计算机应用 ›› 2005, Vol. 25 ›› Issue (05): 1160-1162.DOI: 10.3724/SP.J.1087.2005.1160

• 信息安全 • 上一篇    下一篇

基于血统机制的文件系统安全

周建波,董红斌,梁意文   

  1. 武汉大学计算机学院
  • 发布日期:2005-05-25 出版日期:2005-05-01
  • 基金资助:

    国家自然科学基金资助项目(90204011);;软件工程国家重点实验室第四批开放基金资助项目

File system security model based on lineage mechanism

ZHOU Jian-bo, DONG Hong-bin, LIANG Yi-wen   

  1. College of Computer Science, Wuhan University, Wuhan Hubei 430072, China
  • Online:2005-05-25 Published:2005-05-01

摘要: 传统的操作系统授权机制,将文件作为孤立的客体进行访问控制,忽略了客体之间的关联所隐含的安全特性,存在诸多安全漏洞。针对此不足,文中用血统来表达文件系统中客体之间的关系,提出了一种基于血统的文件安全模型,并对其性能和安全性进行了分析。

关键词: 血统, 文件安全, 安全模型

Abstract: The authorization mechanism of operating systems usually puts importance on access control on the bias of taking a file as an isolated object, but ignores the security relationship between files, which implies many flaws. On the inspiration of describing the relationship between objects by means of lineage, a file lineage security model was presented, and its performance and security characteristics were analyzed.

Key words: lineage, file system security, security model

中图分类号: