摘要
安全模型有多种代表模型,如BLP模型和不可推断模型等.这些模型在理论描述或者实际应用方面存在一定的局限性,如BLP模型未能考虑隐蔽通道,不可推断模型不适应非确定系统.针对这些模型的不足,本文在BLP模型基础上,考虑了隐蔽通道的特性,提出了泄密通道有限容忍的通信信道模型,该模型能通过调节泄密通道信道容量上限来平衡实际系统可用性和安全性.
Many typical security models have been proposed,such as the BLP model and the nondeducibility model,however,these models have some disadvantages and limitations in theoretical analysis or implementation respectively.For instance,BLP model did not take the covert channel into account,and the nondeducibility model cannot be applied to the nondeterministic systems.Considering these shortages brought about by the existing works,this paper take the properties of the covert channel as a main consideration,and propose a novel finite-information-leakage-tolerance communication channel model based on the BLP model.The proposed model finds a tradeoff between the availability and security of the practical system by adjusting the upper bound of the channel capacity of the information leakage.
出处
《电子学报》
EI
CAS
CSCD
北大核心
2010年第10期2460-2464,共5页
Acta Electronica Sinica