Search NASASearch

SEARCH · Search NASA

Results for “authentication”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 19 records

Secure ADS-B authentication system and method

A secure system for authenticating the identity of ADS-B systems, including: an authenticator, including a unique id generator and a transmitter transmitting the unique id to one or more ADS-B transmitters; one or more ADS-B transmitters, including a receiver receiving the unique id, one or more secure processing stages merging the unique id with the ADS-B transmitter's identification, data and secret key and generating a secure code identification and a transmitter transmitting a response containing the secure code and ADSB transmitter's data to the authenticator; the authenticator including means for independently determining each ADS-B transmitter's secret key, a receiver receiving each ADS-B transmitter's response, one or more secure processing stages merging the unique id, ADS-B transmitter's identification and data and generating a secure code, and comparison processing comparing the authenticator-generated secure code and the ADS-B transmitter-generated secure code and providing an authentication signal based on the comparison result.

Viggiano, Marc J

Geospatial Authentication

A software package that has been designed to allow authentication for determining if the rover(s) is/are within a set of boundaries or a specific area to access critical geospatial information by using GPS signal structures as a means to authenticate mobile devices into a network wirelessly and in real-time has been developed. The advantage lies in that the system only allows those with designated geospatial boundaries or areas into the server. The Geospatial Authentication software has two parts Server and Client. The server software is a virtual private network (VPN) developed in Linux operating system using Perl programming language. The server can be a stand-alone VPN server or can be combined with other applications and services. The client software is a GUI Windows CE software, or Mobile Graphical Software, that allows users to authenticate into a network. The purpose of the client software is to pass the needed satellite information to the server for authentication.

Lyle, Stacey D.

Advanced information processing system: Authentication protocols for network communication

In safety critical I/O and intercomputer communication networks, reliable message transmission is an important concern. Difficulties of communication and fault identification in networks arise primarily because the sender of a transmission cannot be identified with certainty, an intermediate node can corrupt a message without certainty of detection, and a babbling node cannot be identified and silenced without lengthy diagnosis and reconfiguration . Authentication protocols use digital signature techniques to verify the authenticity of messages with high probability. Such protocols appear to provide an efficient solution to many of these problems. The objective of this program is to develop, demonstrate, and evaluate intercomputer communication architectures which employ authentication. As a context for the evaluation, the authentication protocol-based communication concept was demonstrated under this program by hosting a real-time flight critical guidance, navigation and control algorithm on a distributed, heterogeneous, mixed redundancy system of workstations and embedded fault-tolerant computers.

Harper, Richard E.

Digital Camera with Apparatus for Authentication of Images Produced from an Image File

A digital camera equipped with a processor for authentication of images produced from an image file taken by the digital camera is provided. The digital camera processor has embedded therein a private key unique to it, and the camera housing has a public key that is so uniquely related to the private key that digital data encrypted with the private key may be decrypted using the public key. The digital camera processor comprises means for calculating a hash of the image file using a predetermined algorithm, and second means for encrypting the image hash with the private key, thereby producing a digital signature. The image file and the digital signature are stored in suitable recording means so they will be available together. Apparatus for authenticating the image file as being free of any alteration uses the public key for decrypting the digital signature, thereby deriving a secure image hash identical to the image hash produced by the digital camera and used to produce the digital signature. The authenticating apparatus calculates from the image file an image hash using the same algorithm as before. By comparing this last image hash with the secure image hash, authenticity of the image file is determined if they match. Other techniques to address time-honored methods of deception, such as attaching false captions or inducing forced perspectives, are included.

Friedman, Gary L.

Endpoint Security Using Biometric Authentication for Secure Remote Mission Operations

We propose a flexible security authentication solution for the spacecraft end-user, which will allow the user to interact over Internet with the spacecraft, its instruments, or with the ground segment from anywhere, anytime based on the user's pre-defined set of privileges. This package includes biometrics authentication products, such as face, voice or fingerprint recognition, authentication services and procedures, such as: user registration and verification over the Internet and user database maintenance, with a configurable schema of spacecraft users' privileges. This fast and reliable user authentication mechanism will become an integral part of end-to-end ground-to-space secure Internet communications and migration from current practice to the future. All modules and services of the proposed package are commercially available and built to the NIST BioAPI standard, which facilitates "pluggability" and interoperability.

Donohue, John T.

Expedition Earth and Beyond: Using NASA Data Resources and Integrated Educational Strategies to Promote Authentic Research in the Classroom

Teachers in today s classrooms are bound by state required skills, education standards, and high stakes testing. How can they gain skills and confidence to replace units or individual activities with curriculum that incorporates project and inquiry-based learning and promotes authentic research in the classroom? The key to promoting classroom authentic research experiences lies in educator professional development that is structured around teacher needs. The Expedition Earth and Beyond Program is a new geosciences program based at the NASA Johnson Space Center designed to engage, inspire and educate teachers and students in grades 5-14. The program promotes authentic research experiences for classrooms and uses strategies that will help NASA reach its education goals while still allowing educators to teach required standards. Teachers will have access to experts in terrestrial and planetary remote sensing and geoscience; this will enhance their use of content, structure, and relevant experiences to gain the confidence and skills they need to actively engage students in authentic research experiences. Integrated and powerful educational strategies are used to build skills and confidence in teachers. The strategies are as follows: 1) creating Standards-aligned, inquiry-based curricular resources as ready-to-use materials that can be modified by teachers to fit their unique classroom situation; 2) providing ongoing professional development opportunities that focus on active experiences using curricular materials, inquiry-based techniques and expanding content knowledge; 3) connecting science experts to classrooms to deepen content knowledge and provide relevance to classroom activities and real world applications; 4) facilitating students sharing research with their peers and scientists reinforcing their active participation and contributions to research. These components of the Expedition Earth and Beyond Education Program will be enhanced by providing exciting and diverse research opportunities that are inspired by views of Earth from space taken by astronauts on board the International Space Station. The interest and connection to viewing our home planet from space will inevitably spark questions that will drive students to pursue their research investigations, as well as forming a basis for comparisons to the exploration of other planetary bodies in our solar system.

Graffi, Paige Valderrama

HERMA-Heartbeat Microwave Authentication

Systems and methods for identifying and/or authenticating individuals utilizing microwave sensing modules are disclosed. A HEaRtbeat Microwave Authentication (HERMA) system can enable the active identification and/or authentication of a user by analyzing reflected RF signals that contain a person's unique characteristics related to their heartbeats. An illumination signal is transmitted towards a person where a reflected signal captures the motion of the skin and tissue (i.e. displacement) due to the person's heartbeats. The HERMA system can utilize existing transmitters in a mobile device (e.g. Wi-Fi, Bluetooth, Cellphone signals) as the illumination source with at least one external receive antenna. The received reflected signals can be pre-processed and analyzed to identify and/or authenticate a user.

Lux, James Paul

Highlighting the Importance of Authentic Reference Chemicals in the Unambiguous Identification of Unknowns during Routine Sample Analysis─An OPCW Proficiency Test Case

The unequivocal identification of unknown chemicals during routine sample analysis is a constant occurrence in the field of analytical chemistry. The process can be painstakingly tedious, particularly in situations where a tentatively identified unknown may possess isomeric counterparts yielding identical accurate mass values and very similar mass spectra. In this work, we present the experimental process involved in the correct identification of 1,4-oxathiane 4,4-dioxide and differentiation from its constitutional isomer, 2-hydroxyethyl vinyl sulfone, when present in a silica gel matrix featured in the 54th Environmental Organisation for the Prohibition of Chemical Weapons (OPCW) proficiency test. After discovering that the library-generated mass spectrum for 2-hydroxyethyl vinyl sulfone in a preliminary gas chromatography–mass spectrometry (GC-MS) analysis did not match the one from an authentic reference chemical, we embarked on an unknown structure determination campaign involving GC-MS, liquid chromatography-tandem mass spectrometry (LC-MS-MS), and nuclear magnetic resonance (NMR) spectroscopy. All of the information obtained, coupled to the synthesis of an authentic reference chemical, was used to determine the identity of the unknown as 1,4-oxathiane 4,4-dioxide. The process described in this work highlights the important role played by authentic reference chemicals in the identification of unknown chemicals during routine sample analysis.

Chemistry

Digital camera with apparatus for authentication of images produced from an image file

A digital camera equipped with a processor for authentication of images produced from an image file taken by the digital camera is provided. The digital camera processor has embedded therein a private key unique to it, and the camera housing has a public key that is so uniquely based upon the private key that digital data encrypted with the private key by the processor may be decrypted using the public key. The digital camera processor comprises means for calculating a hash of the image file using a predetermined algorithm, and second means for encrypting the image hash with the private key, thereby producing a digital signature. The image file and the digital signature are stored in suitable recording means so they will be available together. Apparatus for authenticating at any time the image file as being free of any alteration uses the public key for decrypting the digital signature, thereby deriving a secure image hash identical to the image hash produced by the digital camera and used to produce the digital signature. The apparatus calculates from the image file an image hash using the same algorithm as before. By comparing this last image hash with the secure image hash, authenticity of the image file is determined if they match, since even one bit change in the image hash will cause the image hash to be totally different from the secure hash.

Friedman, Gary L.

Literacity: A multimedia adult literacy package combining NASA technology, recursive ID theory, and authentic instruction theory

An important part of NASA's mission involves the secondary application of its technologies in the public and private sectors. One current application under development is LiteraCity, a simulation-based instructional package for adults who do not have functional reading skills. Using fuzzy logic routines and other technologies developed by NASA's Information Systems Directorate and hypermedia sound, graphics, and animation technologies the project attempts to overcome the limited impact of adult literacy assessment and instruction by involving the adult in an interactive simulation of real-life literacy activities. The project uses a recursive instructional development model and authentic instruction theory. This paper describes one component of a project to design, develop, and produce a series of computer-based, multimedia instructional packages. The packages are being developed for use in adult literacy programs, particularly in correctional education centers. They use the concepts of authentic instruction and authentic assessment to guide development. All the packages to be developed are instructional simulations. The first is a simulation of 'finding a friend a job.'

Willis, Jerry

Fermilab s Transition to Token Authentication

Fermilab is the first High Energy Physics institution to transition from X.509 user certificates to authentication tokens in production systems. All of the experiments that Fermilab hosts are now using JSON Web Token (JWT) access tokens in their grid jobs. Many software components have been either updated or created for this transition, and most of the software is available to others as open source. The tokens are defined using the WLCG Common JWT Profile. Token attributes for all the tokens are stored in the Fermilab FERRY system which generates the configuration for the CILogon token issuer. High security-value refresh tokens are stored in Hashicorp Vault configured by htvault-config, and JWT access tokens are requested by the htgettoken client through its integration with HTCondor. The Fermilab job submission system jobsub was redesigned to be a lightweight wrapper around HTCondor. For automated job submissions a managed tokens service was created to reduce duplication of effort and knowledge of how to securely keep tokens active. The existing Fermilab file transfer tool ifdh was updated to work seamlessly with tokens, as well as the Fermilab POMS (Production Operations Management System) which is used to manage automatic job submission and the RCDS (Rapid Code Distribution System) which is used to distribute analysis code via the CernVM FileSystem. The dCache storage system was reconfigured to accept tokens for authentication in place of X.509 proxy certificates. As some services and sites have not yet implemented token support, proxy certificates are still sent with jobs for backwards compatibility but some experiments are beginning to transition to stop using them. There have been some glitches and learning curve issues but in general the system has been performing well and is being improved as operational problems are addressed.

Dykstra, David

Object migration and authentication

The paper presents a mechanism permitting a type manager to fabricate a migrated object representation which can be entrusted to other subsystems or transmitted outside of the control of a local computer system. The migrated object representation is signed by the type manager in such a way that the type manager's signature cannot be forged and the manager is able to authenticate its own signature. Subsequently, the type manager can retrieve the migrated representation and validate its contents before reconstructing the object in its original representation. This facility allows type managers to authenticate the contents of off-line or network storage and solves problems stemming from the hierarchical structure of the system itself.

Gligor, V. D.

Geospatial Authentication

A software package that has been designed to allow authentication for determining if the rover(s) is/are within a set of boundaries or a specific area to access critical geospatial information by using GPS signal structures as a means to authenticate mobile devices into a network wirelessly and in real-time. The advantage lies in that the system only allows those with designated geospatial boundaries or areas into the server.

Lyle, Stacey D.

Method and system for identifying and authenticating an object

An object has a taggant placed in a first portion thereof and has a visible symbol placed on a second portion thereof. When the object is to be identified and authenticated, the taggant is made to radiate with a specific energy signature. The energy signature and at least one image of the symbol are recorded along with a relative location that identifies the first portion of the object. The combination of the energy signature, symbol image and relative location are used to repeatedly identify and authenticate the object.

Schramm, Jr., Harry F.

Expedition Earth and Beyond: Using Crew Earth Observation Imagery from the International Space Station to Facilitate Student-Led Authentic Research

Student-led authentic research in the classroom helps motivate students in science, technology, engineering, and mathematics (STEM) related subjects. Classrooms benefit from activities that provide rigor, relevance, and a connection to the real world. Those real world connections are enhanced when they involve meaningful connections with NASA resources and scientists. Using the unique platform of the International Space Station (ISS) and Crew Earth Observation (CEO) imagery, the Expedition Earth and Beyond (EEAB) program provides an exciting way to enable classrooms in grades 5-12 to be active participants in NASA exploration, discovery, and the process of science. EEAB was created by the Astromaterials Research and Exploration Science (ARES) Education Program, at the NASA Johnson Space Center. This Earth and planetary science education program has created a framework enabling students to conduct authentic research about Earth and/or planetary comparisons using the captivating CEO images being taken by astronauts onboard the ISS. The CEO payload has been a science payload onboard the ISS since November 2000. ISS crews are trained in scientific observation of geological, oceanographic, environmental, and meteorological phenomena. Scientists on the ground select and periodically update a series of areas to be photographed as part of the CEO science payload.

Graff, P. V.

Long-term Engagement in Authentic Research with NASA (LEARN): Innovative Practices Suggested by a New Model for Teacher Research Experiences

NASA's LEARN Project is an innovative program that provides long-term immersion in the practice of atmospheric science for middle and high school in-service teachers. Working alongside NASA scientists and using authentic NASA Science Mission Directorate research data, teachers develop individual research topics of interest during two weeks in the summer while on-site at NASA Langley. With continued, intensive mentoring by NASA scientists, the teachers further develop their research throughout the academic year through virtual group meetings and data team meetings mirroring scientific collaborations. At the end of the first year, LEARN teachers present scientific posters. The LEARN experience has had such an impact that multiple teachers from the first two cohorts have elected to continue their research. The LEARN project evaluation has provided insights into particularly effective elements of this new approach. Findings indicate that teachers? perceptions of the scientific enterprise have changed, and that LEARN provided substantial resources to help them take real-world research to their students. This presentation will focus on key factors from LEARN?s implementation that inform best practices for the incorporation of authentic scientific research into teacher professional development experiences. We suggest that these factors should be considered in the development of other such experiences, including: (1) The involvement of a single scientist as both the project leader/manager and the project scientist, to ensure that the project can meet teachers? needs. (2) An emphasis on framing and approaching scientific research questions, so that teachers can learn to evaluate the feasibility of studies based on scope, scale, and availability of data. (3) Long term, ongoing relationships where teachers and scientists work as collaborators, beyond the workshop ?mold.? (4) A focus on meeting the needs of individual teachers, whether their needs relate to elements of research and analysis, or to their tight professional schedules. (5) Above all, flexibility and patience. LEARN builds relationships with teachers slowly, over a long period of time. In the middle, life often intervenes. LEARN has emphasized that teachers? success is more important than deadlines or following a rigid protocol.

M Pippin

Systems, devices, and methods for authenticating millimeter wave devices

Systems, devices, and methods are described for millimeter wave device authentication. A system may include one or more access points. Each access point of the one or more access points is configured to extract, from one or more beam patterns generated via a client device, a beam feature associated with the client device. Each access point may also be configured to transmit the beam feature. The system may also include a server communicatively coupled to the one or more access points and including a database for storing known beam features. The server may be configured to receive the beam feature associated with the client device from at least one access point of the one or more access points. Also, the server may be configured to authenticate the client device in response to the received beam feature matching a known beam feature stored in the at least one database.

Bhuyan, Arupjyoti

Fermilab's Transition to Token Authentication

Fermilab is the first High Energy Physics institution to transition from X.509 user certificates to authentication tokens in production systems. All the experiments that Fermilab hosts are now using JSON Web Token (JWT) access tokens in their grid jobs. Many software components have been either updated or created for this transition, and most of the software is available to others as open source. The tokens are defined using the WLCG Common JWT Profile. Token attributes for all the tokens are stored in the Fermilab FERRY system which generates the configuration for the CILogon token issuer. High security-value refresh tokens are stored in Hashicorp Vault configured by htvault-config, and JWT access tokens are requested by the htgettoken client through its integration with HTCondor. The Fermilab job submission system jobsub was redesigned to be a lightweight wrapper around HTCondor. The grid workload management system GlideinWMS which is also based on HTCondor was updated to use tokens for pilot job submission. For automated job submissions a managed tokens service was created to reduce duplication of effort and knowledge of how to securely keep tokens active. The existing Fermilab file transfer tool ifdh was updated to work seamlessly with tokens, as well as the Fermilab POMS (Production Operations Management System) which is used to manage automatic job submission and the RCDS (Rapid Code Distribution System) which is used to distribute analysis code via the CernVM FileSystem. The dCache storage system was reconfigured to accept tokens for authentication in place of X.509 proxy certificates. As some services and sites have not yet implemented token support, proxy certificates are still sent with jobs for backwards compatibility, but some experiments are beginning to transition to stop using them.

Dykstra, Dave [Fermilab] (ORCID:0000000326539015)