An Audit Log Protection Mechanism Based on Security Chip

Audit logs can be used to detect the intrusion behavior. So it has become the main target of attack invaders. The existing technologies of logging protection mainly depend on software and have some inherent defects. The actual demand from this, presents an audit logging protection mechanism based on security chip, to provide hardware protection when the log is stored and accessed. Introduction of the security chip makes the audit log to store and access are in the trusted environment, to ensure the confidentiality and integrity of the log.

[1]  Radu State,et al.  A distance-based method to detect anomalous attributes in log files , 2012, 2012 IEEE Network Operations and Management Symposium.