期刊文献+

基于Petri网的动态访问控制模型

Dynamic Access Control Model Based on Petri Net
下载PDF
导出
摘要 访问控制是保障信息系统安全的一种主要机制,通过限定主体对客体的访问权限,确保对信息资源访问的合法性,达到保证信息的机密性、完整性和可用性的目的。通常,这种机制主要通过静态的访问控制矩阵实现,不随信息系统处理的任务变换而调整。利用Petri网的基本原理,提出了一种适合于信息系统的访问控制模型,随着信息系统的状态变化动态授予访问控制权限,实现对信息系统资源安全的动态保护。 Access control is an important assurance mechanism for the security of information technology systems.It protects the validity access right for information asset by constraining subjects to access to objects in order to assure the confidentiality,integrity and availability of information.As usual the mechanism is realized by static access control matrix which doesn't represent the dynamic characteristic along with task changing.In this paper,a dynamic access control model is described based on the Petri Net rationale.The dynamic model authorizes user role the access control right according to the implementation of different tasks in the system to prevent inappropriate use of information.
出处 《计算机工程与应用》 CSCD 北大核心 2006年第9期4-5,15,共3页 Computer Engineering and Applications
基金 国家863高技术研究发展计划资助项目(编号:2002AA144030)
关键词 动态访问控制 PETRI网 信息安全 dynamic access control,Petri net,information security
  • 相关文献

参考文献2

二级参考文献5

  • 1Yacoub S, Ammar H. A Methodology for ArchitecturalLevel Reliability Risk Analysis[J ]. IEEE Trans. Software Eng, 2002, 28(6) :529 - 547.
  • 2Goseva-Popstojanova Katerina, Ahmed Hassan, Architectural-Level Risk Analysis Using UML [ J ]. IEEE Trans.Software Eng, 2003,29(10) :946 - 959.
  • 3Munson J, Khoshgoftaar T. Sotware Metrics for Reliability Assessment[J]. Handbook of Software Reliability Eng.,1996,33: 493 - 529.
  • 4Molak. Fundamentals of Risk Analysis and Risk Maragement[M]. Boca Raton: CRC Press, 1996.
  • 5Vlasta Molak. Fundamentals of Risk Analysis and Risk Management[ M]. Boca Raton: Lewis Publishers, 1997.

共引文献302

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部