loading
Documents

Research.Publish.Connect.

Paper

Authors: Diogo Domingues Regateiro ; Óscar Mortágua Pereira and Rui L. Aguiar

Affiliation: University of Aveiro and Instituto de Telecomunicações, Portugal

ISBN: 978-989-758-255-4

Keyword(s): Access Control, Software Architecture, Security and Privacy Protection, Network Communications, Database Connectivity.

Related Ontology Subjects/Areas/Topics: Data and Application Security and Privacy ; Data Engineering ; Data Privacy and Security ; Databases and Data Security ; Information and Systems Security ; WWW and Databases

Abstract: In the business world, database applications are a predominant tool where data is generally the most important asset of a company. Companies use database applications to access, explore and modify their data in order to provide a wide variety of services. When these applications run in semi-public locations and connect directly to the database, such as a reception area of a company or are connected to the internet, they can become the target of attacks by malicious users and have the hard-coded database credentials stolen. To prevent unauthorized access to a database, solutions such as virtual private networks (VPNs) are used. However, VPNs can be bypassed using internal attacks, and the stolen credentials used to gain access to the database. In this paper the Secure Proxied Database Connectivity (SPDC) is proposed, which is a new methodology to enhance the protection of the database access. It pushes the credentials to a proxy server and separates the information required to access t he database between a proxy server and an authentication server. This solution is compared to a VPN using various attack scenarios and we show, with a proof-of-concept, that this proposal can also be completely transparent to the user. (More)

PDF ImageFull Text

Download
Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 54.166.233.99

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Regateiro D., Pereira Ó. and Aguiar R. (2017). SPDC: Secure Proxied Database Connectivity.In Proceedings of the 6th International Conference on Data Science, Technology and Applications - Volume 1: DATA, ISBN 978-989-758-255-4, pages 56-66. DOI: 10.5220/0006424500560066

@conference{data17,
author={Diogo Domingues Regateiro and Óscar Mortágua Pereira and Rui L. Aguiar},
title={SPDC: Secure Proxied Database Connectivity},
booktitle={Proceedings of the 6th International Conference on Data Science, Technology and Applications - Volume 1: DATA,},
year={2017},
pages={56-66},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006424500560066},
isbn={978-989-758-255-4},
}

TY - CONF

JO - Proceedings of the 6th International Conference on Data Science, Technology and Applications - Volume 1: DATA,
TI - SPDC: Secure Proxied Database Connectivity
SN - 978-989-758-255-4
AU - Regateiro D.
AU - Pereira Ó.
AU - Aguiar R.
PY - 2017
SP - 56
EP - 66
DO - 10.5220/0006424500560066

Login or register to post comments.

Comments on this Paper: Be the first to review this paper.