首页> 外文会议>2011 International conference on network computing and information security >A Formal Framework for Security Policy Specification and Implementation
【24h】

A Formal Framework for Security Policy Specification and Implementation

机译:安全策略规范和实施的正式框架

获取原文

摘要

In information systems, security policies are used to specify various security requirements, and the guarantee of these requirements can be obtained by implementing the security policies efficiently and consistently. Therefore, specification and implemen-tation of security policies are of great importance to information system security. In this paper, we propose a formal security policy framework, allowing to specify diverse security policies, together with a description of implementation of security policies, which can enhance the efficiency and security of the information system. As an example, we show how the proposed model can be used to specify and implement the Bell and LaPadula policies.
机译:在信息系统中,安全策略用于指定各种安全要求,并且可以通过有效且一致地实施安全策略来获得对这些要求的保证。因此,安全策略的规范和实现对于信息系统的安全至关重要。在本文中,我们提出了一个正式的安全策略框架,可以指定各种安全策略,并描述安全策略的实现,从而可以提高信息系统的效率和安全性。例如,我们展示了如何使用提议的模型来指定和实施Bell和LaPadula政策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号