检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:周建宁[1] 季君[1] 吴陈龙 戴欣宇 朱梁 ZHOU Jianning;JI Jun;WU Chenlong;DAI Xinyu;ZHU Liang(Traffic Management Research Institute,Ministry of Public Security,Wuxi 214151,China)
机构地区:[1]公安部交通管理科学研究所
出 处:《中国公共安全(学术版)》2019年第4期111-115,共5页China Public Security(Academy Edition)
摘 要:随着公安交管信息化建设应用不断深化,信息系统应用规模越来越大,累积了海量的机动车、驾驶证、交通违法、交通事故等数据资源。各级公安交管部门高度重视信息安全,不断提升数据库安全保护和审计监管能力。但是,伴随着数据信息价值的不断提升,公安交管信息数据面临的安全风险也不断增加,各类案件时有发生,而各地却未能在安全事件发生过程中及时发现并预警,也未能在事后通过审计分析发现入侵行为的线索。因此研究基于已有的安全产品(日志采集软件、网络探针、堡垒机)实现多维度的联合审计,实现覆盖各类异常操作行为,对核心数据的保护和监管。With the continuous deepening of the application of public security traffic information construction,the application of information systems is becoming larger and larger,accumulating a large number of data resources such as motor vehicles,driver’s licenses,traffic violations,and traffic accidents.Public security traffic control departments at all levels attach great importance to information security and continuously improve database security protection and audit supervision capabilities.However,with the continuous improvement of the value of data information,the security risks faced by public security traffic management data are also increasing.Various cases have occurred from time to time,but localities have failed to detect and warn in time during the occurrence of security incidents.Afterwards,through audit analysis,the clues of intrusion behavior were discovered.Therefore,based on the existing security products (log collection software,network probe,bastion machine),multi-dimensional joint audit is realized,which completely covers various abnormal operation behaviors and realizes the protection and supervision of core data.
关 键 词:日志采集软件 数据审计 多纬度审计 数据库异常预警
分 类 号:TP315[自动化与计算机技术—计算机软件与理论]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:3.145.170.67