DocumentCode
3385436
Title
Auditing: a relevant contribution to trusted database management systems
Author
Schaefer, M. ; Hubbard, B. ; Sterne, D. ; Haley, T.K. ; McAuliffe, J.N. ; Wolcott, D.
Author_Institution
Trusted Inf. Syst. Inc., Glenwood, MD, USA
fYear
1989
fDate
4-8 Dec 1989
Firstpage
232
Abstract
Summary form only given. An ongoing study of audit issues in the context of trusted database management systems (TDBMSs) is discussed. The study consists of a survey of the state of the art, an analysis of issues raised, and an assessment of future relevant research. The scope of the study is broad, and includes a variety of security policies and TDBMS architectures intended for commercial and defense applications. Issues of interest have included those associated with capture, storage, protection, reduction, and analysis of audit data. The study is based on extensive interviews with a number of researchers and product development groups and an examination of audit in its historical and trusted systems contexts. The authors have found that little guidance is provided for either what needs to be audited in TDBMS contexts or when, how, or even where audit data should be captured or recorded. They have found that audit objectives and implied requirements may be specific to each application and security policy. It has also been found that surprisingly little attention has been given in practice to the analysis of TDBMS audit data
Keywords
auditing; database management systems; security of data; auditing; capture; product development groups; protection; reduction; security policies; storage; trusted database management systems; Data analysis; Data security; Database systems; Interconnected systems; Management information systems; Operating systems; Product development; Protection;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security Applications Conference, 1989., Fifth Annual
Conference_Location
Tucson, AZ
Print_ISBN
0-8186-2006-4
Type
conf
DOI
10.1109/CSAC.1989.81055
Filename
81055
Link To Document