Database Security Lecture2
Database Security Lecture2
Lecture2
Security models
• A security model establishes the external criteria for
the examination of security issues in general, and
provides the context for database considerations,
including implementation and operation.
• Security models explain the features available in the
DBMS which need to be used to develop and operate
the actual security systems.
• They embody concepts, implement policies and
provide servers for such functions.
• Any faults in the security model will translate either
into insecure operation or unsuitable systems.
Countermeasures
• The types of countermeasure to threats on
computer systems range from physical
controls to administrative procedures.
• Representation of a typical multi-user
computer environment in fig 2. It will be
focused on the following computer-based
security controls for a multi-user
environment.
Countermeasures
• authorization • access controls • views
• backup and recovery • integrity • encryption