Summarizing audit trails in the Aeolus security platform

作者: Wissam Jarjoui

DOI:

关键词:

摘要: Aeolus is a programming platform that supports the development of secure applications preserve confidentiality information entrusted to them. An important part an auditing subsystem maintains log in which it stores about every security related event occurs while run. The allows later analysis determine whether policies application have been followed. For user, analyzing can prove be daunting task, especially when this grows include millions records. Similarly, storing such very costly. system I present thesis provides interface creation user-defined summaries audit trails, as well marking events for future archiving or deletion. Our makes easier analyze and less costly store interest. This done through use QuerySystem SummaryObjects. context sample based on financial management service www.mint.com. extension library; implemented Java code uses PostgreSQL 9.0 its primary database. Thesis Supervisor: Barbara H. Liskov Title: Institute Professor

参考文章(11)
Dan R. K. Ports, Liuba Shrira, David Schultz, Aaron Blankstein, Barbara Liskov, Victoria Popic, Dorothy Curtis, James Cowling, Winnie Cheng, Abstractions for usable information flow control in Aeolus usenix annual technical conference. pp. 12- 12 ,(2012)
Julia Allen, Alan Christie, William Fithen, John McHugh, Jed Pickel, State of the Practice of Intrusion Detection Technologies Defense Technical Information Center. ,(2000) , 10.21236/ADA375846
Aaron Blankstein, Analyzing audit trails in the Aeolus security platform Massachusetts Institute of Technology. ,(2011)
Teresa F. Lunt, A survey of intrusion detection techniques Computers & Security. ,vol. 12, pp. 405- 418 ,(1993) , 10.1016/0167-4048(93)90029-5
David Schultz, Barbara Liskov, IFDB Proceedings of the 8th ACM European Conference on Computer Systems - EuroSys '13. pp. 43- 56 ,(2013) , 10.1145/2465351.2465357
Victoria Popic, Audit Trails in the Aeolus Distributed Security Platform Massachusetts Institute of Technology. ,(2010)
Francis Peter McKee, A file system design for the Aeolus security platform Massachusetts Institute of Technology. ,(2011)
Winnie Wing-Yee Cheng, Information Flow for Secure Distributed Applications Massachusetts Institute of Technology. ,(2009)
Samuel T. King, Peter M. Chen, Backtracking intrusions ACM Transactions on Computer Systems. ,vol. 23, pp. 51- 76 ,(2005) , 10.1145/1047915.1047918