首页> 外国专利> Secure multilevel object oriented database management system

Secure multilevel object oriented database management system

机译:安全的多层面向对象的数据库管理系统

摘要

A secure multilevel object oriented database management system which maintains data confidentiality and optimizes data integrity. All requests for database operations are mediated through an access validation monitor (AVM). The AVM is responsible for performing the following duties: applying mandatory and discretionary access control rules for each request it services to ensure the request is allowable; constructing views of multilevel objects ensuring that the clearance level of the subject making the request dominates the classification of the data being requested; managing data update requests so as to allow polyinstantiation only upon receiving explicit requests from the subject, the explicit request being accomplished through an update to the associated semantic vector (Semantic vectors are employed to maintain data integrity); detecting erroneous polyinstantiation attempts and flagging such errors to the requesting subject; and managing the creation of new multilevel objects, and enforces entity integrity constraints. The AVM constructs the requesting subject's view of a multilevel object at a particular security level by computing a value for each property of the object. Each property value of the object if determined by inspecting the object's semantic vector. The semantic vector indicates, for each property of a multilevel object and at every populated level of said object, whether the property's value is dynamic (i.e., derived from an instantiation stored at the nearest populated dominated sensitivity level of the object where the semantic vector mark such property static).
机译:一种安全的面向对象的多层数据库管理系统,可维护数据机密性并优化数据完整性。对数据库操作的所有请求均通过访问验证监视器(AVM)进行调解。 AVM负责执行以下任务:对它服务的每个请求应用强制性和随意性的访问控制规则,以确保该请求是允许的;构造多级对象的视图,以确保发出请求的主体的权限级别主导着所请求数据的分类;管理数据更新请求,以便仅在接收到来自主体的显式请求时才允许进行多实例化,该显式请求是通过对相关语义向量的更新来实现的(使用语义向量来维护数据完整性);检测错误的多实例化尝试并将此类错误标记给发出请求的主体;和管理新的多级对象的创建,并强制执行实体完整性约束。 AVM通过计算对象的每个属性的值,在特定的安全级别构造请求对象的多级别对象视图。如果通过检查对象的语义向量确定了对象的每个属性值。对于多级对象的每个属性以及在该对象的每个填充级别,语义矢量指示该属性的值是否是动态的(即,从存储在对象的最近填充的主导敏感度级别的实例化处得出,语义矢量标记此类属性为静态)。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号