|
计算机科学 2003
Research of Revoking Mechanism of Authorization in Secure Operating System
|
Abstract:
Revoking operation is a very important component of access control. The lack of effective revoking operation impinges on supporting dynamic security policies in secure operation system. Analyzing authorization system,this paper presents a revoke policy which supports cascade and noncascade revocation. The policy adopts Hash authorization list and critical-based callback function to implement revocation of point to point and point to plane. Our experiments in security kernel show the mechanism is feasible,which provides the basis of further researching dynamic security policies in secure operation system.