...
首页> 外文期刊>Operating systems review >A Policy Flexible Architecture for Secure Operating System
【24h】

A Policy Flexible Architecture for Secure Operating System

机译:安全操作系统的策略灵活架构

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

As the fundamental software to guarantee information security, operating system is desired to support various security policies flexibly and to control the propagation and revocation of access rights efficiently. This paper presents a design and implementation of Policy Flexible Architecture (PFA) for secure operating system to achieve the coordination, extensibility, consistency and dynamic configuration of security policies. Through a thorough analysis of all related facilities, PFA classifies policy constructions into several levels according to their effects on security status; PFA emphasizes on centralized management of security policy as well as on centralized maintainability of security attributes; for the first time PFA gives revocation rules to specify how and when to revoke permissions. PFA has been applied to our Secure Enhanced Linux Operating System, and the experiment shows that the system holds at least three advantages. First, it helps users to choose intended security policies flexibly. Besides it supports users to add new security policies according to specific security requirements easily. Finally it sets permission revocations immediately and gets no significant performance penalty.
机译:作为保证信息安全的基本软件,希望操作系统能够灵活地支持各种安全策略,并有效地控制访问权限的传播和撤销。本文提出了一种用于安全操作系统的策略灵活体系结构(PFA)的设计和实现,以实现安全策略的协调,可扩展性,一致性和动态配置。通过对所有相关设施的透彻分析,PFA根据其对安全状态的影响将策略构造分为几个级别。 PFA强调安全策略的集中管理以及安全属性的集中可维护性。 PFA首次提供了撤销规则,以指定如何以及何时撤销权限。 PFA已应用于我们的安全增强Linux操作系统,实验表明该系统至少具有三个优点。首先,它可以帮助用户灵活地选择预期的安全策略。此外,它还支持用户根据特定的安全要求轻松添加新的安全策略。最后,它会立即设置权限吊销,并且不会造成明显的性能损失。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号