摘要
为进一步提高RBAC(Role Based Access Control)数据库的安全性,提出构建以角色为基础的误用检测模型.通过对审计日志的形式化定义来实现对原始审计数据的预处理,利用对记录项的支持率、距离值等参数的聚类来生成轮廓文件的方法,并由轮廓文件给出了该模型的安全审计规则.研究表明:以角色为基础的误用检测模型可以有效地控制来自数据库内部人员的滥用职权.
To further improve the database security of the role based access control (RBAC), the author proposes a misuse detection model based on access control role. Firstly, the preprocessing of raw data by the formal definitions of audit log is analysed. Secondly, the generation and implementation of the framework based on the cluster technique using supporting rate and distance value of records item is described. Audit rules of the RBAC database security according to framework file generated in the above process are set up. Lastly, empirical result shows that the model can effectively control the abuse activities of internal database administrators.
出处
《西安工业大学学报》
CAS
2009年第4期365-370,共6页
Journal of Xi’an Technological University