DocumentCode :
3399729
Title :
Portable intrusion-resilient database management server
Author :
Smirnov, Alexander ; Lam, Linh ; Chiueh, Tzi-Dar
Author_Institution :
Dept. of Comput. Sci., State Univ. of New York, Stony Brook, NY, USA
fYear :
2005
fDate :
17-20 Oct. 2005
Firstpage :
3186
Abstract :
An intrusion-resilient database management system is the one that is capable of restoring its consistency after being compromised by a malicious attack or human error. More specifically, an intrusion-resilient mechanism helps to quickly repair a database by nullifying the damage caused by malicious or erroneous transactions, while preserving the effects of unaffected legitimate transactions that take place between intrusions/errors and their detection. The goal of this project is to develop a portable implementation framework that can augment a commercial database management system with intrusion resilience without requiring any modifications to its internals. The intrusion resilience mechanism described in this paper significantly improves the availability of modern DBMSs by facilitating and sometimes even automating the post-intrusion damage repair process. In addition, it can be embodied in a reusable implementation framework, whose portability is demonstrated by its successful application to three different DBMSs, PostgreSQL, Oracle, and Sybase. Performance measurements on the fully operational prototypes under the TPC-C benchmark show that the run-time overhead of the intrusion-resilience mechanism is between 6% and 13%.
Keywords :
benchmark testing; database management systems; error detection; network servers; open systems; security of data; DBMS; Oracle; PostgreSQL; Sybase; TPC-C benchmark; availability; erroneous transaction; error detection; intrusion-resilient database management system; malicious transaction; network server; operational prototype; portability; Availability; Computer errors; Computer science; Database systems; File servers; Hardware; Humans; Information systems; Resilience; Transaction databases;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Military Communications Conference, 2005. MILCOM 2005. IEEE
Conference_Location :
Atlantic City, NJ
Print_ISBN :
0-7803-9393-7
Type :
conf
DOI :
10.1109/MILCOM.2005.1606147
Filename :
1606147
Link To Document :
بازگشت