首页> 外文OA文献 >The development of a commercially viable database encryption tool for Oracle8i Rdbmsud
【2h】

The development of a commercially viable database encryption tool for Oracle8i Rdbmsud

机译:针对Oracle8i Rdbms ud的商业上可行的数据库加密工具的开发

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

In database security, access control is a major research issue. Discretionary access controls have been handled well by many database management systems through user roles and privileges. Mandatory access controls, on the other hand, remains a big problem when users with lower security clearance accessing data of higher security class. Data with classifications and users have clearances developed multilevel access controls, thus the problem of multilevel security. Many researches have been conducted using methods like object labeling, trusted systems, security filters, database views and etc. Many a times the problem remains unsolved due to either too theoretical or not practical to be implemented. Recent developments in research showed cryptography to be the promising solution to the multilevel security problem. With appropriate key management and good multilevel security scheme design, the problem can be solved in both theory and implemented in practice. This research endeavor is one such effort. It presents an investigation into the applications of modern cryptography for the security of databases. The investigation yields a new multilevel security scheme based on indigenous cryptographic primitives and supported by a new key management technique. The cryptographic primitives include enhanced block cipher and a new stream cipher design successfully implemented in a commercial database. The system yields a new approach in accessing and processing encrypted data using Initialization Vectors and provides solutions for hierarchical and direct access controls. The novel scheme allows the encryption of data at the tuple, attribute, and data element levels of a relation. The security of the scheme is guaranteed with no keys present in the system but stored securely in smartcards. The outcome from this research is realized in OraCrypt application which is implemented by usign Oracle 8i RDBMS.
机译:在数据库安全性中,访问控制是一个主要的研究问题。通过用户角色和特权,许多数据库管理系统已经很好地处理了自由访问控制。另一方面,当安全权限较低的用户访问安全级别较高的数据时,强制访问控制仍然是一个大问题。具有分类和用户数据的权限已开发出多层访问控制,因此存在多层安全问题。已经使用对象标记,可信系统,安全过滤器,数据库视图等方法进行了许多研究。很多时候,由于过于理论化或不切实际的实施而无法解决该问题。研究的最新进展表明,加密技术是解决多级安全问题的有希望的解决方案。通过适当的密钥管理和良好的多级安全性方案设计,可以从理论上解决该问题并在实践中加以实施。这项研究就是这样的努力。它对现代加密技术在数据库安全性中的应用进行了研究。调查产生了一种新的基于本地密码原语并受新密钥管理技术支持的多层安全方案。密码原语包括在商业数据库中成功实现的增强型分组密码和新的流密码设计。该系统产生了一种使用初始化向量访问和处理加密数据的新方法,并提供了用于分层和直接访问控制的解决方案。该新颖方案允许在关系的元组,属性和数据元素级别上对数据进行加密。系统中不存在任何密钥,但安全地存储在智能卡中,可以保证该方案的安全性。这项研究的结果是在由Oracle 8i RDBMS实现的OraCrypt应用程序中实现的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号