期刊文献+

利用逻辑编程方法进行形式化的网络安全策略验证

USING LOGIC PROGRAMMING FOR FORMAL VERIFICATION OF NETWORK SECURITY POLICY
下载PDF
导出
摘要 高级安全策略又称为安全需求,低级策略配置是高级策略的实现,正确的低级策略配置必须能够满足安全需求。网络安全取决于低级策略配置的正确性,由于策略配置异常复杂,并且缺乏准确描述安全需求的方法,这为策略的正确性分析提出了巨大的挑战。采用逻辑编程方法来分析网络安全策略,通过将低级策略配置、高级策略、漏洞信息等元素转化为逻辑程序,将网络中所有可能存在的访问与安全需求进行对比,判定策略配置是否满足安全需求,并给出所有不满足安全需求的策略配置。 We treat high-level policy as security requirement and low-level policy as the implementation of the high-level policy,a proper low-level policy configuration must meet the security requirement.Network Security depends on the correctness of low-level policy configuration,but for the sake of extreme complexity in policy configuration as well as lacking the means of accurate description of the security requirement,the validity analysis of the policies is posed a terrible challenge.We use logic programming to perform policy analysis on network security.By translating low-level policy configuration,high-level policy and vulnerability database into logic program and contrasting all kinds of possible accesses with security requirements,the policy configuration can be determined of whether or not to have met the security requirement,together with a list of all those policy configurations unsatisfying the security requirement.
出处 《计算机应用与软件》 CSCD 2010年第5期78-82,共5页 Computer Applications and Software
基金 国防教研基金重点资助项目(9140A26010306JB5201)
关键词 XSB逻辑编程系统 策略层次 策略验证 XSB logic programming system Policy hierarchy Policy verification
  • 相关文献

参考文献4

  • 1Moffett J,Sloman M S.Policy Hierarchies for Distributed Systems Management.IEEE JSAC,1993(11):1404-14.
  • 2Konstantinos Sagonas.Terrance Swift The XSB System Version 3.1 Volume 1:Programmer's Manual.2007.
  • 3MatthewWojcik,Tiffany ergeron,Todd Wittbold,et al.Introduction to OVAL:A new language to determine the presence of software vulnerabilities.2003-11[2004-10-28].http://oval.mitre.org/documents/docs-03/intro/intro.html.
  • 4National Institute of Standards and Technology.ICAT metabase.2004-10.http://icat.nist.gov/icat.cfm.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部