• Àüü
  • ÀüÀÚ/Àü±â
  • Åë½Å
  • ÄÄÇ»ÅÍ
´Ý±â

»çÀÌÆ®¸Ê

Loading..

Please wait....

±¹³» ³í¹®Áö

Ȩ Ȩ > ¿¬±¸¹®Çå > ±¹³» ³í¹®Áö > Çѱ¹Á¤º¸°úÇÐȸ ³í¹®Áö > Á¤º¸°úÇÐȸ ÄÄÇ»ÆÃÀÇ ½ÇÁ¦ ³í¹®Áö (KIISE Transactions on Computing Practices)

Á¤º¸°úÇÐȸ ÄÄÇ»ÆÃÀÇ ½ÇÁ¦ ³í¹®Áö (KIISE Transactions on Computing Practices)

Current Result Document :

ÇѱÛÁ¦¸ñ(Korean Title) ÆÄÀϽýºÅÛ°ú NDIS µå¶óÀ̹ö¸¦ ÀÌ¿ëÇÑ ÆÄÀÏ À¯Ãâ °¨½ÃÇÁ·Î¼¼½º
¿µ¹®Á¦¸ñ(English Title) A Study of File Outflow Monitoring Process using the File System and NDIS Driver
ÀúÀÚ(Author) À̹ÎÅ   Mintae Lee  
¿ø¹®¼ö·Ïó(Citation) VOL 20 NO. 12 PP. 0632 ~ 0639 (2014. 12)
Çѱ۳»¿ë
(Korean Abstract)
º» ³í¹®Àº À©µµ¿ì ȯ°æÀÇ PC¿¡ °ü¸®µÇ°í ÀÖ´Â °³ÀÎÀûÀÎ ÁÖ¿ä ÆÄÀϵéÀÌ ³×Æ®¿÷À» ÅëÇØ ºÒ¹ýÀûÀ¸·Î À¯ÃâµÇ´Â °ÍÀ» °¨½ÃÇϱâ À§ÇÑ PC ÀÚüÀûÀÎ ÆÄÀÏ À¯Ãâ °¨½Ã ÇÁ·Î¼¼½º ±¸Çö¿¡ °üÇÑ °ÍÀÌ´Ù. ³×Æ®¿÷À» ÅëÇØ ÆÄÀÏÀ» À¯ÃâÇϱâ À§Çؼ­´Â ¿ì¼± ÇØ´ç ÆÄÀÏÀ» µð½ºÅ©¿¡¼­ Àоî¾ß¸¸(Access) ÇÑ´Ù´Â Á¡¿¡ Âø¾È ÇÏ¿© À©µµ¿ì ÆÄÀϽýºÅÛ µå¶óÀ̹ö¿¡¼­ÀÇ ÆÄÀÏ Àб⠸ðµç µ¿ÀÛ¿¡¼­ ÀÌ·ç¾îÁö´Â ÆÄÀÏ Á¤º¸(ÆÄÀϸí, ³»¿ë ÀϺÎ)¿Í À©µµ¿ì NDIS(Network Driver Interface Specification) µå¶óÀ̹ö ¹Ì´ÏÆ÷Æ®ÀÇ Àü¼Û ÆÐŶÀ» ĸÃÄÇÏ¿© ºñ±³ÇÔÀ¸·Î¼­ »ç¿ëÀÚ¿¡°Ô ÀǵµÄ¡ ¾ÊÀº ÆÄÀÏ Àü¼ÛÀ» ÀÎÁöÅä·Ï ÇÏ¸ç ¶ÇÇÑ, »ç¿ëÀÚÀÇ ÀÀ´äÀÌ ¾øÀ» °æ¿ì PC ³×Æ®¿÷ÀÇ ÀÚµ¿ Â÷´Ü ÇÁ·Î¼¼½º¸¦ Á¦¾ÈÇÑ °ÍÀÌ´Ù. ÆÄÀÏ Àб⠵¿ÀÛ¿¡¼­ÀÇ ÆÄÀÏ Á¤º¸¿Í Àü¼Û ÆÐŶ ¼öÁý ±â´É¿¡ ´ëÇØ ½ÃÇè ±¸Çö ÇÏ¿© Á¦¾È ÇÁ·Î¼¼½º°¡ Ÿ´ç¼ºÀÌ ÀÖÀ½À» º¸¿© ÁÖ¾úÀ¸¸ç, ¶ÇÇÑ PC ¼º´É ¸é¿¡¼­ Å©°Ô ¿µÇâÀ» ¹ÌÄ¡Áö ¾Ê´Â ½Ç¿ë¼ºÀÌ ÀÖÀ½À» °ËÁõÇÏ¿´´Ù.
¿µ¹®³»¿ë
(English Abstract)
In this paper, we propose a PC's self-monitoring system for protecting illegal outflow of important personal files, which are managed in the Windows environment PC. This paper is based on the idea that it should be a read (access) file operation in order to outflow files through the network. To compare the information (name, some content) obtained from all operations of the reading of the 'Windows File System Driver' and captured transmission packets of mini port of 'Windows NDIS(Network Driver Interface Specification) Driver', and, if two pieces of information match, this system will determine the transmission to user. In this paper, tentatively, we developed a function to gather file information about file read operation and developed a function for transmission packet capture. This demonstration implementation showed that the proposed process has validity and the proposed process verified that it does not significantly affect the PC's performance.
Å°¿öµå(Keyword) ÆÄÀÏÀ¯Ãâ   ÆÄÀÏ°¨½Ã   ÆÄÀϽýºÅÛµå¶óÀ̹ö   NDIS µå¶óÀ̹ö   file outflow   file monitoring   file system driver   NDIS driver  
ÆÄÀÏ÷ºÎ PDF ´Ù¿î·Îµå