全部 标题 作者
关键词 摘要

OALib Journal期刊
ISSN: 2333-9721
费用:99美元

查看量下载量

相关文章

更多...

具有时空约束的强制访问控制模型

DOI: 10.13190/jbupt.201205.111.fanyf, PP. 111-114

Keywords: 时空约束,强制访问控制,多级安全

Full-Text   Cite this paper   Add to My Lib

Abstract:

传统的访问控制通过逻辑的方法来防止未授权的信息访问,忽略了物理位置的作用,从而容易遭受地址欺骗类攻击.将位置信息引入访问控制可以提供更好的安全性.在强制访问控制中客体的安全属性与时间密切相关,访问控制模型中应反映客体的安全属性随时间的变化.以经典的Bell-Lapadula模型为基础,提出一个具有时空约束的强制访问控制模型,综合考虑时间和空间约束,在增加访问控制模型灵活性的基础上提高访问控制模型的安全性.

References

[1]  Bell D E, LaPadula L J. Secure computer system: unified exposition and multics interpretation. Bedford: MITRE Corporation,1976.
[2]  范艳芳,韩臻,曹香港,等.基于时间限制的多级安全模型[J].计算机研究与发展,2010,47(3):508-514. Fan Yanfang,Han Zhen, Cao Xianggang, et al. A multilevel security model based on time limit[J]. Journal of Computer Research and Development, 2010, 47(3): 508-514.
[3]  Sandhu R, Coyne E J, Feinstein H L, et al. Role-based access control models[J]. IEEE Computer, 1996, 29(2):38-47.
[4]  Kumar M, Newman R. Strbacan approach towards spatio-temporal role-based access control//Proceedings of the Third IASTED International Conference on Communication. Network: Information Security, 2006:150-155.
[5]  Ray I, Kumar M, Yu L. LRBAC: a location-aware role-based access control model//Proceedings of the 2nd International Conference on Information Systems Security. Kolkata, India: Lecture Notes in Computer Science, 2006: 147-161.
[6]  Bauer M, Becker C, Rothermel K. Location models from the perspective of context-aware applications and mobile Ad Hoc Networks[J]. Personal and Ubiquitous Computing, 2002(6): 322-328.
[7]  Ray I, Kumar M. Towards a location-based mandatory access control model[J]. Computers & Security, 2006, 25(1): 36-44.

Full-Text

Contact Us

service@oalib.com

QQ:3279437679

WhatsApp +8615387084133