Abstract:
This paper adopts multi-layer security model, integrates redundancy and variety architectures, makes use of integral security strategy and server-oriented intrusion tolerance architecture, realizes the survive and availability of database and the integrity and confidentiality of sensitive data. It can effectively resist malicious attacks with legal identity, and reduce the cost of security
Key words:
Intrusion tolerance; Database security; Redundancy; Transaction tolerance
摘要: 多级入侵容忍数据库采用多级安全体系结构,将冗余和多样性技术相结合,采用整体安全策略及面向服务的入侵容忍技术,实现数据库的可生存性、可用性及关键数据的机密性、完整性。与其他入侵容忍数据库相比,文中提出的数据库安全体系结构能有效抵御来自于OS 级、DBMS 级以及事务级的恶意攻击,同时降低了安全成本。
关键词:
入侵容忍;数据库安全;冗余;事务容忍
HE Wei, SUN Yuhai, SHA Xuejun, MENG Lirong. Architecture for Database Security Based of Multi-layer Intrusion-tolerance[J]. Computer Engineering, 2006, 32(8): 176-177,262.
何 伟,孙玉海,沙学军,孟丽容. 基于多级入侵容忍的数据库安全体系结构[J]. 计算机工程, 2006, 32(8): 176-177,262.