LEADER 04130nam a2200433Ii 4500 001 991003247759707536 006 m d 007 cr cn||||||||| 008 070806s2005 maua s 001 0 eng d 020 $a9781555583347 020 $a1555583342 035 $ab13655024-39ule_inst 037 $a109864:109912$bElsevier Science & Technology$nhttp://www.sciencedirect.com 040 $aOPELS$cOPELS 049 $aTEFA 082 04$a005.8$222 100 1 $aBen-Natan, Ron.$0544573 245 10$aImplementing database security and auditing$h[electronic resource] :$ba guide for DBAs, information security administrators and auditors /$cRon Ben Natan. 260 $aBurlington, MA :$bElsevier Digital Press,$cc2005. 300 $axvii, 413 p. :$bill. ;$c24 cm. 500 $aIncludes index. 505 0 $aPreface -- 1. Getting Started -- 2. Database Security within the General Security -- Landscape and a Defense-in-Depth Strategy -- 3. The Database as a Networked Server -- 4. Authentication and Password Security -- 5. Application Security -- 6. Using Granular Access Control -- 7. Using the Database To Do Too Much -- 8. Securing database-to-database communications -- 9. Trojans -- 10. Encryption -- 11. Regulations and Compliance -- 12. Auditing Categories -- 13. Auditing Architectures -- Index. 520 $aThis book is about database security and auditing. You will learn many methods and techniques that will be helpful in securing, monitoring and auditing database environments. It covers diverse topics that include all aspects of database security and auditing - including network security for databases, authentication and authorization issues, links and replication, database Trojans, etc. You will also learn of vulnerabilities and attacks that exist within various database environments or that have been used to attack databases (and that have since been fixed). These will often be explained to an internals level. There are many sections which outline the anatomy of an attack before delving into the details of how to combat such an attack. Equally important, you will learn about the database auditing landscape both from a business and regulatory requirements perspective as well as from a technical implementation perspective. * Useful to the database administrator and/or security administrator - regardless of the precise database vendor (or vendors) that you are using within your organization. * Has a large number of examples - examples that pertain to Oracle, SQL Server, DB2, Sybase and even MySQL.. * Many of the techniques you will see in this book will never be described in a manual or a book that is devoted to a certain database product. * Addressing complex issues must take into account more than just the database and focusing on capabilities that are provided only by the database vendor is not always enough. This book offers a broader view of the database environment - which is not dependent on the database platform - a view that is important to ensure good database security. 533 $aElectronic reproduction.$bAmsterdam :$cElsevier Science & Technology,$d2007.$nMode of access: World Wide Web.$nSystem requirements: Web browser.$nTitle from title screen (viewed on Aug. 2, 2007).$nAccess may be restricted to users at subscribing institutions. 650 0$aComputer security. 650 0$aData protection. 650 0$aDatabase security. 650 6$aSystèmes informatiques$xSécurité$xMesures. 650 6$aProtection de l'information (Informatique) 650 6$aBases de données$xSécurité$xMesures. 655 7$aElectronic books.$2local 776 1 $cOriginal$z1555583342$z9781555583347$w(DLC) 2005045748$w(OCoLC)58053263 856 40$3Referex$uhttp://www.sciencedirect.com/science/book/9781555583347$zAn electronic book accessible through the World Wide Web; click for information 907 $a.b13655024$b24-02-22$c24-01-08 912 $a991003247759707536 994 $aC0$bTEF 996 $aImplementing database security and auditing$91212820 997 $aUNISALENTO 998 $ale029$b24-01-08$cm$dm $e-$feng$gmau$h0$i0