期刊文献+

Linux安全增强系统中能力机制的实现与评估 被引量:3

The Implementation and Evaluation of Capability Mechanism for Linux-Based Security Enhancement System
下载PDF
导出
摘要 访问控制是安全操作系统中的核心机制,最小授权是安全操作系统必须符合的原则之一,也是研究的难点,文章分析了传统操作系统中信任状模型存在的问题,详细讨论了基于能力机制的信任状模型的内容与优点,给出基于能力的访问控制,改进了Linux中采用能力机制实现最小授权算法,在文章的最后,给出了实现结果的效能评估并展望了下一步工作。 Access control is the core mechanism of security operation system. Least privilege is one of the principles that security operation system must agree with, and it抯 also the difficulty in the research. This paper points out the problem existing in trusted model of traditional operation system and discusses the content and strongpoint of trusted model based on capability mechanism. Then gives the implementation of access control based on capability and improves the arithmetic which was used to implement least privilege in Linux. At the end, the testing result and its evaluation of implementing are presented and the future work is prospected.
出处 《系统仿真学报》 CAS CSCD 2004年第1期79-81,96,共4页 Journal of System Simulation
基金 国家863计划项目"服务器安全关键技术研究与开发"资助(2002AA141090)。
关键词 能力 能力机制 最小授权 安全操作系统 访问控制 capability capability mechanism least privilege security operation system access control
  • 相关文献

参考文献1

二级参考文献1

  • 1陆卫东 宋金玉 等.信息安全的前提是实现安全机制的保护.信息安全与通信保密技术研讨会论文集[M].成都:信息产业部第三十研究所,2002.214-219.

共引文献1

同被引文献12

  • 1王亚辉,衷克定,于鷃.一种基于LINUX操作系统的安全增强实现思路[J].计算机应用与软件,2005,22(4):119-121. 被引量:2
  • 2John McHale. Adding Security To Speed :Safeguarding The RTOS[ N ]. Military & Aerospace Electronics, 12 August 2002.
  • 3Andresw S.Tanenbaum.Modern Operateing Systems[M].北京:机械工业出版社,1999.11.
  • 4ASAAC Phase Ⅱ stage 2. Second draft of proposed standards for software REF - WP: 32310[ S].
  • 5ARINC Report 653 , Afinc Specification 653 Avionics Application Software Standard Interface [S]. 15 July,2003.
  • 6Abraham Silberschatz,Peter Galvin,Greg Gagne.实用操作系统概念(影印版)[M].北京:高等教育出版社,2001..
  • 7ASAAC Phase Ⅱstage 2, 32310 Second draft of proposed standards for software REF-WP[S].
  • 8ARINC Report 653 ,GJB357-2005 ,Arinc Specification 653 Avionics Application Software Standard Interface[S].
  • 9MCHALE J. Adding security to speed: Safeguarding the RTOS[N]. Military & Aerospace Electronics, 2002-08-12(12-17).
  • 10TANENBAUM A S. Modem Operating Systems [M].陈向群,译.北京:机械工业出版社,2002.

引证文献3

二级引证文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部