作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2011, Vol. 37 ›› Issue (23): 138-140. doi: 10.3969/j.issn.1000-3428.2011.23.047

• 安全技术 • 上一篇    下一篇

不可信环境下的客户端日志保护机制

郑仕元,刘 军   

  1. (解放军理工大学通信工程学院,南京 210007)
  • 收稿日期:2011-06-02 出版日期:2011-12-05 发布日期:2011-12-05
  • 作者简介:郑仕元(1985-),男,硕士研究生,主研方向:网络与信息安全;刘 军,副教授
  • 基金资助:
    江苏省自然科学基金资助项目(BK2008090)

Client Logging Protection Mechanism in Hostile Environment

ZHENG Shi-yuan, LIU Jun   

  1. (Institute of Communications Engineering, PLA University of Science and Technology, Nanjing 210007, China)
  • Received:2011-06-02 Online:2011-12-05 Published:2011-12-05

摘要: 现有的日志文件保护技术大多集中于保护日志文件不被外来攻击者攻击,而无法抵御恶意的合法用户的攻击。为此,在分析日志技术安全需求的基础上,提出一种在不可信环境下的客户端日志保护机制,基于USB Key对日志文件进行加密和签名处理。给出日志文件的生成、存储及上传过程。安全性与性能分析结果证明了该机制的有效性。

关键词: 日志安全, 电子钥匙, 客户端, 不可信环境

Abstract: The existing technologies of logging file protection are mainly focusing on protecting logging files from attack outside, but the logging files are exposed in a hostile environment and malicious users who is legitimate may tamper or delete the logging files. This paper proposes a client logging protection mechanism in hostile environment. It encrypts and signs the logging file based on USB Key. It protects the logging files’ generation, storing and uploading. Security and performance analysis proves the validity and security of this mechanism.

Key words: logging security, USB Key, client, hostile environment

中图分类号: