• DocumentCode
    87720
  • Title

    Risk Aware Query Replacement Approach for Secure Databases Performance Management

  • Author

    Dia, Ousmane Amadou ; Farkas, Csilla

  • Author_Institution
    Comput. Sci. & Eng. Dept., Univ. of South Carolina, Columbia, SC, USA
  • Volume
    12
  • Issue
    2
  • fYear
    2015
  • fDate
    March-April 2015
  • Firstpage
    217
  • Lastpage
    229
  • Abstract
    Large amount of data and increased demand to extract, analyze and derive knowledge from data are impairing nowadays performance of enterprise mission-critical systems such as databases. For databases, the challenging problem is to manage complex and sometimes non-optimized queries executed on enormous data sets stored across several tables. This generally results in increased query response time and loss of employees productivity. In this paper, we investigate the problem of enterprise computing resources availability. Our goal is to minimize performance degradation arising from resource intensive queries. We propose a risk aware approach that decouples the process of analyzing resource requirements of sql queries from their execution. We leverage XACML to control users´ requests and to monitor database loads. This allows us to adjust available resources in a database system to computing resource needs of queries. A query can therefore run in a database if it does not severely impact the performance of the database. Otherwise, we propose to the requester a replacement query denoted what-if-query. Such query proposes results that are similar to the results of the requester´s query, is secure and provides acceptable answers when it executes without compromising the performance of the database.
  • Keywords
    SQL; authorisation; database management systems; query processing; resource allocation; risk management; SQL query; XACML; database performance management security; enterprise computing resource availability; performance degradation minimization; risk aware query replacement; user request control; Access control; Availability; Database systems; Monitoring; System performance; XACML; cost estimation; databases; information retrieval; risk adaptive access control; sql;
  • fLanguage
    English
  • Journal_Title
    Dependable and Secure Computing, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1545-5971
  • Type

    jour

  • DOI
    10.1109/TDSC.2014.2306675
  • Filename
    6803042