###
DOI:
Journal of Software:2003.14(5):955-962

基于扩展客体层次结构的安全数据库策略模型
程万军,张霞,刘积仁
(东北大学,计算机软件国家工程研究中心,辽宁,沈阳,110004)
A Secure Policy Model for Secure Database System Based on Extended Object Hierarchy
CHENG Wan-Jun,ZHANG Xia,LIU Ji-Ren
()
Abstract
Chart / table
Reference
Similar Articles
Article :Browse 2920   Download 2959
Received:June 06, 2002    Revised:November 22, 2002
> 中文摘要: 安全策略模型是安全可信系统的基础.Bell-LaPadula模型是多级安全系统中广泛应用的安全策略模型,但它缺乏针对数据模型的完整性和一致性规则.以该模型为基础,针对数据库系统的数据模型,提出了一个以扩展客体层次结构为基础的安全策略模型.模型通过扩展客体层次结构使完整性成为模型的内在属性,并引入或重新定义了客体域、扩展安全公理和操作规则.模型更加适应多级安全数据库系统的要求,增强了策略模型与系统规格和高层模型的一致性.普遍性和通用性安全模型的扩展和增强,特别是安全性以外的特性的引入是安全策略模型向实际系统模型转化的必要步骤.
Abstract:Security policy model is the groundwork for secure or trusted system. Bell-LaPadula model with its good adaptability has comprehensive applications to multilevel security system, but it is short of the rules about integrity and consistency. Based on that model, an extended policy model is proposed, which is founded on the extended object hierarchy. By this way, the integrity becomes one of the inherence properties of the model. The object domains, extended security axioms and operation rules are also introduced or redefined. The proposed model more suits the requirements of multilevel security databases, and guarantees the consistency among policy model, system specification and other high-level security model. The extensions and enhancements, especially other properties besides security, are the necessary steps for transforming a policy model into a practical system.
文章编号:     中图分类号:    文献标志码:
基金项目:Supported by the National High-Tech Research and Development Plan of China under Grant No.863-301-6-5-B (国家高技术研究发展计划(863)) Supported by the National High-Tech Research and Development Plan of China under Grant No.863-301-6-5-B (国家高技术研究发展计划(863))
Foundation items:
Reference text:

程万军,张霞,刘积仁.基于扩展客体层次结构的安全数据库策略模型.软件学报,2003,14(5):955-962

CHENG Wan-Jun,ZHANG Xia,LIU Ji-Ren.A Secure Policy Model for Secure Database System Based on Extended Object Hierarchy.Journal of Software,2003,14(5):955-962