• DocumentCode
    530354
  • Title

    The architecture of an intrusion tolerant database system

  • Author

    Falahiazar, Z. ; Rohani, M.

  • Author_Institution
    South Tehran Branch, Islamic Azad Univ., Tehran, Iran
  • Volume
    1
  • fYear
    2010
  • fDate
    17-19 Sept. 2010
  • Abstract
    With the ever increasing development and expansion of database use, protection of database against hazards, which threaten the integrity, availability and confidentiality of database, is inevitable. However, traditional mechanisms of database security is concentrated on protection or prevention. The main objective of an intrusion tolerant database system is such that even if a number of attacks penetrated inside information system, specified levels of availability, integrity and confidentiality are yet guaranteed. A key part of intrusion tolerant database system is intrusion detection which informs system about attacks. However, detection latency will result in damage spreading. Two novel techniques are used for containment of damage in intrusion tolerant database system: Attack isolation and multiphase damage Confinement. These techniques have been posed as general solutions and in real applications, they may cause outbreak of problems in integrity and availability. In this paper, we present a practical architecture for an intrusion tolerant database system with the aim of safeguarding integrity and availability in the presence of successful attacks through taking advantages of these two techniques.
  • Keywords
    database management systems; security of data; database security; information system; intrusion detection; intrusion tolerant database system; multiphase damage confinement; Servers; Attack Isolation; Damage Confinement; Database Security; Intrusion Detection; Intrusion Tolerance;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Educational and Information Technology (ICEIT), 2010 International Conference on
  • Conference_Location
    Chongqing
  • Print_ISBN
    978-1-4244-8033-3
  • Electronic_ISBN
    978-1-4244-8035-7
  • Type

    conf

  • DOI
    10.1109/ICEIT.2010.5607768
  • Filename
    5607768