期刊文献+

基于认证可信度的BLP模型研究 被引量:1

Research on Authentication Trustworthiness-based BLP Model
下载PDF
导出
摘要 该文扩展认证可信度的相关概念,描述当前系统中认证和授权相脱节的情况下如何将两者通过认证可信度结合起来,提出认证可信度与BLP相结合的模型:基于认证可信度的BLP模型,要求主体对客体的访问必须经过可信度安全特性和BLP模型安全策略的双重判定。模型体现了实际系统对不同用户认证可信度授予不同访问权限的需要,防止通过弱认证机制获得低认证可信度的用户访问高敏感信息。 This paper extends the concepts of authentication trustworthiness,and describes how to combine authenti-cation and authorization with authentication trustworthiness under the condition that authentication and authorization are disjointed in current systems.This paper puts forward the authentication trustworthiness -based BLP Model,which associates the authentication trustworthiness with BLP model.The model requires that the subject who wants to access the object must be evaluated with authentication trustworthiness security property and the security policies of the BLP model.This model embodies the need of systems that different user with different authentication trustworthiness should be authorized with different rights,and can prevent the users who acquire lower authentication trustworthiness by weaker authentication mechanisms from accessing sensitive information.
出处 《计算机工程与应用》 CSCD 北大核心 2004年第25期18-19,40,共3页 Computer Engineering and Applications
基金 国家863高技术研究发展计划项目:重大软件专项服务器操作系统内核(编号:2002AA1Z2101)资助
关键词 认证可信度 BLP模型 authentication trustworthiness,BLP Model
  • 相关文献

参考文献3

  • 1D E Bell,L J La Padula. Secure Computer System:Unified Exposition and Multics Interpretation[M].MTR-2997 Revl,Massachusetts,MITRE Corporation Bedford: 1976-03
  • 2Jung-Min Kang,Wook Shin,Chun-Gu et al. Extended BLP Security Model Based on Process Reliability for Secure Linux Kernel[C].In:IEEE 2001 Pacific Rim International Symposium,2001:299~303
  • 3石文昌,孙玉芳.多级安全性政策的历史敏感性[J].软件学报,2003,14(1):91-96. 被引量:19

二级参考文献1

  • 1国家质量技术监督局.计算机信息系统安全保护等级划分准则.GB17859-1999[M].北京:中国标准出版社,1999..

共引文献18

同被引文献5

引证文献1

二级引证文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部