Cybersecurity of the functioning of the information management system with the SQL Server
DOI: 10.34759/trd-2022-127-13
Аuthors
Moscow Aviation Institute (National Research University), 4, Volokolamskoe shosse, Moscow, А-80, GSP-3, 125993, Russia
e-mail: olga.vakulchik@mail.ru
Abstract
This article regards the issue of cyber-security of the information management system of the aerospace system (IMS). Database is the basic IMS component. The SQL server was employed as the database system. Monitoring execution is necessary for the Database information processes performance and security support. The article describes the development of the remote monitoring effective method. This method solves two basic problems, namely information transmission security in the open environment, and effective assessment of the information environment state.
Analysis revealed that effective remote monitoring ensuring requires tool selection. The selected tool should wield enhanced security and employ SQL language for the Database performance evaluation. The tool tackled with in this article ensures information encoding in the open transmission environment. It acts as an administrative panel as well.
After the tool selection, the SQL language objects analysis was performed.
Selection criteria of the necessary objects are as follows: the provided information completeness, request preparation complexity, and the internal functionality enhancing capability. Analysis revealed that storable system procedures are the most informative.
The next stage of development consisted in the stored procedures selection according to the «integral informativity» criterion. The sp_whoisactive stored procedure is of specially great capabilities. However, it has been found that these procedures were redundant. That is why optimized requests for the remote monitoring effectiveness improving were developed. The optimized requests reduce the status information volume, ensuring security, and provide herewith the remote monitoring completeness.
Keywords:
cybersecurity, the information management system, remote status monitoring, remote administration, database management system, SQL Server, SQL queryReferences
- Grummet V.A., Lisovin O.A., Tyunin E.B. III vserossiiskaya nauchno-prakticheskaya konferentsiya «Tsifrovizatsiya ekonomiki: napravleniya, metody, instrumenty»: sbornik materialov. Krasnodar, Izd-vo Kubanskii gosudarstvennyi agrarnyi universitet imeni I.T. Trubilina, 2021, pp. 58-61.
- Titov A.G., Neretin E.S., Dudkin S.O., Brusnikin P.M. Trudy MAI, 2019, no. 105. URL: https://trudymai.ru/eng/published.php?ID=104257
- Dudakov N.S., Makarov K.V., Timoshenko A.V. Trudy MAI, 2016, no. 90. URL: https://trudymai.ru/eng/published.php?ID=74844
- Solomatin M.S., Mitrofanov D.V. Trudy MAI, 2020, no. 110. URL: https://trudymai.ru/eng/published.php?ID=112926. DOI: 10.34759/trd-2020-110-16
- Korotkova T.I. Trudy MAI, 2015, no. 84. URL: https://trudymai.ru/eng/published.php?ID=63279
- Medvedev Yu.S. Mezhdunarodnaya nauchno-prakticheskaya konferentsiya «Ekonomicheskoe razvitie: sostoyanie, problemy, perspektivy»: sbornik statei. Penza, Povolzhskii dom znanii, 2018, pp. 71-75.
- Alimzhanova Zh.M., Baltabekova A.B., Turdaly A.D. Aktual’nye nauchnye issledovaniya v sovremennom mire, 2019, no. 12-4 (56), pp. 61-64.
- Kleptsov M.Ya., Lyubimova L.V., Mironov M.M. Voprosy kiberbezopasnosti, 2018, no. 2 (26), pp. 16-23. DOI: 10.21681/2311-3456-2018-2-16-23
- Kazaryan K.K., Belan V.V. Student, 2022, vol. 5, no. 1. URL: https://stud.net.ru/poddelka-zaprosov-na-storone-servera/
- Yunus M.A. et al. Review of SQL injection: Problems and prevention // International Journal on Informatics Visualization, 2018, vol. 2, no. 3-2, pp. 215-219. DOI:10.30630/joiv.2.3-2.144
- Mikhailov V.Yu., Mazepa R.B. Informatsionnoe protivodeistvie ugrozam terrorizma, 2015, vol. 2, no. 25, pp. 161-169.
- Vinogradskii V.G., Egorov V.G., Egorova O.M. Zametki uchenogo, 2021, no. 13, pp. 36-42.
- Ryzhikova E.G. V Mezhdunarodnaya nauchno-prakticheskaya konferentsiya «Aktual’nye nauchnye issledovaniya»: sbornik statei. Penza, Izd-vo Nauka i Prosveshchenie, 2022, pp. 39-41.
- Okardi B., Asagba O. Overview of distributed database system, International Journal of Computer Techniques, 2021, vol. 8, issue 1, pp. 83-100.
- Al-Hussaini K., Al-Amdi N.., Abdulrazzak F. A New Multi-resource Deadlock Detection Algorithm Using Directed Graph Requests in Distributed Database Systems, International Conference of Reliable Information and Communication Technology, Springer, Cham, 2020, pp. 462-474.
- Lenkin A.V. Postulat, 2020, no. 6 (56). URL: http://e-postulat.ru/index.php/Postulat/article/view/3240/3287
- Tanaev I.V, Shveikin V.V., Zavgorodnii S.D., Dmitriev E.A. IV Mezhdunarodnaya studencheskaya nauchno-prakticheskaya konferentsiya «Nauchnye issledovaniya i razrabotki studentov»: sbornik materialov, Cheboksary, Izd-vo Interaktiv Plyus, 2017, pp. 186-189.
- Tret’yakov I.A., Kozhekina E.N., Zhuravlev I.V. Vestnik Donetskogo natsional’nogo universiteta. Seriya G: Tekhnicheskie nauki, 2021, no. 2, pp. 39-49.
- Teten’kin A.Yu. Materialy XVII Mezhdunarodnoi nauchno-prakticheskoi konferentsii «Tatishchevskie chteniya: aktual’nye problemy nauki i praktiki», Tol’yatti, Izd-vo Volzhskii universitet imeni V.N. Tatishcheva, 2020, pp. 16-19.
- Amosova A.F. XLVII nauchnaya i uchebno-metodicheskaya konferentsiya Universiteta ITMO «Al’manakh nauchnykh rabot molodykh uchenykh Universiteta ITMO», Saint Petersburg, Izd-vo ITMO, 2018, pp. 37-40.
Download