Group PowerPoint Residency - Day 2 Residency Assignment
User DB read access:
Libraries are the critical knowledge sources for any educational institution where there is a collection of multiple books in various subjects and languages. Each institution has its Libraries, both Digital and print libraries. The access permissions to the library restrict to users based on the roles and designations. Most of the users are students, professors where they are permitted to have read access to the library database. Nowadays, most of the universities are moving to digital libraries, but they are not entirely removing the print collections. All universities are providing the opportunity to the students to access the library database to check the stock of books available and to order them. This user access to the library database helps students to review the availability easily and quickly with our searching in person at the library. Students save a lot of time with the user access to the Library database. There are some disadvantages if the students are not following security principles. There would be a possibility of a cyber threat if the student access credentials to the library database hacking. Many hackers are trying to get access to the university database for stealing the student and professor's information. If anyone of the students in the university is not following the security principles, then the hackers get a chance to hack the library website. University Library DB admin should follow strict security policies and provide limited permissions to users and should also implement secure access and login process like Two-Factor Authentication. Admin should also implement breach detection technology for the university database and to monitor the breach detection system logs to check if in case of any data misuse or breach occur. The users are assigned with the Read only access permissions for the university library website.
Database security issues are generally significant for some applications. Customarily, investigation in the database network in the territory of information security can comprehensively characterize in to get to control research, and information protection examine (Chaudhuri, S., Kaushik, R., & Ramamurthy, R. (2011, January)). Shockingly, there is little cover between these two zones. Right now, open a conversation that inquires as to whether there is a reasonable center ground between these territories. Given that the primary foundation gave by database frameworks where much delicate information lives should be control, we pose the inquiry how the database frameworks foundation can step up to help with security needs.
Notwithstanding, the leading help gave by database frameworks where much delicate organized information lives is the system forget to control. Quickly, the thought is to approve a client to get to just a subset of the information. The approval is upheld by expressly reworking questions to restrain access to the recommended subset (Chaudhuri, S., Kaushik, R., & Ramamurthy, R. (2011, January)).
Librarian/Admin DB read/write access:
The database access permissions set to an individual based on their role and designation to protect the secured personal information from misuse. Hackers always try to hack and access the database to steal the data from abuse. So proper security methods and permissions need to follow to protect the data from cybercriminals. The university librarian is a user who has given the Read/write permissions because he has the information about the stock of the books coming into the library and going out of the library. He always needs to update the inventory whenever the stock arrives. The students and professors have given only read access because they use to check only the availability of the books and place the order; there is no need to have write access. But for the Librarian/Admin, there should have both read/write permissions for updating the inventory.
The development of database innovation has additionally altogether expanded security concerns Byun, J. W., & Li, N. (2008)). The present database innovation causes it conceivable to gather to and store a gigantic measure of individual explicit information. The utilization of inventive information extraction methods joined with cutting edge information combination. Relationship systems make it conceivable to naturally extricate a considerable assortment of data from the accessible databases and a massive variety of data vaults available on the web (Byun, J. W., & Li, N. (2008)). Even though the immediate casualties of security infringement are customers, numerous undertakings and associations are profoundly worried about protection issues too (Byun, J. W., & Li, N. (2008)).
References:
Byun, J. W., & Li, N. (2008). Purpose based access control for privacy protection in relational database systems. The VLDB Journal, 17(4), 603-619.
Chaudhuri, S., Kaushik, R., & Ramamurthy, R. (2011, January). Database access control and privacy: Is there a common ground?. In CIDR (pp. 96-103).
Summary:
Database access permissions assigned to the persons based on the individual designation and their role at the workplace. Students and Professors of University are given read-only access for the library website, whereas the Librarian/Admin has both the Read and Write access.
Conclusion: