首页> 外文期刊>Decision support systems >Managing user relationships in hierarchies for information system security
【24h】

Managing user relationships in hierarchies for information system security

机译:在层次结构中管理用户关系以实现信息系统安全

获取原文
获取原文并翻译 | 示例
       

摘要

Hierarchies are an important concept in information protection systems. The uses of hierarchies in the security domain of computer information systems include access hierarchies, levels of abstraction in security kernels, multi-level security, and user hierarchies, among others. Using user hierarchies as an example, this paper proposes a new protection mechanism to achieve the key-to-key (KTK) security policy wherein each user in the hierarchy is assigned a key pair and the relationship between any two users can be revealed through an operation on their corresponding keys. In addition to the security provided by the policy, the new mechanism manifests several advantages over the previous methods in the literature. Among its merits are (1) simple and quick operations performed to determine user relationships, (2) less storage requirements, and (3) a high degree of dynamism that allows easy addition and deletion of user keys without affecting most of the existing keys in the user hierarchy. The relevance of the new KTK scheme to organizations and its implications for potential business applications are also discussed.
机译:层次结构是信息保护系统中的重要概念。在计算机信息系统的安全域中,层次结构的使用包括访问层次结构,安全内核中的抽象级别,多层安全性和用户层次结构等。本文以用户层次结构为例,提出了一种新的保护机制,以实现密钥到密钥(KTK)安全策略,其中为层次结构中的每个用户分配了一个密钥对,并且任何两个用户之间的关系可以通过在其相应的键上进行操作。除了策略提供的安全性之外,新机制还显示出优于文献中先前方法的多个优点。它的优点包括(1)执行简单快速的操作来确定用户关系,(2)较少的存储需求,以及(3)高度的动态性,可以轻松添加和删除用户密钥,而不会影响现有的大多数密钥。用户层次结构。还讨论了新的KTK计划对组织的相关性及其对潜在业务应用程序的影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号