Title :
Selecting Software Packages for Secure Database Installations
Author :
Neto, Afonso Araújo ; Vieira, Marco
Author_Institution :
CISUC, Univ. of Coimbra, Coimbra, Portugal
Abstract :
Security is one of the biggest concerns of database administrators. Most marketed software products announce a variety of features and mechanisms designed to improve security. However, that same variety largely complicates the process of selecting the adequate set of software products (i.e., a software package) for a given installation. In this paper we propose an approach that can be used to fairly compare alternative software packages regarding security capabilities in database environments. We focus specifically on the two main software systems required for a new installation: the Operating System and the Database Management System (DBMS). We carefully explain and discuss our method, which is based on the idea of evaluating the characteristics of software packages against a comprehensive list of security concerns that are universally accepted as vital to any database installation. We created an actual benchmark, and used it to assess seven software packages composed by four different DBMS engines and two different operating systems. Results show that alternative software packages allow fulfilling different security concerns and that the proposed benchmark is quite effective in identifying the main differences regarding the capabilities of the systems evaluated.
Keywords :
database management systems; operating systems (computers); security of data; software packages; database installation; database management system; database security; operating system; software package; software product; Benchmark testing; Best practices; Databases; Protocols; Security; Software packages; benchmarking; best practices; gap analysis; security mechanisms; software packages;
Conference_Titel :
Availability, Reliability and Security (ARES), 2011 Sixth International Conference on
Conference_Location :
Vienna
Print_ISBN :
978-1-4577-0979-1
Electronic_ISBN :
978-0-7695-4485-4
DOI :
10.1109/ARES.2011.19