Computer operating system logging and security issues: a survey

作者:Zeng, Lei; Xiao, Yang*; Chen, Hui; Sun, Bo; Han, Wenlin
来源:Security and Communication Networks, 2016, 9(17): 4804-4821.
DOI:10.1002/sec.1677

摘要

Logging has become a fundamental feature within the modern computer operating systems because of the fact that logging may be used through a variety of applications and fashion, such as system tuning, auditing, and intrusion detection systems. Syslog daemon is the logging implementation in Unix/Linux platforms, while Windows Event Log is the logging implementation in Microsoft Windows platforms. These logging implementations provide application program interfaces that, in turn, simplify logging functions from data collection to data storage. In this paper, we survey Unix, Linux, and Windows logging mechanisms and introduce their security issues.