Journal of Computer Applications ›› 2012, Vol. 32 ›› Issue (12): 3426-3429.DOI: 10.3724/SP.J.1087.2012.03426
• Information security • Previous Articles Next Articles
YE Chun-xiao,YU Yi-feng
Received:
Revised:
Online:
Published:
Contact:
叶春晓,余一丰
通讯作者:
作者简介:
Abstract: In order to resolve the problem of safety analysis for Usage Control with delegation feature, this article first formalized the delegation process for its one child model, pre-authorization model; the security of a general UCONpreA model with delegation feature was undecidable through analysis, by means of constructing a finite state machine, the security of a constrained UCONpreA model with delegation feature was proved decidable; lastly, the traditional role based delegation model was simulated successfully using the constrained model. This research enhances the expression power of UCON even further, and ensures its safety effectively.
Key words: usage control, safety analysis, finite state machine, delegation, RBDM0
摘要: 针对使用控制模型(Usage Control, UCON)中加入委托功能后安全分析愈加复杂的问题,本文首先形式化地表达了其子模型—使用前授权(UCONpreA)的委托过程,通过分析证明了一般带有委托功能的UCONpreA模型的安全性是不可确定的,然后通过构造有限状态机的方法证明了一个受约束的带有委托功能的UCONpreA模型的安全性是可确定的,最后利用该约束模型成功地表达了传统的基于角色的委托模型(RBDM0)。本研究进一步增强了UCON的表达能力,并有效保证其安全性。
关键词: 使用控制, 安全性分析, 有限状态机, 委托, 基于角色的委托模型
CLC Number:
TP301
YE Chun-xiao YU Yi-feng. Safety analysis for UCONpreA model with delegation feature and expression for DBRM0[J]. Journal of Computer Applications, 2012, 32(12): 3426-3429.
叶春晓 余一丰. 带有委托功能的UCONpreA模型安全性分析及DBRM0表达[J]. 计算机应用, 2012, 32(12): 3426-3429.
0 / Recommend
Add to citation manager EndNote|Ris|BibTeX
URL: https://www.joca.cn/EN/10.3724/SP.J.1087.2012.03426
https://www.joca.cn/EN/Y2012/V32/I12/3426