首页> 外文期刊>International Journal of Computer Systems Science & Engineering >A generic model for an application based intrusion prevention detection system
【24h】

A generic model for an application based intrusion prevention detection system

机译:基于应用程序的入侵防御检测系统的通用模型

获取原文
获取原文并翻译 | 示例
           

摘要

This paper presents a security model that applies the reference monitor concept in trusted operating systems to end-user applications, to provide a comprehensive solution for securing applications. An external security reference monitor (ESRM) has been designed and directly coupled with the application to take care of the security needs of the application like user identification and authentication, access control, secure communications, accountability and audit, audit log analysis and intrusion detection. The security reference monitor is a single point through which all access requests to the application are validated. This paper presents ESRM as applied to a File Transfer application. Rules have been configured to comprehensively validate all input data and enforce user access control. Application data has been logged for statistical analysis of usage patterns; to monitor the effectiveness of the present rules and to obtain data needed to update present rule base to further strengthen the application protection measures.
机译:本文提出了一种安全模型,该模型将参考监视器概念在受信任的操作系统中应用于最终用户应用程序,以提供用于保护应用程序安全的全面解决方案。设计了一个外部安全参考监视器(ESRM),并将其与该应用程序直接耦合,以照顾到该应用程序的安全需求,例如用户标识和身份验证,访问控制,安全通信,责任制和审计,审计日志分析和入侵检测。安全参考监视器是单点,通过该点可以验证对应用程序的所有访问请求。本文介绍了ESRM应用于文件传输应用程序。规则已配置为全面验证所有输入数据并执行用户访问控制。已记录应用程序数据以对使用模式进行统计分析;监视本规则的有效性,并获取更新本规则库所需的数据,以进一步加强应用程序保护措施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号