首页> 外文会议>International Workshop on Computer Science and Engineering >A BLP-BASED MODEL FOR HIERARCHICAL ORGNIZATIONS
【24h】

A BLP-BASED MODEL FOR HIERARCHICAL ORGNIZATIONS

机译:基于BLP的分层组织模型

获取原文

摘要

A model based on Bell-LaPadula model is proposed for access control in hierarchical organizations which have hierarchical units. These units include departments, staff and a new concept named post. In the model proposed by this paper, relationships among units in organization are built, and security tags can be assigned to subjects and objects simply. The interoperation among different departments is implemented through assigning multiple security tags to one post, and the more departments are closed on the organization tree, the more secret objects can be exchanged by the staff of the departments. The access control matrices of the department, post and staff are defined. By using the three access control matrices, a multi granularity and flexible discretionary access control policy is implemented. The outstanding merit of the BLP model is inherited, and the new model can guarantee that all the information flow is under control. Finally, the study shows that the proposed model is more flexible.
机译:提出了一种基于Bell-Lapadula模型的模型,用于具有分层单元的分层组织中的访问控制。这些单位包括部门,员工和一个名为POST的新概念。在本文提出的模型中,构建了组织中的单元之间的关系,并且可以将安全标记分配给受试者和对象。不同部门之间的互操作通过将多个安全标记分配给一个帖子,并且更多的部门在组织树上关闭,各部门的员工可以交换越秘密的对象。定义了部门,职位和员工的访问控制矩阵。通过使用三个访问控制矩阵,实现多粒度和灵活的自由判断权访问控制策略。 BLP模型的出色优点是继承的,新模型可以保证所有信息流都处于控制状态。最后,研究表明,所提出的模型更加灵活。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号