• DocumentCode
    5314
  • Title

    Operating system security by integrity checking and recovery using write-protected storage

  • Author

    Kaczmarek, J. ; Wrobel, Michal R.

  • Author_Institution
    Fac. of Electron., Telecommun. & Inf., Gdansk Univ. of Technol., Gdansk, Poland
  • Volume
    8
  • Issue
    2
  • fYear
    2014
  • fDate
    Mar-14
  • Firstpage
    122
  • Lastpage
    131
  • Abstract
    An integrity checking and recovery (ICAR) system is presented here, which protects file system integrity and automatically restores modified files. The system enables files cryptographic hashes generation and verification, as well as configuration of security constraints. All of the crucial data, including ICAR system binaries, file backups and hashes database are stored in a physically write-protected storage to eliminate the threat of unauthorised modification. A buffering mechanism was designed and implemented in the system to increase operation performance. Additionally, the system supplies user tools for cryptographic hash generation and security database management. The system is implemented as a kernel extension, compliant with the Linux security model. Experimental evaluation of the system was performed and showed an approximate 10% performance degradation in secured file access compared to regular access.
  • Keywords
    Linux; database management systems; security of data; ICAR system binaries; Linux security model; buffering mechanism; cryptographic hashes generation; file backups; file system integrity; hashes database; integrity checking and recovery system; security constraints; security database management; system security; unauthorised modification; write-protected storage;
  • fLanguage
    English
  • Journal_Title
    Information Security, IET
  • Publisher
    iet
  • ISSN
    1751-8709
  • Type

    jour

  • DOI
    10.1049/iet-ifs.2012.0346
  • Filename
    6748546