首页> 外文会议>VLDB Workshop on Secure Data Management(SDM 2007); 20070923-24; Vienna(AT) >Architecture for Data Collection in Database Intrusion Detection Systems
【24h】

Architecture for Data Collection in Database Intrusion Detection Systems

机译:数据库入侵检测系统中数据收集的体系结构

获取原文
获取原文并翻译 | 示例

摘要

A database intrusion detection system (IDS) is a new database security mechanism to guard data, the most valuable assets of an organization. To provide the intrusion detection module with relevant audit data for further analysis, an effective data collection method is essential. Currently, very little work has been done on the data acquisition mechanisms tailored to the needs of database IDSs. Most researchers use the native database auditing functionality, which excludes privileged users such as database administrators (DBAs) from being monitored. In this paper, we present a new approach to data collection for database IDSs by situating data collecting sensors on the database server and having the data transmitted to the audit server on a physically different site for further processing. This approach can guarantee that behavior of both average users and privileged users are monitored for signs of intrusion.
机译:数据库入侵检测系统(IDS)是一种新的数据库安全机制,用于保护数据(组织中最有价值的资产)。为了向入侵检测模块提供相关的审核数据以进行进一步分析,有效的数据收集方法至关重要。当前,针对数据库IDS需求量身定制的数据获取机制所做的工作很少。大多数研究人员都使用本机数据库审核功能,该功能可避免对特权用户(如数据库管理员(DBA))进行监视。在本文中,我们提出了一种新的数据库IDS数据收集方法,方法是将数据收集传感器放置在数据库服务器上,并将数据传输到物理上不同站点上的审核服务器以进行进一步处理。这种方法可以保证监视普通用户和特权用户的行为,以防出现入侵迹象。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号