首页> 外文会议>WSEAS International Conferences >A Novel Approach to Secured and Central Logging Data
【24h】

A Novel Approach to Secured and Central Logging Data

机译:一种用于安全和中央记录数据的新方法

获取原文

摘要

Logging data is valuable and important information to reveal the attacker's activities and recover broken system. Unfortunately, once the attacker successfully penetrates a protected system, he never fails to either modify the logging data, or even worse, delete them to cover his traces. To avoid such a tragedy, it is best to keep logging data in another machine by forwarding them to a central logging server. However, this approach has a flaw: while transmitting on network, data could be illegally sniffed or the traffic might be secretly redirected to a malicious machine. This paper proposes a novel method named Xenlog to secure logging data for systems run on Xen virtual machine: the solution does not use network stack to send data. Experimental and resulted tool proves that this approach is more secure than the traditional solution, while logging process is far more effective (nearly 24 times faster) and more reliable.
机译:记录数据是有价值的,重要的信息,以揭示攻击者的活动并恢复破碎的系统。不幸的是,一旦攻击者成功穿透了受保护的系统,他从未无法修改日志记录数据,甚至更糟糕,删除它们以覆盖他的迹线。为了避免这种悲剧,最好通过将它们转发到中央记录服务器来将数据记录在另一台计算机中。但是,这种方法有一个漏洞:在网络上传输时,数据可能是非法嗅探的,或者流量可能被秘密重定向到恶意机器。本文提出了一种名为Xenlog的新方法,以保护Xen虚拟机上运行的系统的日志记录数据:解决方案不使用网络堆栈发送数据。实验和产生的工具证明,这种方法比传统解决方案更安全,而测井过程更有效(近24倍,更快)和更可靠。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号