首页 | 本学科首页   官方微博 | 高级检索  
     

"长城"安全政策的扩充研究及其实现
引用本文:赵庆松,孙玉芳,梁洪亮,张相锋,孙波."长城"安全政策的扩充研究及其实现[J].电子学报,2002,30(11):1658-1662.
作者姓名:赵庆松  孙玉芳  梁洪亮  张相锋  孙波
作者单位:中国科学院软件研究所,北京 100080
基金项目:国家高技术研究发展计划(863计划),国家自然科学基金,中国科学院知识创新工程项目,863-306-ZD12-14-2,60073022,KGCX1-09,,,
摘    要:"长城"安全政策(Chinese Wall Security Policy,CWSP)是商业信息领域中重要的安全政策之一.但是Brewer-Nash提出的CWSP并不能很好地满足实际的需要.基于角色的访问控制(Role-Based Access Control,RBAC)模型是一种"政策中性(Policy Neutral)"的模型,被看作是最有可能替代传统的自主和强制访问控制模型的一种全新的模型,正越来越被信息安全领域所重视.本文首先介绍了RBAC和"长城"安全政策,然后根据实际应用对CWSP作了系统的扩充,最后本文系统地论述了基于RBAC的扩充CWSP的实现方法.

关 键 词:信息安全  角色  基于角色的访问控制  扩充的"长城"安全政策  
文章编号:0372-2112(2002)11-1658-05
收稿时间:2001-08-06

Research and Enforcement of Enhanced Chinese Wall Security Policy
ZHAO Qing song,SUN Yu fang,LIANG Hong liang,ZHANG Xiang feng,SUN Bo.Research and Enforcement of Enhanced Chinese Wall Security Policy[J].Acta Electronica Sinica,2002,30(11):1658-1662.
Authors:ZHAO Qing song  SUN Yu fang  LIANG Hong liang  ZHANG Xiang feng  SUN Bo
Affiliation:Institute of Software,Chinese Academy of Sciences,Beijing 100080,China
Abstract:Chinese Wall security policy (CWSP) is one of the most important security policies in commercial information area.But the CWSP proposed by Brewer and Nash can't fully meet the practical requirement.The role based access control (RBAC),a policy neutral model,has recently received considerable attention as a most promising alternative to traditional discretionary access control (DAC) and mandatory access control (MAC) models.RBAC and the Chinese Wall security policies are given,and expanded due to the practical application.The RBAC based method to expand CWSP is systematically discussed.Thus,the enhanced CWSP (ECWSP) is presented firstly.And then the method of configuring RBAC to enforce the ECWSP is systematically studied.
Keywords:information security  role  role  based access control  enhanced Chinese Wall security policy
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《电子学报》浏览原始摘要信息
点击此处可从《电子学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号