高级检索

    基于数字签名和HSM的数据库篡改检测机制

    A Tamper Detection Mechanism for Database Based on Digital Signature and HSM

    • 摘要: 随着电子商务、电子政务的迅速发展,越来越多的敏感数据被存储于数据库,数据库的安全面临着前所未有的挑战。提出了一种结合数字签名和硬件安全模块(Hardware Security Module,HSM)的数据库篡改检测机制。利用数字签名技术对数据库表进行横向和纵向两种签名,确保表内数据在遭到任意的修改后均能通过签名检测。同时利用HSM保护签名所用的私钥提供高效的签名运算能力,使其具有非常高的安全性和非常优越的性能。

       

      Abstract: With the rapid development of E commerce and E government, more and more sensitive data are stored into databases. Hence, the security of database is confronting unprecedented challenges. This paper presents a tamper detection mechanism for database by integrating digital signature with HSM (Hardware Security Module). The proposed algorithm uses digital signature technology to sign the tables in database from both vertical and horizontal such that any modification on this table can be detected. Moreover, HSM is utilized to protect the private key of signature and improve the calculation efficiency, which can also make the mechanism more secure and efficient.

       

    /

    返回文章
    返回