Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A method, a device and a system for database security classification mark security gateway operation

A technology of security gateway and database, which is applied in the field of security gateway operation field of database confidentiality mark, and can solve problems such as lack of mature and safe database encryption algorithm, impact on database query performance, etc.

Active Publication Date: 2016-10-12
武汉华工安鼎信息技术有限责任公司
View PDF6 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

If the method of generating confidentiality marks of electronic documents is applied to structured data, it will have a serious impact on database query performance
[0003] At present, there is no mature, secure and homomorphic database encryption algorithm

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method, a device and a system for database security classification mark security gateway operation
  • A method, a device and a system for database security classification mark security gateway operation
  • A method, a device and a system for database security classification mark security gateway operation

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0073] Exemplary embodiments of the present disclosure will be described in more detail below with reference to the accompanying drawings. Although exemplary embodiments of the present disclosure are shown in the drawings, it should be understood that the present disclosure may be embodied in various forms and should not be limited by the embodiments set forth herein. Rather, these embodiments are provided for more thorough understanding of the present disclosure and to fully convey the scope of the present disclosure to those skilled in the art.

[0074] For the technical solutions provided by the embodiments of the present disclosure, refer to figure 1 The schematic diagram of the network architecture shown may involve two parties: a security gateway and a database management server, wherein the security gateway is connected to an application client and a database management server (for example: DBMS (DBMS, database management server, Database Management System) server, DBMS...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides a method, a device and a system for database security classification mark security gateway operation. The method comprises the steps of when receiving a first operation command, inquiring security policies of mapping tables stored in a security gateway and determining whether the first operation command contains sensitive columns; if the command contains sensitive columns, encrypting the data of the sensitive columns in the first operation command and the data of the corresponding attribute columns to generate ciphertext data of security classification mark columns corresponding to the sensitive columns; inserting the ciphertext data into the first operation command to generate a corresponding second operation command; sending the second operation command to the database to allow the database to complete the data insertion and data update of sensitive columns, attribute columns and security classification mark columns. The method, the device, and the system realize encryption of structured data, realize the application binding of data of sensitive columns and data of corresponding attribute columns, meet the technical requirements that security classification marks cannot be separated and tampered, guarantee that data are not separated from the corresponding security classification marks in the using process and thus guarantee data tracking and identification.

Description

technical field [0001] The invention relates to a method, a device and a system for operating a security gateway marked with a database confidentiality level. Background technique [0002] At present, the existing methods for generating confidentiality marks for electronic documents result in encryption of the content of electronic documents. If the method of generating confidentiality marks of electronic documents is applied to structured data, it will seriously affect the performance of database query. [0003] At present, there is no mature, secure, and homomorphic database encryption algorithm. Therefore, when applying confidentiality marks to database data, we must re-understand the connotation of "inseparable and non-tamperable". [0004] We believe that the confidentiality mark is inseparable, which can be understood as: due to the limitations of existing encryption technology, data and its corresponding confidentiality mark are allowed to be stored separately durin...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F21/60G06F21/62G06F17/30
CPCG06F16/21G06F16/2458G06F21/602G06F21/6227
Inventor 景奕昕唐威周涛
Owner 武汉华工安鼎信息技术有限责任公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products