首页> 中文期刊> 《计算机工程与应用》 >基于信息客体统一化描述的安全标记绑定研究

基于信息客体统一化描述的安全标记绑定研究

         

摘要

安全标记与信息客体绑定,一直是制约多级安全走向网络实用化的关键问题.针对这一问题,提出了一种基于信息客体统一化描述的安全标记绑定方法.通过分析客体类型,给出了基于数据树的多类型客体的统一表示模型,据此基于数据树遍历给出了客体与安全标记绑定算法,并讨论了客体的相关操作及其访问控制机制的实施.该方法不仅可提高安全标记绑定的灵活性,实现多类型信息客体与安全标记绑定的统一,而且可实施更为细粒度的访问控制,解决系统间异构数据交换控制难的问题.%How to bind secure label to information object is always a key problem that restricts MLS from practicality on network. This paper puts forward a method for binding secure label to information object based on unified description of information object. Firstly, this method analyzes types of information objects, and establishes unified description model of multi-types information objects based data tree. Then, an algorithm about binding secure label to information object is giv-en based on traversal of tree. Finally, operations on information object in multilevel security network are discussed. The method can not only unify the method of binding between multi-types information object and secure label, which may im-prove flexibility of binding, but also accomplish fine-grained mandatory access control, which may solve the problem that access control of heterogeneous data among multilevel secure system is more difficult.

著录项

相似文献

  • 中文文献
  • 外文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号