{"id":1090,"date":"2016-03-11T11:48:38","date_gmt":"2016-03-11T10:48:38","guid":{"rendered":"https:\/\/adm-adria.nevtron.si\/prod-18\/?p=1090"},"modified":"2018-05-15T14:47:05","modified_gmt":"2018-05-15T12:47:05","slug":"database-activity-monitor-dam-definicija-in-naloge-dam","status":"publish","type":"post","link":"https:\/\/adm-adria.si\/en\/2016\/03\/database-activity-monitor-dam-definicija-in-naloge-dam\/","title":{"rendered":"Database Activity Monitor (DAM) \u2013 definicija in naloge DAM"},"content":{"rendered":"<p>Database Activity Monitorji zajemajo in hranijo najmanj, vse aktivnosti SQL (Structured Query Language) stavkov v realnem \u010dasu ali skoraj realnem \u010dasu, vklju\u010dno z vsemi aktivnostmi administratorjev baz podatkov, ki zaradi velikih pooblastil predstavljajo najve\u010djo nevarnost za zlorabo podatkov. Pomembno je, da lahko resen DAM sledi aktivnostim preko razli\u010dnih platform, saj le tako lahko govorimo o celovitem nadzoru nad aktivnostmi, ki potekajo na na\u0161ih sistemih. Seveda mora DAM v primeru ugotovljenih kr\u0161itev varnostnih politik o tem preko alarmov in elektronske po\u0161te ter SMS o tem obve\u0161\u010dati poobla\u0161\u010dene osebe v podjetju.<\/p>\n<p><strong>Database Activity Monitor mora vseovati naslednjih pet funkcij:<\/strong><\/p>\n<p><strong>1.<\/strong> sposobnost za neodvisno spremljanje in vodenje revizijske sledi o vseh aktivnosti v bazah podatkov, vklju\u010dno z aktivnostmi skrbnikov baz podatkov. Orodje mora razpoznati in ovrednostiti vse SQL stavke tipa: DML, DDL, DCL in TCL.<\/p>\n<p><strong>2.<\/strong> varno hranjenje aktivnosti dolo\u010denih z varnostnimi politikami izven nadziranih baz podatkov.<\/p>\n<p><strong>3.<\/strong> mo\u017enost zdru\u017eevanja in povezovanja dogodkov z razli\u010dnih DBMS. Ker imajo v ve\u010dini podjetij iz razli\u010dnih razlogov ve\u010d tipov baz podatkov, mora seveda resen DAM sistem le-te podpirati. Tako na primer McAfee DAM sistem podpira baze kot so Oracle, SQL Server, Sybase, MySQL, Teradata, Postgres, SQLAzure, kljub razlikam med posameznimi nare\u010dji SQL sintakse in semantike.<\/p>\n<p>4. mo\u017enost podpore delitvi vlog, saj si te\u017eko predstavljamo, da bi imel administrator baz podatkov mo\u017enost spreminjanja vsebine revizijske sledi ne glede na to ali imamo instalirano orodje kot je na primer Database Vault pri Oracle DBMS.<\/p>\n<p>5. mo\u017enost generiranja alarmov na podlagi pravil, ki so nekatera zaradi la\u017eje instalacije in splo\u0161no znanih pravil dobre prakse \u017ee del samega orodja, kakor tudi pravil, ki jih preko preprostega vmesnika napi\u0161emo sami. Konzola McAfee DAM je narejena tako, da lahko tudi SQL neve\u0161\u010d uporabnik preprosto s par kliki pi\u0161e nova pravila, kot na primer alarmiranje varnostnega in\u017eenirja, \u010de DBA poskusi izvesti SELECT stavek nad tabelo v kateri se nahajajo ob\u010dutljivi osebni podatki. McAfee DAM ima tudi mo\u017enost, da poleg tega, da spro\u017ei alarm prekine kr\u0161iteljevo sejo in uporabni\u0161ki ra\u010dun blokira za dolo\u010den \u010das.<\/p>\n<p>In kje hranimo revizijsko sled? Ve\u010dina DAM sistemov ima mo\u017enost posredovanja zajete revizijske sledi razli\u010dnim SIEM sistemom.<\/p>\n<p>Seveda pa mora pravi DAM delovati neodvisno in porabljati \u010dim manj resursov. Tipi\u010dna poraba CPU McAfee DAM je tako okoli 3 odstotke in s tem prakti\u010dno neopazno sledi dejavnostim na na\u0161em sistemu.<\/p>\n<p><a href=\"http:\/\/www.adm-adria.eu\/\" target=\"_blank\" rel=\"nofollow noopener\">ADM-Adria Approach<\/a> nudi kompletno re\u0161itev od priprave, izvedbe in vzdr\u017eevanja DAM sistemov proizvajalca Intel \u2013 McAfee. \u010ce i\u0161\u010dete re\u0161itev zaradi zakonskih zahtev ali zgolj zaradi lastne \u017eelje po dobri praksi varovanja podatkov,vam bodo v podjetju <a href=\"http:\/\/www.adm-adria.eu\/\" target=\"_blank\" rel=\"nofollow noopener\">ADM-Adria Approach<\/a> z veseljem prisko\u010dili na pomo\u010d, saj imajo veliko izku\u0161enj, tudi pri velikih strankah, pri instalacijah in nastasvitvah DAM monitorjev.<\/p>","protected":false},"excerpt":{"rendered":"<p>Database Activity Monitorji zajemajo in hranijo najmanj, vse aktivnosti SQL (Structured Query Language) stavkov v realnem \u010dasu ali skoraj realnem \u010dasu, vklju\u010dno z vsemi aktivnostmi administratorjev baz podatkov, ki zaradi velikih pooblastil predstavljajo najve\u010djo nevarnost za zlorabo podatkov. Pomembno je, da lahko resen DAM sledi aktivnostim preko razli\u010dnih platform, saj le tako lahko govorimo o [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1088,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1090","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-novice"],"_links":{"self":[{"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/posts\/1090","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/comments?post=1090"}],"version-history":[{"count":1,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/posts\/1090\/revisions"}],"predecessor-version":[{"id":1091,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/posts\/1090\/revisions\/1091"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/media\/1088"}],"wp:attachment":[{"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/media?parent=1090"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/categories?post=1090"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/adm-adria.si\/en\/wp-json\/wp\/v2\/tags?post=1090"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}