期刊文献+

基于XML的多类型数据客体访问控制 被引量:3

Multi-type data object access control based on XML
下载PDF
导出
摘要 为解决安全标记与多类型数据客体绑定的灵活性、一致性不足以及强制访问控制实施粒度粗的问题,提出一种基于XML的多类型数据客体强制访问控制模型。使用XML格式统一表示异构数据客体,引入多级XML文档概念,实现数据客体与安全标记的绑定,在此基础上实施多类型数据客体强制访问控制。该模型基于XML格式,实现了数据客体与安全标记绑定的统一,解决了多级信息系统间异构数据访问控制难的问题,可以实施粒度更细的访问控制,提高了数据客体的利用率,降低了安全标记绑定的复杂度。 To solve the problem that binding security label to multi-type data obj ect is lacking of flexibility,consistency and the problem of coarse granularity of mandatory access control implementation,a multi-type data obj ects mandatory access control model based on XML was put forward.The model unified represent heterogeneous data obj ects using XML format,introduced the concept of multi-level XML document to achieve the binding of data objects with security label,and based on these implemented the multi-type data objects mandatory access control.The model achieves unified security label binding based on XML,it not only overcomes the access control difficulty among multi-level information systems,but achieves more granular access control, which improves data obj ects utilization while reducing the complexity of the security label binding.
出处 《计算机工程与设计》 北大核心 2015年第2期335-340,362,共7页 Computer Engineering and Design
基金 国家863高技术研究发展计划基金项目(2012AA012704) 河南省科技创新人才计划基金项目(114200510001)
关键词 多类型数据客体 安全标记 绑定 强制访问控制 可扩展标记语言 多级XML文档 multi-type data obj ect security label binding MAC XML multi-level XML document
  • 相关文献

参考文献11

  • 1GB/T22239-2008.信息系统安全等级保护基本要求[S].2008.
  • 2曹利峰,李中,陈性元,冯瑜.基于XML的数据客体与安全标记绑定方法[J].计算机科学,2013,40(8):124-128. 被引量:3
  • 3Sander O,Ian B.A proposal for an xml confidentiality label and related binding of metadata to data objects[R] .RTO-MPIST-091-22.NATO C3Agency,2010.
  • 4World Wide Web Consortium(W3C.“extensible markup language(XML)1.0(Second Edition)”[EB/OL] .[2013-08-19] .http://www.w3c.org/TR/REC-xml.
  • 5Barbulescu M,Grigoriu R O,Halcu I,et al.Integrating of structured,semi-structured and unstructured data in natural and build environmental engineering[C] //11th Roedunet International Conference(RoEduNet).IEEE,2013:1-4.
  • 6LEE T Y.Formalisms on semi-structured and unstructured data schema computations[D] .Hong Kong:University of Hong Kong,2010.
  • 7Chen W B,Zhang C,Gao S.Segmentation tree based multiple object image retrieval[C] //IEEE International Symposium on Multimedia.IEEE,2012:214-221.
  • 8陈君,王庆.基于图割和显著性的图像结构表示方法研究[J].计算机应用研究,2009,26(9):3589-3592. 被引量:2
  • 9Chergui A,Bekkhoucha A,Sabbar W.Video scene segmentation using the shot transition detection by local characterization of the points of interest[C] //6th International Conference on Sciences of Electronics,Technologies of Information and Telecommunications.IEEE,2012:404-411.
  • 10Bell D E,Lapadula L J.Seccure computer system:Unified exposition and multics interpretation[R] .The MITRE Corporation,TechRep:MTR-2997Revision 1,1976.

二级参考文献24

  • 1李斓,何永忠,冯登国.面向XML文档的细粒度强制访问控制模型[J].软件学报,2004,15(10):1528-1537. 被引量:41
  • 2季庆光,卿斯汉,贺也平.一个改进的可动态调节的机密性策略模型[J].软件学报,2004,15(10):1547-1557. 被引量:33
  • 3何建波,卿斯汉,王超.对两个改进的BLP模型的分析[J].软件学报,2007,18(6):1501-1509. 被引量:22
  • 4Damiani E,Vimercati S D C,Paraboschi S,et al.A fine-grained access control system for XML documents[C]//ACM Transactions on Information and System Security(TISSEC),2002,5 : 169-202.
  • 5LaPadula L J,Bell D E.Secure computer systems:a mathematical model, 2547 (Volume II) [R].The MITRE Corporation, Bedford, Massachussetts, 1973.
  • 6Bell D E,LaPadula L J.Secure computer systems:mathematical foundations and model,M74-244[R].The MITRE Corporation,Bedford, Massachussetts, 1973.
  • 7Buneman P,Davidson S,Fan W,et al.Reasoning about keys for XML[C]//Revised Papers from the 8th International Workshop on Database Programming Languages, 2001 : 133-148.
  • 8中华人民共和国国家质量监督检验检疫总局.GB/T22239-2008信息安全技术信息系统安全等级保护基本要求[S].2008.
  • 9SALEMBIER P, GARRIDO L. Binary partition tree as an efficient representation for image processing segmentation and information retrieval [J]. IEEE Trans on Image Processing, 2000, 9(4) :561-576.
  • 10WANG Zhui-yong, FENG D. Region-based binary tree representation for imge classification[ C ]//Prec of International Conference on Neural Network and Signal Processing. 2003:232-235.

共引文献22

同被引文献23

引证文献3

二级引证文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部