Intrusion Detection-Based Access Control Algorithm for PostgreSQL Based on Front-End Back-End Protocols 


Vol. 14,  No. 8, pp. 595-607, Aug.  2025
https://doi.org/10.3745/TKIPS.2025.14.8.595


PDF
  Abstract

This study explores the feasibility of implementing a database (DB) access control solution by analyzing the PostgreSQL Front-End/Back-End (FEBE) protocol. To this end, algorithms were designed to extract session metadata and SQL text from startup, query, and parse packets. These algorithms enable control over user and database access, as well as SQL commands, including DML, DDL, and DCL types. The extraction process was validated using Apache JMeter, simulating concurrent SQL sessions. Results showed 100% accuracy across 100 session tests and 200 SQL executions.Unlike conventional PostgreSQL DB security tools focused on auditing and logging, the proposed method emphasizes real-time detection and protocol-level analysis. It allows for session-aware filtering, SQL pattern-based control, and fine-grained object-level restriction. The study demonstrates that protocol-layer information can serve as a viable foundation for developing PostgreSQL security solutions. Furthermore, this approach shows potential for extending to other open-source DBMSs, enhancing the scope and applicability of protocol-based security mechanisms.

  Statistics


  Cite this article

[IEEE Style]

S. Jwa and S. Kim, "Intrusion Detection-Based Access Control Algorithm for PostgreSQL Based on Front-End Back-End Protocols," The Transactions of the Korea Information Processing Society, vol. 14, no. 8, pp. 595-607, 2025. DOI: https://doi.org/10.3745/TKIPS.2025.14.8.595.

[ACM Style]

Seong-Hoon Jwa and Seung-Hee Kim. 2025. Intrusion Detection-Based Access Control Algorithm for PostgreSQL Based on Front-End Back-End Protocols. The Transactions of the Korea Information Processing Society, 14, 8, (2025), 595-607. DOI: https://doi.org/10.3745/TKIPS.2025.14.8.595.