文章詳目資料

國防管理學報

  • 加入收藏
  • 下載文章
篇名 設計具安全機制之國軍人事資料管理系統
卷期 39:1
並列篇名 Design of Security Mechanism for Military Personnel Information Management System
作者 蘇品長王仁志蕭雅尹
頁次 001-001
關鍵字 個資保護法國軍人事資料管理系統橢圓曲線密碼系統Personal Information ProtectionMilitary Personnel Information Management SystemElliptic Curve Cryptography System
出刊日期 201805

中文摘要

我國個人資料保護法已於2012年10月1日正式實施,資料保密儼然已成為基本且重要的問題。國軍人事資料管理系統儲存了國軍所有官士兵龐大的個資,單位內管理人事的使用者及資料庫管理員負責各項系統管理工作,若無採取適當資料安全存取機制,可輕易查詢資料庫中一切資訊,極易造成個資外洩事件發生。如何加強國軍人事資料管理系統資料存放安全與使用人員身分認證與管控,為本研究之目的。本論文將利用橢圓曲線密碼系統,在相同安全性下所具有金鑰長度較短與計算複雜度較低的特性,結合資料庫欄位加密與存取控制之設計,強化國軍人事資料管理系統安全以符合個資保護法各項法令規範,以達到資料存取安全控管。

英文摘要

The personal information protection act has been announced and in effect within our country since October 1st, 2012, and making efforts to resolve the information security issues has become more essential than ever. The military personnel information management system stores a huge amount of personal information of all military personnel. The administrative users and the database managers who are in charge of the system maintenance will be able to look up any piece of information and will possibly cause personal information breaches if there is no appropriate information security measure. The objective of this research is to reinforce information security and user identification authentication and control of the military personnel information management system. The elliptic curve cryptography system is adopted to offer a shorter key length and a lower computation complexity while still to provide the same security strength. By combining with the design of database filed encryption and access control, such a mechanism strengthens the security of the system to comply with the personal information act and to meet the requirements of information access security and control.

相關文獻