首页> 外文学位 >Group process model: An alternative to the super user model in multi-user systems.
【24h】

Group process model: An alternative to the super user model in multi-user systems.

机译:组流程模型:多用户系统中超级用户模型的替代。

获取原文
获取原文并翻译 | 示例

摘要

Current computer security models rely on the presence of a single super user account that is capable of modifying all system resources. The super user account is then used to create system users with reduced permissions to perform specific tasks. These account reductions are assigned to common system users while the administrator retains the super user account. A different way of looking at permissions is to instead allow the users to create trusted processes for modifying protected resources. The processes would be approved and finally elevated to trusted status through a group decision model. By utilizing the foundational theory of the Access Control Matrix and the Clark Wilson Model it is possible to completely remove the super user account from the system and replace it with a reference monitor controlled group process. By doing this it is possible to eliminate security vulnerabilities associated with the super user while avoiding the introduction of new vulnerabilities.
机译:当前的计算机安全模型依赖于能够修改所有系统资源的单个超级用户帐户。然后,使用超级用户帐户创建具有减少权限的系统用户来执行特定任务。这些减少的帐户分配给普通系统用户,而管理员保留超级用户帐户。查看权限的另一种方法是允许用户创建用于修改受保护资源的受信任进程。流程将被批准,并最终通过组决策模型提升为可信任状态。通过使用访问控制矩阵和克拉克威尔逊模型的基础理论,可以从系统中完全删除超级用户帐户,并用参考监视器控制的组过程代替它。通过这样做,可以消除与超级用户相关联的安全漏洞,同时避免引入新的漏洞。

著录项

  • 作者

    Horner, Ronald P., II.;

  • 作者单位

    University of Nebraska at Omaha.$bComputer Science.;

  • 授予单位 University of Nebraska at Omaha.$bComputer Science.;
  • 学科 Computer Science.
  • 学位 M.S.
  • 年度 2008
  • 页码 70 p.
  • 总页数 70
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 自动化技术、计算机技术;
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号