首页> 外国专利> The distributed of skin system for an operating system.

The distributed of skin system for an operating system.

机译:操作系统的皮肤系统的分布式。

摘要

The distributed auditing subsystem invention runs in a UNIX-like operating system environment with a hierarchical file system. The invention provides an audit trail of accesses to the objects it protects and maintains and protects that audit trail from modification or unauthorized access or destruction. The audit data generated by the invention is protected so that read access to it is limited to those who are authorized for audit data. The invention enables the recording of events which are relevant to the maintenance of the security of the system, such as the use of identification and authentication mechanisms, the introduction of objects into a user's address space, the deletion of such objects, actions taken by computer operators and system administrators and/or system security officers, and other security relevant events. The invention generates an audit record for each recorded event which includes the date and time of the event, the user, the type of event, and the success or failure of the event. The invention performs an on-line compression of the audit trail log file using a UNIX-type daemon process. The audit daemon process has a restartable feature that enables it to recover after node failures. The invention finds particular application in a distributed processing system in which files may be variously stored at diverse storage locations in the network. In such a distributed system, the audit process of the invention can be carried out on a network-wide, distributed basis so that audit files located at diverse storage locations can be concentrated into a single audit trail log file. In this manner, a secure computer system which conforms to the DoD Standard is achieved, which can generate, manipulate and data compress audit information concerning actions affecting the security of the system.
机译:分布式审计子系统的发明在具有分层文件系统的类UNIX操作系统环境中运行。本发明提供对其保护和维护的对象的访问的审计跟踪,并保护该审计跟踪免受修改,未授权访问或破坏。本发明产生的审核数据受到保护,使得对其的读取访问仅限于被授权使用审核数据的人员。本发明使得能够记录与维护系统的安全性有关的事件,例如使用识别和认证机制,将对象引入用户的地址空间,删除这些对象,计算机采取的动作。操作员和系统管理员和/或系统安全员,以及其他与安全相关的事件。本发明为每个记录的事件生成审计记录,该审计记录包括事件的日期和时间,用户,事件的类型以及事件的成功或失败。本发明使用UNIX类型的守护进程来执行审计跟踪日志文件的在线压缩。审计守护程序进程具有可重新启动的功能,使它可以在节点故障后恢复。本发明在分布式处理系统中找到特定的应用,其中文件可以被不同地存储在网络中的不同存储位置。在这样的分布式系统中,本发明的审计过程可以在全网络,分布式的基础上执行,使得位于不同存储位置的审计文件可以集中到单个审计跟踪日志文件中。以这种方式,获得了一种符合DoD标准的安全计算机系统,该系统可以生成,处理和数据压缩有关影响系统安全性行为的审核信息。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号