Project notebook
Aug 20
Week1- Number of successful authenticated user is 00 out of 30, overall percentages of week1 is 00.00%.
Week2- Number of successful authenticated user is 04 out of 30, overall percentages of week2 is 13.33%.
Week3- Number of successful authenticated user is 12 out of 30, overall percentages of week3 is 40.00%.
Week4- Number of successful authenticated user is 22 out of 30, overall percentages of week4 is 73.33%.
JUL 20
i started my survey.
JUL 19
i got the user information from librarian.
JUL 18
i gave my report to Paul egan.
JUL 18
I started collecting signature and student id number.
JUL 17
I went to library to meet Mr. Paul eagan he ask me to collect signature from student who are interested to participate in your project.
JUL 16
I sent once again mail to him but he is not respons.
JUL 15
I met Paul egan(librarian) in library. I discussed with him the idea of my project and how to use the library database to verify the student identity. He ask me to sent what information do you want from user database. He will concern with higher official about my project. I sent mail to him but he didin reply.
I try to correct my mistake after i met my supervisor meeting. That meeting was very useful for me.
JUL 14
I met my supervisor and he clarify my doubts.I clearly understand what to do.
JUL 5-JUL 10
I started preparing for My supervisor meeting and Questions to ask about project.
JUN 28-JUL 3
I started Design for my project.
This section is to highlight the main points that made the design of the KBA system, start from the main objective of the project was that reach the idea of the knowledge based authentication system and be used in experimental authentication system, this section will start talking about the design objectives, then the design details also each step in system processing also some explanation figures and how the users do this experiment by the physical diagram (user sequence). In design objective mainly three things to be considered they are
1. Simple
2. Cost and
3. High Speed
In design steps using the use case diagram is used to describe the functionality of a system. Use case diagram for New user and Existing user for authentication system.
Steps involved in New user for authentication system:
Beginning -->When new user click on ‘New user(link)’ it will takes to the Authentication form.
Objective -->In authentication form new user will be register.
Actor--> Student
User(steps)--> System response
Step 1: User opens the home page of KBA system and click on ‘New user’ it will take to the authentication form (registration page).
System response: Registration page will be open.
Step 2: User needs to fill the authentication form.
System response: System receive all the input from user and check whether username is available or not. If it is will go for next step otherwise user need to choose another name.
Step 3: After completing the authentication form user needs to click on ‘ submit’ button.
System response: System will store all the information in database.
Steps involved for login:
Beginning-->When student wants to login into the system.
Objective-->To authenticate students with the system.
Actor-->Student
Pre-condition-->the student is a registered user.
Post-condition--> the student get authenticated.
Step 1: ‘Student’ must enter their username.
System response:
• If student username is not found in the system and then user needs to re-enter the username.
• Student selected questions will be available randomly based on the username.
Step 2: Student answers to those questions and then click ‘submit’ button.
System response:
If student answers to the appropriate questions are correct and matches with the database then authentication is successful otherwise authentication fails.
Steps involve for changing question:
Beginning: student wants to change their question if he or she needs.
Objective: To change the question or account.
Actor: student.
Step: User wants to click on change question link
System response: KBA system gets the number of question.
Step: User needs to select number of questions.
System response: User selected question will be stored in database.
JUN 21- JUN 26
Knowledge based authentication system
1. General Questions :-
1. Do you already know what is knowledge based authentication system?
O Yes O No
2. Have you ever used Knowledge based authentication system before?
O Yes O No
3. How many Questions do you prefer for each login
O.1
O.2
O.3
O.4
4. Did this kind of Authentication made you feel secure?
O Yes O No
2. Type of Question and Response :-
I prefer each time answer will change for that question
I prefer random Questions for each login
I prefer same Questions for each login
I prefer many Questions for each login
Were the answer to the Question easy to recall
Were the login Questions easier for you to answer
Were the this kind of Questions made you feel secure
3. Time Consumption :-
It took me much time while login
It took me much time while deciding on authentication round for first time
It took me much time to recognize my answer
4. Complexity:-
I find that it takes many attempts to login
I find many difficulties during the login process
I was not able to complete the login stage.
5. Comparison with other authentication system
5.1 Which one would you like most and ease of use please order the following system.
Questions Reorder
Password
PIN
KBA System
5.2 Which one would you like best system for login please order the following system.
Questions Reorder
Password
PIN
KBA System
5.3 Which one would you like most entertaining to use please order the following system.
Questions Reorder
Password
PIN
KBA System
5.4 Which one of the following systems is most convenient for login to student university library please order the following one.
Questions Reorder
Password
PIN
KBA System
Authentication method:
Authentication method is very important for all authentication system especially using the system for particular environment. System developer should think about why we should use authentication method. Reason for using authentication method is to find whether the user is valid user or not with more protection of user account.
System developer should set the level of authentication for each login. User selects the level of authentication. Level of authentication in the sense, how many questions user prefers for each login. The user is allowed to select one or more questions to be used in authentication round. If user selects two or more questions for login it will help the user to reduce the chances of an attacker or hacker. Number of authentication round may vary for different users.
Proposed experiment:
The identity confirmation process requires the user to provide the username and then check with database. After identifying the user, challenging question will be generated in real time based on the student recent record. User needs to provide answer for the question and then compare that answer with database and provide access to the user’s home page only if answers to the appropriate question are correct and matches with database. Otherwise, deny access. In addition, after identifying the username, user needs to choose number of authentication level for each login. Authentication levels may be varies depends on the students.
I started developing Questionaire and Hypothesis for my project.
Knowledge based authentication system developer should have his own thoughts and assumption of what the answer to the question would be. Based on reading and research the thought and assumption will develop by developer. User study result was conducted and compare with hypothesis of KBAs developer.
Systems are test with real time user how they feel about new system. Based on questions in the survey are usually used to finding out how users respondent feels using the new knowledge based authentication system, weather user mainly concern about the security of the intranet or user feel any difficulty in using the system, problem with question, delay to login and so on.
In recently, KBA using in many areas for example if you call to bank they ask something about your account. Interviewer will ask about security question. If you answer correctly then only they will proceed due to security purpose whether the person is real or not.
Survey result is mainly focus on student. Based on survey user will give the response for that system. Many of the user they have not used KBA while testing a system with real time user. User mainly uses the username and password for login. While conducting the survey user asked many question about knowledge based authentication system. Many of them shows positive result compare to username and password. We believe that the security controller would like the new system implemented using KBA system.
File manager
| Attachment |
Timestamp |
Size |