服务器授权访问控制与审计技术研究  被引量:1

Research on Server Authorized Access Control and Auditing Technology

在线阅读下载全文

作  者:郑长亮[1] ZHENG Chang-liang(Department of Computer Technology,School of Telecommunications Engineering,Beijing Polytechnic,Beijing 100176)

机构地区:[1]北京电子科技职业学院电信工程学院计算机技术系,北京100176

出  处:《数字技术与应用》2018年第9期187-188,共2页Digital Technology & Application

摘  要:服务器是各项网络服务运行所必须的硬件设备和软件平台,对服务器的安全策略配置能够从全局层面解决整个服务器中的所有web服务的安全问题,既可以节省重复配置的工作量,同时对相似应用的安全策略也避免了重复开发的问题,节省了额外开发的开销;与此同时,这么做还可以集中注意力于核心业务的设计开发,提升系统架构,提高系统开发效率。访问控制技术作为服务器对远程访问自己的用户的首道过滤,从服务器安全的角度来看是非常重要的,也是必不可少的,通过对用户的这次过滤,能够鉴别并防止未授权用户的访问。并通过审计,服务器管理员可以对恶意访问和攻击行为进行进一步的原因探查、责任界定和损失评估,本文重点就以上几个方面进行阐述。The server is the hardware device and software platform necessary for the operation of various network services.The security policy configuration of the server can solve the security problem of all web services in the entire server from a global level,which can save the workload of repeated configuration,and at the same time The application's security strategy also avoids the problem of repetitive development and saves additional development overhead;at the same time,it can focus on the design and development of core business,improve system architecture,and improve system development efficiency.As the first filtering of the server to remotely access its own users,access control technology is very important and necessary from the perspective of server security.Through this filtering of users,it can identify and prevent unauthorized users.access.Through auditing,server administrators can conduct further cause exploration,responsibility definition and loss assessment for malicious access and attack behavior.This article focuses on the above aspects.

关 键 词:数据访问控制 审计技术 授权策略 安全防御 入侵鉴别 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象