摘要
使用形式化方法对Java智能卡的应用隔离与对象共享机制进行分析,用信任模型表述卡内多应用间对象共享关系,根据信任可传递的条件推断出仅由应用级安全策略控制共享对象访问的不足,提出以增加卡内全局访问控制机制来防止未经授权的信息流动这一安全策略设计思路,并给出一个简单实现。
A formal method was used to analyze the application isolation and objects sharing mechanism in Java smart card. A trust model was used to clarify the relationship of the inter-applet shareable objects. According to the constraint of trust transfer, it was inferred that, in addition to the applet level access controls, a global security policy of card was necessary to prevent the unauthorized information flow. Finally a simple implementation of the global security mechanism was designed.
出处
《计算机应用》
CSCD
北大核心
2009年第6期1615-1616,1621,共3页
journal of Computer Applications