计算机应用 ›› 2012, Vol. 32 ›› Issue (05): 1375-1378.

• 信息安全 • 上一篇    下一篇

状态控制安全策略研究

林植1,刘德祥1,2,李云山1,3,柯美炎1,2   

  1. 1. 国防信息学院 一系,武汉 430010
    2.
    3. 国防信息学院
  • 收稿日期:2011-10-08 修回日期:2011-12-09 发布日期:2012-05-01 出版日期:2012-05-01
  • 通讯作者: 林植
  • 作者简介:林植(1973-),男,湖北汉川人,讲师,博士,主要研究方向:网络安全;刘德祥(1969-),男,湖北洪湖人,副教授,主要研究方向:系统建模;李云山(1968-),男,湖北嘉渔人,副教授,主要研究方向:系统仿真;柯美炎(1973-),男,湖北通山人,讲师,硕士,主要研究方向:系统建模。
  • 基金资助:

    国家973计划项目(2011CB302301);国防信息学院重点预研项目(ZXKT-KJ-1113)

Research on security policy about state control

LIN Zhi1,LIU De-xiang1,2,LI Yun-shan1,2,KE Mei-yan1,2   

  1. 1. Department of No.1,National Defense Information Academy,Wuhan Hubei 430010,China
    2.
  • Received:2011-10-08 Revised:2011-12-09 Online:2012-05-01 Published:2012-05-01
  • Contact: LIN Zhi

摘要: 从讨论当前流行的访问控制策略的安全缺陷,及其与状态控制策略的互补性和完备性特征入手,分析了研究状态控制策略的必要性;定义了状态控制安全策略描述形式,并以XML语言为基础,制定策略描述基本规则;同时,按控制目标和控制对象的不同,给出了状态控制策略应用模式;此外,分析了状态控制策略的复杂性问题,并给出初步的解决思路。

关键词: 状态控制, 安全策略, 形式描述, 应用模式, 复杂性分析

Abstract: By discussing the shortages of access control policy, and analyzing the complementarity and completeness between access control and state control, the necessity of state control was proposed. A formal description about state control policy was defined, and the policy's description rules based on XML were regulated. At the same time, according to different control goal and control object, some application patterns for state control policy were provided. In addition, the complexity of state control policy was discussed, and some solutions were provided.

Key words: state control, security policy, formal description, application pattern, complexity analysis

中图分类号: