期刊文献+

基于Clark-Wilson的属性证书授权模型

An Authority Model Based on the Clark-Wilson Attribute Certificate
下载PDF
导出
摘要 本文采用Clark-Wilson完整型模型,使用属性证书作为权限传递的载体,结合授权管理基础设施(PMI)实现基于角色的授权模型,并提出一种形式化描述架构,描述权限、证书和相关的授权;基于语义的演算过程对给定的属性证书集和撤销证书集可以验证某种权限是否有效;采用Alloy形式化语言来定义模型,并且给出描述扩展Clark-Wilson的方法。 The Clark-Wilson-based integrity model is introduced, and the privilege management infrastructure is studied,and a role-based authorization model is implemented with attribute certificates,and then a formal description framework is put forward to describe privilege,certificates and interrelated authorization.The semantics-based calculation can verify privilege by some appointed attribute certificate sets and revocation certificate sets.Finally,the model is defined with the Alloy formal language,and a method of expanding the Clark-Wilson model is also presented.
出处 《计算机工程与科学》 CSCD 2007年第3期23-26,共4页 Computer Engineering & Science
关键词 证书 授权模型 Clark-Wilson ceitificate authorization model Clark-Wilson
  • 相关文献

参考文献6

  • 1Lipner S.Non-Discretionary Controls for Commercial Applications[A].Proc of the 1982 Symp on Privacy and Seeurity[C].1982.2-10.
  • 2Biba K.Integrity Considerations for Secure Computer Systems[R].Technical Report MTR-3153,MITRE Corporation,1977.
  • 3Clark D,Wilson D.A Comparison of Commercial and Military Security Policies[A].Proc of the 1987 IEEE Symp on Security and Privacy[C].1987.184-194.
  • 4Saltzer J,Schroeder M.The Protection of Information in Computer Systems[A].Proc of the IEEE,1975,63(9):1278-1280.
  • 5Anderson J P.Computer Security Technology Planning Study Volume Ⅱ[R].Techincal Report ESD-TR-73-51,Electronic Systems Division,Air Force Systems Command,1972.
  • 6Firozabadi B S,Sergot M,Bandmann O.Using Authority Certificates to Create Management Structures[A].Proc of the 9th Int'l Workshop on Security Protocols[C].2001.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部