首页 | 本学科首页   官方微博 | 高级检索  
     

基于角色访问控制的入侵容忍机制研究
引用本文:彭文灵,王丽娜,张焕国,傅建明.基于角色访问控制的入侵容忍机制研究[J].电子学报,2005,33(1):91-95.
作者姓名:彭文灵  王丽娜  张焕国  傅建明
作者单位:武汉大学计算机学院,软件工程国家重点实验室,湖北武汉,430079;赣南师范学院网络中心,江西赣州,341000;武汉大学计算机学院,软件工程国家重点实验室,湖北武汉,430079
基金项目:国家自然科学基金,国家高技术研究发展计划(863计划),高等学校博士学科点专项科研项目
摘    要:系统在受到入侵的情况下,如何仍能为用户提供规定的服务成为了当前网络安全技术中的一个重要问题.该文结合入侵容忍和基于角色的访问控制技术的特点,提出了一种基于角色访问控制的入侵容忍安全架构,给出了它的模型和基本组成.在网络分布式计算环境中,采用基于角色的访问控制技术的策略,从角色管理服务器、角色冒充、数据和应用服务器四个方面阐述了该架构的容侵机制,从而保证服务系统的安全性和可用性,实现整个系统的入侵容忍.

关 键 词:入侵容忍  访问控制  角色  信息安全
文章编号:0372-2112(2005)01-0091-05
收稿时间:2003-11-14

Research on Intrusion Tolerant Architecture Based on Role-Based Access Control
PENG Wen-ling,WANG Li-na,ZHANG Huan-guo,Fu Jian-ming.Research on Intrusion Tolerant Architecture Based on Role-Based Access Control[J].Acta Electronica Sinica,2005,33(1):91-95.
Authors:PENG Wen-ling  WANG Li-na  ZHANG Huan-guo  Fu Jian-ming
Affiliation:1. School of Computer,State Key Laboratory of Software Engineering,Wuhan University,Wuhan,Hubei 430079,China;2. Network Center,Gannan Teachers College,Ganzhou,Jiangxi 341000,China
Abstract:It is an important problem that how can continue to function correctly and to provide the intended services to legitimate user in a timely manner even in the face of an attack.An intrusion tolerant architecture,which is based on role-based access control scheme,is proposed in this paper.Our method is built upon the analysis of intrusion effects rather than intrusion causes.The characteristics,model and components of intrusion tolerant architecture are discussed in detail.In the distributed network computing environment,utilized the strategy of role-based access control,the intrusion tolerant mechanism is expounded from role-administer server,role pretending,data server and application server.The presented intrusion tolerant architecture guarantees the security and availability of the protected server,which enhances intrusion tolerant ability of server.
Keywords:intrusion tolerant  access control  role  information security
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《电子学报》浏览原始摘要信息
点击此处可从《电子学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号