期刊文献+

面向XML文档的细粒度强制访问控制模型 被引量:41

A Fine-Grained Mandatory Access Control Model for XML Documents
下载PDF
导出
摘要 XML文档存放的信息需要受到访问控制策略的保护.现有的一些面向XML文档的访问控制模型都是基于自主访问控制策略或基于角色的访问控制.高安全等级系统需要强制访问控制来保证系统内信息的安全.首先扩展了XML文档模型使其包含标签信息,并给出了扩展后的文档模型需要满足的规则.然后通过讨论XML文档上的4种操作,描述了面向XML文档的细粒度强制访问控制模型的详细内容.该模型基于XML模式技术,它的控制粒度可以达到文档中的元素或者属性.最后讨论了该模型的体系结构和一些实现机制. Information stored in XML documents should be protected by access control policy. Current access control models for XML documents are all based on DAC (discretionary access control) or RBAC (role-based access control). High security system uses MAC (mandatory access control) to secure information in system. XML document model is extended to include label information in this paper, and some rules that the extended model has to satisfy with are presented. Fine-grained MAC model for XML documents is described in detail by discussing four operations on XML documents. The fine-grained MAC model is based on XML schema, and its finest granularity of access control is element or attribute. The architecture and some mechanisms used to implement the fine-grained MAC model are discussed too.
出处 《软件学报》 EI CSCD 北大核心 2004年第10期1528-1537,共10页 Journal of Software
基金 国家自然科学基金 国家重点基础研究发展规划(973) 国家高技术研究发展计划(863)~~
关键词 访问控制 XML 强制访问控制 细粒度 模式 access control XML mandatory access control fine-grained schema
  • 相关文献

参考文献2

二级参考文献15

  • 1李斓,何永忠,冯登国.面向XML文档的细粒度强制访问控制模型[J].软件学报,2004,15(10):1528-1537. 被引量:41
  • 2[1]Satoshi Hada,Michiharu Kudo.XML Access Control Language[M].Tokyo Research Laboratory,IBM Research,2001
  • 3[2]Ravi S Sandhu. Role-Based Access Control. Laboratory for Information Security Technology ISSE Department,MS 4A4 GeorgeMason University, http://www.isse.gmu.edu/faculty/sandhu, 1997
  • 4[3]Michiharu Kudo,Satoshi Hada. XML Document Security based on Provisional Authorization[M].Tokyo Research Laboratory,IBM Research,2000
  • 5[4]T Bray et al. Extensible Markup language(XML)1.0.World Wide Web Consortium (W3C), http://www.w3c.org/TR/REC-xml, 1998
  • 6[5]XML Security Suite, alphaWorks.http://www.alphaWorks.com/tech/xmlsecuritysuite, 1999
  • 7[6]Entrust Technologies'XML Strategy for Authorization.2001
  • 8[7]Ernesto Damiani.Design and Implementation of an Access Control Processor for XML Documents. University di Milano,1999
  • 9Elliotte Rusty Harold.XML实用大全,2000.
  • 10S. Jajodia;M. Kudo;V. S. Subrahmanian.Provisional Authorization,2000.

共引文献10

同被引文献268

引证文献41

二级引证文献64

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部