料庫管理員負責各項系統管理工作,若無採取適當資料安全存取機制,可輕易查詢資料庫中一切資訊,極易造成個資外洩事件發生。如何加強國軍人事資料管理系統資料存放安全與使用人員身分認證與管控,為本研究之目的。本論文將利用橢圓曲線密碼系統,在相同安全性下所具有金鑰長度較短與計算複雜度較低的特性,結合資料庫欄位加密與存取控制之設計,強化國軍人事資料管理系統安全以符合個資保護法各項法令規範,以達到資料存取安全控管。

並列摘要


The personal information protection act has been announced and in effect within our country since October 1st, 2012, and making efforts to resolve the information security issues has become more essential than ever. The military personnel information management system stores a huge amount of personal information of all military personnel. The administrative users and the database managers who are in charge of the system maintenance will be able to look up any piece of information and will possibly cause personal information breaches if there is no appropriate information security measure. The objective of this research is to reinforce information security and user identification authentication and control of the military personnel information management system. The elliptic curve cryptography system is adopted to offer a shorter key length and a lower computation complexity while still to provide the same security strength. By combining with the design of database filed encryption and access control, such a mechanism strengthens the security of the system to comply with the personal information act and to meet the requirements of information access security and control.

延伸閱讀