发明授权
US08204906B2 Abstraction based audit and security log model for increased role and security enforcement
有权
基于抽象的审计和安全日志模型,用于增加角色和安全性执行
- 专利标题: Abstraction based audit and security log model for increased role and security enforcement
- 专利标题(中): 基于抽象的审计和安全日志模型,用于增加角色和安全性执行
-
申请号: US11777327申请日: 2007-07-13
-
公开(公告)号: US08204906B2公开(公告)日: 2012-06-19
- 发明人: Richard Dean Dettinger , Daniel Paul Kolz , Frederick Allyn Kulack , Erik Edward Voldal
- 申请人: Richard Dean Dettinger , Daniel Paul Kolz , Frederick Allyn Kulack , Erik Edward Voldal
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 代理机构: Patterson & Sheridan LLP
- 主分类号: G06F7/00
- IPC分类号: G06F7/00
摘要:
Embodiments of the invention store log event records in a secure database log by encrypting information in a query, or in query results, that would otherwise be subject to unwanted disclosure (either from within or without a given organization). For example, an organization (e.g., a research institution) may allow a database administrator to review log event records to diagnose and correct system performance issues, without being forced to trust the administrator with sensitive medical data (e.g., medical records related to participants in a research study). Thus, the security of sensitive information may be maintained, while at the same time, the database administrator may still access the information needed to maintain a working system.
公开/授权文献
信息查询