3-Module-2 (Part-1) - 19-05-2023
3-Module-2 (Part-1) - 19-05-2023
3-Module-2 (Part-1) - 19-05-2023
CBS3002
MODULE:2
• unified models
• access control
• algebra
• For example:
a program that changes a variable to 0 does
not (usually) alter the protection state.
What is UDM?
- The Unified Data Model (UDM) is a Chronicle
standard data structure that stores information
about data received from sources.
- It is also called the 'schema'.
- Chronicle can store the original data it receives
in two formats, as the original raw log and as a
structured UDM record.
- The UDM record is a structured representation
of the original log.
- Chronicle always stores the original raw log.
UNIFIED DATA MODEL (UDM)
UDM Entity:
• A UDM Entity is a contextual representation of
an asset, user, resource, etc. in the
environment.