Securing Database using Public Key Infrastructure A Proposed DB PKI Architecture
نویسنده
چکیده
Database security concerns the use of a broad range of information security controls to protect databases potentially including the data, the database applications or stored functions, the database systems, the database servers and the associated network links against compromises of their confidentiality, integrity and availability. It involves various types or categories of controls, such as technical, procedural/administrative and physical. To secure information and data against threats such as intrusion or unauthorized access, the Public Key Infrastructure (PKI) has been developed. It realizes basic concept of PKI i.e. PAIN, where P stands for Privacy, A stands for Authentication, I stands for Integrity, N stands for Non-Repudiation A public key infrastructure (PKI) provides the framework of services, technology, protocols, and standards that enable you to deploy and manage a strong and scalable information security system based on public key technology. In our paper we proposed PKI architecture for Database. Based on the type of table access right given to the user certificates are issued to them. The access rights are categorized into three different groups of user. First group of users can execute all the quires including truncate delete etc... Second group can add and modify the database without deleting data and the third and last group can only view the information stored in the database. Simple authority PKI models is used to implement our DB-PKI architecture.
منابع مشابه
A Novel Secure Session Key Generation using two-level architecture For Cluster-Based Ad Hoc Networks Based On ID-Based Bilinear Paring
In 1997, Ruppe R. et al [17] first proposed a Near-Term Digital Radio (NTDR) network system which is a cluster-based ad hoc network intended to be used efficiently for military missions. In the same year, Zavgren J. [18] proposed a management protocol for the NTDR network system. But they both lack the security considerations. In 2003, Varadharajan et al [4] proposed a secure cluster-based ad h...
متن کاملWireless PKI and Distributed IDS for Securing Intranets and M-Commerce
Recent R/D advances are presented in this keynote address on wireless and security technologies. To access Internet from mobile devices, the existing public key infrastructure (PKI) must be modified to work with limited wireless network bandwidth and low computing and memory capacity of handheld devices. A complete security chain is needed from smart cards to mobile clients, wireless PKI (WPKI)...
متن کامل(R)Evolutionary Bootstrapping of a Global PKI for Securing BGP
Most secure routing proposals require the existence of a global public-key infrastructure (PKI) to bind a public/private key-pair to a prefix, in order to authenticate route originations of that prefix. A major difficulty in secure routing deployment is the mutual dependency between the routing protocol and the establishment of a globally trusted PKI for prefixes and ASes: cryptographic mechani...
متن کاملExperience with Pki in a Large-scale Distributed Environment
PKI shows some weaknesses when used in real deployment, such as problems with securing the private key, combination of PKI with other authentication systems, availability of revocation information, user-friendliness of PKI system and relationship with federation systems. In this paper we present solutions that were used during PKI deployment in a grid distributed environment.
متن کاملChord-PKI: A distributed trust infrastructure based on P2P networks
Many P2P applications require security services such as privacy, anonymity, authentication, and non-repudiation. Such services could be provided through a hierarchical Public Key Infrastructure. However, P2P networks are usually Internet-scale distributed systems comprised of nodes with undetermined trust level, thus making hierarchical solutions unrealistic. In this paper, we propose Chord-PKI...
متن کامل