摘要
操作系统结构化是目前安全领域的一大难题。以无干扰模型为基础,提出了一种基于分层隔离的进程环境安全模型,给出了进程环境安全的定义和条件。然后对系统结构化要求进行了形式化的描述,并证明通过提出的结构化方法可以获得安全的进程环境。最后结合经典无干扰理论,将本模型由进程环境扩展为适用于整个系统安全的模型。
Structural protection of operating system is currently a difficult problem in security field.This paper studied a process execution environment model based on hierarchy isolation,and gave definition and conditions of process environment security.Then we formalized structural requirements of process environment,and proved that a secure process environment can be available by structured method proposed.Finally combined with classic non-interference theory,the security model was extended from process environment to the whole system.
出处
《计算机科学》
CSCD
北大核心
2011年第4期303-306,共4页
Computer Science
基金
973国家重点基础研究计划(2007CB311100)
国家863基金项目(2009AA01Z437)
信息网络安全公安部重点实验室开放基金资助课题资助
关键词
操作系统
结构化
无干扰
进程环境
Operating system
Structural protection
Non-interference
Process environment