DESIGN AND IMPLEMENTATION OF SECURITY AUDITING SYSTEM FOR LINUX SERVER

Tao Zhang,Yang Yu,Yi Li
DOI: https://doi.org/10.3969/j.issn.1000-386x.2014.05.005
2014-01-01
Abstract:With the penetration of Linux technology,lots of Linux servers have been deployed in distributed systems.It becomes a big problem to carry out effective security auditing for those server resources at present.We design and implement a security auditing system applicable to complex distributed environments according to the characteristics of Linux servers.Our solution adopts component-based, modular architecture to support multi-layer deployment.Based on the audits at kernel level and application level,our system achieves the comprehensive audit on Linux servers including system resources,terminal accesses,file,database and network resources,etc.Meanwhile, our system uses data mining techniques to thoroughly analyse the audit message,and realises the intelligent auditing on Linux servers.Our system has been deployed in a real system,and shows very good effect.
What problem does this paper attempt to address?