用于公文流转的强制访问控制模型

    The Mandatory Access Control Model for Document Flow

    • 摘要: 传统的自主访问控制不能提供足够的安全,而已有的强制访问控制模型规则过于严格,导致在公文流转时应用困难.提出一种适用于公文流转的强制访问控制模型,可满足机密性和完整性要求;融合自主访问控制的灵活性和强制访问控制的安全性;实现受控信息的双向流动.使用不干扰理论证明了模型的安全性.

       

      Abstract: Traditional discretionary access control can't provide adequate security. Rules of existing mandatory access control models are very rigid, and barriers in document flow occur. We propose a mandatory access control model is proposed which is suitable for document flow. In this model the requirements of both integrity and confidentiality are met. Flexibility of discretionary access control integrates with security of mandatory access control. Through checking the rules, information can flow bidirectionally. The security of the model is proved on the basis of noninterference theory.

       

    /

    返回文章
    返回