首页> 外文学位 >An advanced transaction model with application to multilevel secure systems.
【24h】

An advanced transaction model with application to multilevel secure systems.

机译:一种高级事务处理模型,可应用于多层安全系统。

获取原文
获取原文并翻译 | 示例

摘要

Transactions represent an important programming paradigm that aids the programmer in designing an distributed application in a simple and modular way. Transaction processing however, is not easily achieved in multilevel secure systems. To implement transaction processing in multilevel secure systems requires a careful re-visitation of the architectural components, techniques and algorithms used in the standard non-secure environment. This is because conventional transaction management techniques suffer from covert channels which can be exploited by sophisticated intruders to gain illegal access to data.;Quite a few works have been suggested in the literature that deal with secure transaction processing. The solutions they provide are often elegant, but leave much to be desired. Almost all suffer from some kind of starvation problems. And all treat the transaction mechanism as a black box; the transaction programmer is never given control over the transaction mechanism.;We look into nontraditional ways of transaction processing and make the following contributions to the area of multilevel secure systems.;First, we propose the multiform transaction model as uniform framework for designing a wide range of extended transactions including centralized and distributed multilevel secure transactions. The programmer is no longer limited by the constraints of the classical flat transaction model for designing advanced applications that require cooperative work among separate transactions.;Second, we propose an advanced secure concurrency control protocol based on locking for managing the execution of concurrent multilevel secure transactions. This protocol is free from the covert channel problem of the classical two-phase locking protocols. It offers flexibility to the programmer to achieve serializability and weaker correctness notions, depending on the application. The protocol supports partial rollback, exception handling and forward recovery and allows the sophisticated programmer to trade off starvation of multilevel secure transactions to their isolation. We provide extensions to the protocol to support multigranularity locking and multiversion data.;Third, we propose ASEP, an advanced secure early prepare commit protocol, that complements our secure concurrency control protocol. ASEP exploits the ability of the underlying multiform transaction framework to support various transaction completion dependencies, to implement the secure dependency among subtransactions of a distributed multilevel secure transaction. Further, ASEP supports the advanced features of the concurrency control protocol--viz., partial rollback, forward recovery and exception handling. This enables ASEP to trade off starvation of distributed multilevel secure transactions to their atomicity and to implement other types of secure dependencies among the subtransactions. (Abstract shortened by UMI.)
机译:事务表示一种重要的编程范例,可帮助程序员以简单和模块化的方式设计分布式应用程序。但是,在多层安全系统中不容易实现事务处理。为了在多层安全系统中实现事务处理,需要仔细地重新访问标准非安全环境中使用的体系结构组件,技术和算法。这是因为传统的事务管理技术受秘密通道的困扰,复杂的入侵者可以利用这些通道来非法访问数据。在文献中已经提出了很多有关安全事务处理的工作。他们提供的解决方案通常很优雅,但是还有很多需要改进的地方。几乎所有人都遭受某种饥饿问题。所有人都将交易机制视为黑匣子;交易程序员永远不会控制交易机制。;我们研究了非传统的交易处理方式,并对多级安全系统领域做出了以下贡献。首先,我们提出了多形式交易模型,作为设计广泛应用的统一框架。扩展的交易范围,包括集中式和分布式多层安全交易。程序员不再受经典的平面事务模型的约束所限制,该模型用于设计需要在单独事务之间进行协同工作的高级应用程序。其次,我们提出了一种基于锁定的高级安全并发控制协议,用于管理并发多级安全事务的执行。 。该协议摆脱了经典两阶段锁定协议的隐蔽信道问题。它为程序员提供了灵活性,以实现可序列化性和较弱的正确性概念,具体取决于应用程序。该协议支持部分回滚,异常处理和正向恢复,并允许高级程序员在多级安全事务的饥饿与折衷之间进行权衡。我们提供了该协议的扩展,以支持多粒度锁定和多版本数据。第三,我们提出了ASEP,这是一种先进的安全早期准备提交协议,它是对我们的安全并发控制协议的补充。 ASEP利用基础的多形式交易框架支持各种交易完成依赖性的能力,以在分布式多级安全交易的子事务之间实现安全依赖性。此外,ASEP支持并发控制协议的高级功能,即部分回滚,前向恢复和异常处理。这使ASEP可以权衡分布式多级安全事务的匮乏到其原子性,并在子事务之间实现其他类型的安全依赖关系。 (摘要由UMI缩短。)

著录项

  • 作者

    Ray, Indrajit.;

  • 作者单位

    George Mason University.;

  • 授予单位 George Mason University.;
  • 学科 Computer Science.
  • 学位 Ph.D.
  • 年度 1997
  • 页码 213 p.
  • 总页数 213
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 自动化技术、计算机技术;
  • 关键词

  • 入库时间 2022-08-17 11:48:52

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号