摘要
安全标记与数据客体的绑定,是制约多级安全真正走向网络实用化的关键问题。针对这一问题,在深入分析XML的基础上,描述了XML客体安全标记及其约束规则,提出了安全标记与数据客体的绑定方法,讨论了安全标记查询、客体内容裂解等相关操作,给出了基于XML安全标记的安全通信实施机制。该绑定方法不仅能够满足多级信息系统间安全通信的需要,而且能够实施粒度更细的访问控制,提高信息客体的利用率。
How to bind secure label to data object is a key problem in multi-level network that restricts MI~ from prac- ticality on network. This paper analyzed deeply xml,and expounded secure label of object based on xml and its restric- tions,then put forward a method of binding secure label to data object based on XML. At the same time, some opera- tions were discussed in detail, such as query of secure label, decomposition of object. Finally, secure communication based on secure label was described in multi-level network. The method can not only meet the need of secure communi- ~ation in multi-level network, but also accomplish fine-grained mandatory access control, which may improve availability of information and reduce complexity of binding.
出处
《计算机科学》
CSCD
北大核心
2013年第8期124-128,145,共6页
Computer Science
基金
国家863高技术研究发展计划项目(2009AA01Z438)
国家973计划前期研究专项(2011CB311801)
河南省杰出科技创新人才计划(114200510001h)资助