Product Overview

                        Ankki Industrial Control Database Audit System (AAS-I) is a security audit product specializing in real-time database in industrial control field. By recording the activities of real-time database in industrial control system, using deep protocol analysis technology, independent of the database at the network level, fine-grained compliance management of database operation is carried out. Event alarm, log retention and accident traceability are carried out to improve the safety of industrial control system.

                        Functional Characteristics

                        1. Strong compatibility


                        Support InfoPlus.21, PHD, PI and other mainstream real-time industrial control databases, support oracle, mysql, NPC Golden Warehouse and other mainstream relational database audits at home and abroad, and achieve security audits from production control to enterprise resource planning life cycle.


                        2. Comprehensive Audit


                        Support the audit of InfoPlus.21 API, JDBC, ODBC and SQL Structured Query Language to ensure that real-time data of industrial control is also effectively monitored and audited in the process of sharing and exchanging between internal control system and external application system.


                        3. Deep Detection


                        Through in-depth analysis of OPC standard protocol message, we can audit DCS internal bit number information, real-time monitor production control data, real-time early warning of abnormal events, and ensure the continuous, stable and safe operation of production control system.


                        4. Quick and Efficient Audit Record Retrieval


                        Using advanced full-text retrieval technology, we can quickly and efficiently retrieve massive audit records by using arbitrary keywords.


                        5. Oriented Behavior Analysis and Event Traceability and Evidence Collection


                        Construct event correlation, simulate playback, restore event scene, simulate the whole event's action track, visually trace the event's relevance, reproduce the operation process, and conduct electronic forensics.


                        6. Hidden Data Processing


                        The sensitive data in the audit results are hidden, and the unauthorized users can not normally view the hidden data, so as to prevent the secondary leakage of important data in the database audit equipment.


                        7. Event Warning


                        According to different risk levels, real-time alarm can be carried out through SMS, email, SNMP and other ways to facilitate the security administrators to deal with it in time.


                        8. Multidimensional Report


                        Built-in privilege operation, exception analysis, access source and other report types, while supporting multi-conditional combination of custom report generation. Through the statistical analysis of multi-dimensional reports, potential security threats can be quickly and accurately identified, which provides data support for the adoption of more targeted security strategies.


                        Product Advantages

                        1. The industry's first real-time database audit product to support industrial control


                        2. Intelligent Modeling Based on AI Technology and Machine Learning


                        3. Implementing APT and other complex attacks detection and interception through combination rules and statistical rules


                        4. Billion-level data, second-level retrieval


                        5. Guarantee of high concurrent data processing capability at telecommunication level


                        Effect of deployment

                         Ankki Industrial Control Database Audit System is deployed on the industrial switch to supervise all data operations and establish a complete, reliable and efficient data security system.


                        Typical Cases

                        More