检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:宋天煜 杨庚[1] SONG Tianyu;YANG Geng(School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing Jiangsu 210023, China)
机构地区:[1]南京邮电大学计算机学院软件学院网络空间安全学院,南京210023
出 处:《计算机应用》2018年第12期3450-3454,3461,共6页journal of Computer Applications
基 金:国家自然科学基金资助项目(61572263);江苏省自然科学基金政策引导类计划-前瞻性联合研究项目(2016ZS04)~~
摘 要:针对传统密文数据库中加解密方式对上层应用不透明、缺乏独立的密钥管理机制和无法对多用户进行安全管理等问题,设计并实现了一种面向密文数据库的中间件系统。首先,通过解析和改写数据库客户端和服务器端发出的数据报,实现对敏感数据加解密;然后,通过设置独立的密钥管理模块和使用二级密钥管理的方式,实现对密钥的管理;最后,通过独立的用户管理模块进行用户权限判断、身份动态认证和用户身份的撤销与更新,实现对密文数据库用户的管理。实验测试结果表明,相比传统密文数据库,所提中间件系统有着较好的安全性,且随着数据量的增大,其传输效率不断提高。该中间件系统可以有效保障密文数据库的安全,并具有高效的数据传输效率。In traditional ciphertext database,the encryption and decryption method is not opaque to the upper application,short of independent key management mechanism and unable to manage multi-user security.In order to solve the problems,a new middleware system for ciphertext database was designed and implemented.Firstly,the encryption and decryption of sensitive data were realized by parsing and rewriting the datagram sent by database client or database server.Then,key management was realized by setting up independent key management module and using secondary key management.Finally,through the independent user management module,the management of users in ciphertext database was realized by means of user authority judgment,identity dynamic authentication,user identity cancellation and update.The experimental results show that,compared with the traditional ciphertext database,the proposed middleware system has better security,and its transmission efficiency is constantly improved with the increase of data volume.The proposed middleware system can effectively guarantee the security of ciphertext database and has high data transmission efficiency.
关 键 词:密文数据库 中间件系统 数据加解密 密钥管理 动态认证
分 类 号:TP309[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:3.140.197.130