本文已被:浏览 1341次 下载 2498次
Received:February 16, 2013 Revised:April 15, 2013
Received:February 16, 2013 Revised:April 15, 2013
中文摘要: 针对数据库审计技术存在的缺陷, 提出利用数据库会话技术, 设计具有实时提醒和处理安全风险能力的数据库审计子系统. 系统详细记录用户的操作行为, 对非法入侵行为进行主动处理, 增加了审计系统的主动防预能力, 将“事后审计分析”提前到“事后及时处理”. 该系统应用证实有效提高了数据库的安全性, 保护了企业和用户的信息.
Abstract:According to the shortcomings of database audit technical, Put forward a method of designing a real time and security risk capacity database audit subsystem based on database sessions. The system records the user's operation behavior, hand the illegal invasion behavior actively, adding the active prevention ability of the audit system, it can advance the "post audit analysis" to "after the timely processing ". The system proved effective in improving the security of databases, protect business and user information.
keywords: database audit session active defense trigger
文章编号: 中图分类号: 文献标志码:
基金项目:陕西省教育厅科研计划(12JK1055)
引用文本:
王振铎,王振辉,陈绥阳,王艳丽.一种主动防御的数据库审计子系统.计算机系统应用,2013,22(9):97-101
WANG Zhen-Duo,WANG Zhen-Hui,CHEN Sui-Yang,WANG Yan-Li.Development of Database Auditing Subsystem with Active Defense.COMPUTER SYSTEMS APPLICATIONS,2013,22(9):97-101
王振铎,王振辉,陈绥阳,王艳丽.一种主动防御的数据库审计子系统.计算机系统应用,2013,22(9):97-101
WANG Zhen-Duo,WANG Zhen-Hui,CHEN Sui-Yang,WANG Yan-Li.Development of Database Auditing Subsystem with Active Defense.COMPUTER SYSTEMS APPLICATIONS,2013,22(9):97-101