首页> 外国专利> METHOD OF SECURING INFORMATION FLOW IN SECURE INFORMATION SYSTEMS WITH MANDATORY AND ROLE-BASED ACCESS CONTROL

METHOD OF SECURING INFORMATION FLOW IN SECURE INFORMATION SYSTEMS WITH MANDATORY AND ROLE-BASED ACCESS CONTROL

机译:具有强制和基于角色的访问控制的安全信息系统中信息流的保护方法

摘要

FIELD: physics, computer engineering.;SUBSTANCE: invention relates to computer engineering. A method of securing information flow in secure information systems with mandatory and role-based access control, which includes presenting a secure information system within a formal security model of logic mandatory and role-based control of access and information flow in which roles are realised by substance-containers to which system subjects are granted access for ownership, reading or writing; each role is assigned a confidentiality level which does not exceed the confidentiality level of roles to which said role is subordinate in a hierarchy; a subject is granted access to a role only if the subject has the respective effective access right to said role; the subject is allowed to alter access rights to substances possessed by the role only when the subject has a write access to the role; a subject is allowed to alter the access rights to a role only when the subject has an ownership access to said role.;EFFECT: preventing secure information system violator subjects from using role parameters.;3 cl, 2 tbl
机译:技术领域:物理学,计算机工程。技术领域:本发明涉及计算机工程。一种使用强制性和基于角色的访问控制来保护安全信息系统中信息流的方法,该方法包括在正式的安全模型中展示安全信息系统,该逻辑模型对访问和信息流进行强制性和基于角色的逻辑控制,其中角色通过系统主体被授予拥有所有权,阅读或写作权限的物质容器;为每个角色分配一个机密级别,该级别不超过该角色在层次结构中从属于的角色的机密级别;仅当对象具有相应的角色访问权限时,该对象才被授予访问角色的权限;仅当对象对该角色具有写访问权时,才允许该对象更改对该角色所拥有的物质的访问权限;仅当对象对该角色具有所有权访问权限时,才允许该对象更改对该角色的访问权限。效果:防止安全信息系统侵犯者使用角色参数。3cl,2 tbl

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号