Ç¥ÁØÈ­ Âü¿©¾È³»

TTAÀÇ Ç¥ÁØÇöȲ

Ȩ > Ç¥ÁØÈ­ °³¿ä > TTAÀÇ Ç¥ÁØÇöȲ

Ç¥ÁعøÈ£ TTAK.KO-12.0128 ±¸Ç¥ÁعøÈ£
Á¦°³Á¤ÀÏ 2009-12-22 ÃÑÆäÀÌÁö 29
ÇѱÛÇ¥Áظí ÀÏȸ¿ë Æнº¿öµå(OTP) ÅëÇÕÀÎÁõ ¼­ºñ½º ÇÁ·¹ÀÓ¿öÅ©
¿µ¹®Ç¥Áظí One Time Password(OTP) Integrated Authentication Service Framework
Çѱ۳»¿ë¿ä¾à º» Ç¥ÁØ¿¡¼­´Â OTP ÅëÇÕÀÎÁõ ¼­ºñ½º ÇÁ·¹ÀÓ¿öÅ©¸¦ À§ÇÑ ¼­ºñ½º ¸ðµ¨, ±â´É, º¸¾È °í·Á»çÇ×À» Á¦°øÇÑ´Ù. OTP ÅëÇÕÀÎÁõ ¼­ºñ½º ¸ðµ¨Àº ´Ù¼öÀÇ »ç¿ëÀÚ°¡ ´Ù¼öÀÇ ¼­ºñ½º Á¦°øÀÚÀÇ ¼­ºñ½º¸¦ ¹Þ´Â ½Ã³ª¸®¿À¸¦ ±â¹ÝÀ¸·Î ±¸¼ºµÇ¸ç, OTP ÅëÇÕÀÎÁõ¼¾Å͸¦ ÅëÇؼ­ »ç¿ëÀÚ´Â ÇϳªÀÇ OTP ±â±â·Î ¿©·¯ ¼­ºñ½º Á¦°øÀÚµéÀÇ ¼­ºñ½º¸¦ Á¦°ø¹ÞÀ» ¼ö ÀÖ´Ù´Â ÀåÁ¡ÀÌ ÀÖ´Ù. ¼±ÅÃÀûÀ¸·Î ¼­ºñ½ºÀÇ ¾ÈÁ¤ÀûÀÎ ¿î¿µÀ» À§ÇØ ¼­ºñ½º Á¦°øÀÚ°¡ ÀÚüÀûÀ¸·Îµµ ÀÎÁõ¼­¹ö¸¦ °¡Áö°í ÀÖÀ» ¼öµµ ÀÖ´Ù.
¶ÇÇÑ º» Ç¥ÁØ¿¡¼­´Â OTP ÅëÇÕÀÎÁõ ¼­ºñ½º ¸ðµ¨À» È®ÀåÇÏ¿© ¼¾ÅÍ°£¿¡ Àû¿ëµÉ ¼ö ÀÖ´Â ¹æ¾Èµµ Á¦½ÃÇÑ´Ù. ÀÌ ¹æ¾ÈÀº ÇØ´ç µµ¸ÞÀÎÀ» ´ã´çÇÏ´Â ´Ù¼öÀÇ ÅëÇÕÀÎÁõ¼¾ÅÍ°£ÀÇ ¿¬µ¿¸¸À¸·Î ±âÁ¸ ½Ã½ºÅÛÀÇ º¯°æ ¾øÀÌ Àû¿ëÀÌ °¡´ÉÇÏ´Ù.
¿µ¹®³»¿ë¿ä¾à This standard defines a model, functions and security considerations for OTP integrated authentication service. The OTP integrated authentication service model is composed of scenarios in which multiple users receive services from multiple service providers, and it is needed OTP validation service center. In this OTP integrated authentication service framework, user can receive the services from the multiple service providers using only one OTP device due to the OTP validation service center. The service providers optionally have their own alternative validation servers to guarantee stability.
This standard also provides the enhanced mechanism for the interoperability of multiple OTP service providers. It is applicable without changing the existing system through the interoperation between multiple OTP service providers which manage the OTP validation service centers undertaking their domains.
±¹Á¦Ç¥ÁØ
°ü·ÃÆÄÀÏ TTAK.KO-12.0128.pdf TTAK.KO-12.0128.pdf            

ÀÌÀü
¸ð¹ÙÀÏ Åë½Å ´Ü¸»¿ë »óȲÀÎÁöÇü º¸¾ÈÀ籸¼º ÇÁ·¹ÀÓ¿öÅ©
´ÙÀ½
Á¶Á÷¿¡¼­ °³ÀÎ ¸ð¹ÙÀÏ ´Ü¸»ÀÇ º¸¾È Áöħ