期刊文献+

基于角色模型的Linux文件血统及其安全机制 被引量:2

Linux File Lineage and Security Mechanism Based on Role-Model
在线阅读 下载PDF
导出
摘要 文章分析了Linux系统文件访问授权及控制机制的不足———孤立地看待文件之间的关联关系,借鉴数据血统思想提出了文件血统的概念,用以描述文件的安全关联。角色模型忽略了被访问客体的安全关联,使安全机制存在无法克服的漏洞,文章引入文件血统对角色模型的权限定义、权限配置、权限审查、访问控制四个与系统安全密切相关的问题进行了讨论,重点描述了文件血统和访问控制的结合方法。 This paper analyses the security defects of the access authorization and controlling mechanism of Linux,which deal with the relationship between files isolatedly.Drawing lessons from the thought of data lineage,the concept of file lineage is put forward to describe the security relationship between files.The role-model ignores this relationship and brings the security mechanism some big bugs.This paper introduces the file lineage to the Role -model and discusses four questions which are related with system security closely.They are permission definitions,permission configuration,permission examination and access controlling.At last,it describes how to combine the file lineage with access controlling.
出处 《计算机工程与应用》 CSCD 北大核心 2004年第23期76-77,126,共3页 Computer Engineering and Applications
基金 国家自然科学基金(编号:90204011) 软件工程国家重点实验室第四批开放基金
关键词 角色模型 数据血统 文件血统 系统安全 LINUX 访问控制 权限控制 role-model,data lineage,file lineage,system security
  • 相关文献

参考文献6

  • 1Gerhard Mourani.Get Acquainted with Linux Security and Optimization System.2000-01
  • 2Ferraiolo D F,Kuhn R.Role-Based access control[C].In:Proceedings of the 15th National Computer Security Conference,Baltimore,MD,1992:554~563
  • 3郝斌.基于角色管理的系统访问控制[EB/OL].http://www-900.ibm.com/developerWorks/cn/security/syscontrol/index.shtml,2001.7.
  • 4Y Cui,J Widom.Lineage tracing for general data warehouse transformations[C].In:proceedings of 27th International Conference on Very Large Data Bases(VLDB'01 ),Rome,Italy,2001-09
  • 5Y Cui,J Widom.Practical lineage tracing in data warehouses[C].In:Proc of the Sixteen th Internationa Conference on Data Engineering,San Diego,California,2000:367~378
  • 6阳富民,涂刚,胡贯荣.基于LINUX的操作系统安全模型[J].计算机工程与应用,2001,37(13):115-116. 被引量:6

二级参考文献3

共引文献13

同被引文献4

  • 1姜静,梁意文.文件安全性血统的演变方法[J].计算机工程与应用,2005,41(15):48-50. 被引量:3
  • 2Cui Y, Widom J. Practical Lineage Tracing in Data Warehouses System[C]//Proceedings of the 16th International Conference on Data Engineering[Icde' 00]. San Diego:[s. n. ], 2000:367--378.
  • 3Cui Y,Widom J. Lineage Tracing For General Data Warehouse Transformations [C]//Proceedings of the 27th International Conference on Very Large Data Base (Vldb'01). Rome:[s. n. ], 2001:471--480.
  • 4尹孟嘉.主、客体安全关系的血统DNA机制初探[D].武汉:武汉大学计算机学院,2006.

引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部