首页> 外文期刊>Journal of End User Computing >Introducing the Check-Off Password System (COPS): An Advancement in User Authentication Methods and Information Security
【24h】

Introducing the Check-Off Password System (COPS): An Advancement in User Authentication Methods and Information Security

机译:引入检查密码系统(COPS):用户身份验证方法和信息安全性方面的进步

获取原文
获取原文并翻译 | 示例
           

摘要

The objective of information system security management is information assurance: to maintain confidentiality (privacy), integrity, and availability of information resources for authorized organizational end users. User authentication is a foundation procedure in the overall pursuit of these objectives, and password procedures have historically been the primary method of user authentication. There is an inverse relationship between the level of security provided by a password procedure and ease of recall for users. The longer the password and the more variability in its characters, the higher the level of security provided by such a password (because they are more difficult to violate or "crack"). However, such passwords tend to be more difficult for end users to remember, particularly when the password does not spell a recognizable word (or includes non-alphanumeric characters such as punctuation marks or other symbols). Conversely, when end users select their own more easily remembered passwords, the passwords may also be easier to crack. This study presents a new approach to entering passwords, which combines a high level of security with easy recall for the end user. The Check-Off Password System (COPS) is more secure than self-selected passwords as well as high-protection, assigned-pass-word procedures. The present study investigates trade-offs between using COPS and three traditional password procedures, and provides a preliminary assessment of the efficacy of COPS. The study offers evidence that COPS is a valid alternative to current user authentication systems. End users perceive all password procedures tested to have equal usefulness, but the perceived ease of use of COPS passwords equals that of an established high-security password, and the new interface does not negatively affect user performance compared with that high-security password. Further research will be conducted to investigate long-term benefits.
机译:信息系统安全管理的目标是信息保证:为授权的组织最终用户维护机密性(隐私),完整性和信息资源的可用性。用户身份验证是全面实现这些目标的基础过程,而密码过程历来是用户身份验证的主要方法。密码过程提供的安全级别与用户的召回便利性之间存在反比关系。密码越长,其字符的可变性就越大,这种密码所提供的安全级别就越高(因为它们更难于破解或“破解”)。但是,这样的密码对于最终用户来说更难记住,特别是当密码不能拼写可识别的单词(或包括非字母数字字符,如标点符号或其他符号)时。相反,当最终用户选择自己更容易记住的密码时,这些密码也可能更易于破解。这项研究提出了一种输入密码的新方法,该方法将高级别的安全性与最终用户的方便调用结合在一起。 Check-Off密码系统(COPS)比自选密码以及高保护性的分配密码过程更加安全。本研究调查了在使用COPS和三种传统密码过程之间的取舍,并提供了对COPS功效的初步评估。该研究提供了证据,表明COPS是当前用户身份验证系统的有效替代方案。最终用户认为所有经过测试的密码程序具有同等的实用性,但是所感知的COPS密码的易用性等同于已建立的高安全性密码,并且与该高安全性密码相比,新界面不会对用户性能产生负面影响。将进行进一步的研究以调查长期利益。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号