Search Word(s) in Title, Keywords, Authors, and Abstract:
Patch Distribution
Patch Integrity Verification Method Using Dual Electronic Signatures
JunHee Kim and Yoojae Won
Page: 1516~1526, Vol. 13, No.6, 2017
10.3745/JIPS.03.0084
Keywords: Digital Signature, Electronic Signature, Integrity, Patch Distribution, Patch Management
Show / Hide Abstract
Patch Integrity Verification Method Using Dual Electronic Signatures
JunHee Kim and Yoojae Won
Page: 1516~1526, Vol. 13, No.6, 2017

Keywords: Digital Signature, Electronic Signature, Integrity, Patch Distribution, Patch Management
Show / Hide Abstract
Many organizations today use patch management systems to uniformly manage software vulnerabilities. However, the patch management system does not guarantee the integrity of the patch in the process of providing the patch to the client. In this paper, we propose a method to guarantee patch integrity through dual electronic signatures. The dual electronic signatures are performed by the primary distribution server with the first digital signature and the secondary distribution server with the second digital signature. The dual electronic signature ensures ensure that there is no forgery or falsification in the patch transmission process, so that the client can verify that the patch provided is a normal patch. The dual electronic signatures can enhance the security of the patch management system, providing a secure environment for clients.