Design and implementation of secure audit system in Kylin
Chen Song-zheng · Jisuanji gongcheng yu sheji · 2010
Kylin implemented RBA(role based authorization),which means that users are associated with roles and roles are associated with MAC(mandatory access control) policies.Using for reference and inheriting LAF(Linux audit framework),the Kylin audit system implemented the audit filter function for role,defined uniform audit interface and log analysis for RBA and MAC policies.Differing form Linux,utilizing RBA and MAC policies,it implemented secure protection of audit system which only can be done by audit administrator,but Linux audit works are done by root.For solving the shortcoming that multifarious audit log information is intricate,it implemented convenient log searching and friendly graphic audit administrating tools.