摘要
本文首先介绍了审计的基本概念和本文所描述工作所基于的项目背景。然后切入本文的重点——一个按照POSIX1003.1e标准,通用的安全操作系统审计框架的设计工作,以及此框架按照GB 17859-1999第三级别要求在一个Linux安全增强的操作系统上的具体实现工作。同时本文比较了国内相似的工作,分析了整个审计框架的优点与不足,并展望了将来的工作。
This paper first introduces the basic conceptions of secure auditing and the project background of the work. As the principal part of this work, the design of a platform and level independent audit framework conforming to POSIX standard and its implementation to a security enhanced linux platform conforming to the GB 17859-1999 third security level standard is presented. Then, this paper pays respect to the similar domestic works analyzing the framework's advantages and disadvantages. Finally, the view of the future work is depicted.
出处
《计算机科学》
CSCD
北大核心
2004年第7期148-152,共5页
Computer Science
基金
国家高技术研究发展计划863课题(2001AA144010)资助