首页 | 官方网站   微博 | 高级检索  
     

基于可信等级的BLP改进模型
引用本文:池亚平,樊洁,程代伟.基于可信等级的BLP改进模型[J].计算机工程,2012,38(8):117-119.
作者姓名:池亚平  樊洁  程代伟
作者单位:1. 北京电子科技学院通信工程系,北京,100070
2. 北京电子科技学院通信工程系,北京100070;西安电子科技大学通信学院,西安710071
基金项目:国家自然科学基金资助项目(60951001);国家科技支撑计划基金资助项目(2009BAH52B06);北京市自然科学基金资助项目(4102057);发改委信息安全产品产业化专项基金资助项目([2009]1886)
摘    要:BLP模型存在完整性保护缺失、可信主体定义不明确和未考虑平台环境因素等问题。为此,提出一种基于可信等级的BLP改进模型TL-BLP。该模型引入主客体和平台的可信等级,并对BLP模型安全特性、主客体的敏感标记和状态转移规则进行改进,从而实现可信度的动态度量,保证访问操作平台的安全性,通过对BLP模型“下读上写”的限制,保证信息的完整性。分析结果表明,TL-BLP在保证信息机密性的基础上,能提高系统的完整性和可用性,实现基于可信度的访问控制。

关 键 词:BLP模型  多级安全  可信平台  可信等级  访问控制
收稿时间:2011-08-08

Improved BLP Model Based on Trusted Level
CHI Ya-ping , FAN Jie , CHENG Dai-wei.Improved BLP Model Based on Trusted Level[J].Computer Engineering,2012,38(8):117-119.
Authors:CHI Ya-ping  FAN Jie  CHENG Dai-wei
Affiliation:1(1.Department of Communication Engineering,Beijing Electronic and Science Technology Institute,Beijing 100070,China;2.School of Communication,Xidian University,Xi’an 710071,China)
Abstract:There are some problems in Bell-La Padula(BLP) model,including the loss of integrity protection,the indetermination of trusted subject and the neglect of the environment factors of the platform,so this paper proposes an improved BLP model based on trusted level,which is named TL-BLP.In TL-BLP,security property,sensitive label of subject and object,and state transfer rules are improved by introducing the trusted level of subject,object and platform.It realizes the dynamic measurement of trusted degree and ensures access platform security,and protects the information integrity by the restriction to "read down and write up".Analysis shows that the model not only can ensure the confidentiality,but also can enhance the integrity and availability of the system effectively,and it implements the access control based on trusted degree.
Keywords:Bell-La Padula(BLP) model  multi-level security  trusted platform  trusted level  access control
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《计算机工程》浏览原始摘要信息
点击此处可从《计算机工程》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号