Multiphase damage confinement system for databases

Peng Liu, Ying Wang

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Damage confinement is a critical aspect of database survivability. Damaged data items of a database should not be allowed to access until they are repaired. Traditional database damage confinement is one phase, that is, a damaged data item is confined only after it is identified as corrupted, and one- phase damage confinement has a serious problem, that is, during damage assessment serious damage spreading can be caused. In this paper, we present the design and implementation of a multiphase database damage confinement system, called DDCS. The damage confinement process of DDCS has one confining phase, which instantly confines the damage that might have been caused by the intrusion(s) as soon as the intrusion(s) are detected, and one or more later on unconfining phases to unconfine the data items that are mistakenly confined during the confining phase and the items that are repaired. In this way, DDCS ensures no damage spreading during damage assessment. DDCS can confine the damage caused by multiple malicious transactions in a concurrent manner. DDCS is built on top of a commercial database server. DDCS is transparent to end users, and the performance penalty of DDCS is reasonable.

Original languageEnglish (US)
Title of host publicationResearch directions in Data and Applications Security - IFIP TC11/WG11.3 16th Annual Conference on Data and Applications Security
PublisherSpringer New York LLC
Pages75-87
Number of pages13
ISBN (Print)9781475764130
StatePublished - Jan 1 2003
EventIFIP TC11/WG11.3 16th Annual Conference on Data and Applications Security - Cambridge, United Kingdom
Duration: Jul 28 2002Jul 31 2002

Publication series

NameIFIP Advances in Information and Communication Technology
Volume128
ISSN (Print)1868-4238

Other

OtherIFIP TC11/WG11.3 16th Annual Conference on Data and Applications Security
Country/TerritoryUnited Kingdom
CityCambridge
Period7/28/027/31/02

All Science Journal Classification (ASJC) codes

  • Information Systems
  • Computer Networks and Communications
  • Information Systems and Management

Fingerprint

Dive into the research topics of 'Multiphase damage confinement system for databases'. Together they form a unique fingerprint.

Cite this