期刊文献+

RBAC与MAC在多级关系数据库中的综合模型 被引量:13

A Integrated Model of RBAC and MAC in Multilevel Relation Database System
在线阅读 下载PDF
导出
摘要 多级安全数据库的安全策略需要各种模型来表达 ,访问控制模型是其中之一 .强制访问控制 (MAC)模型保证多级数据库中的信息流动符合系统的安全策略 .利用基于角色的访问控制 (RBAC)来实现MAC能方便多级安全数据库的权限管理 .提出了一种MAC与RBAC的综合模型 ,定义了多级角色与内部角色的概念 ,并给出了综合模型中经过修改后的操作 ,使得系统能自动地完成符合强制访问控制策略的用户权限的管理 .该模型方便了管理员的权限管理 ,适合用户较多 ,安全层次比较复杂的多级关系数据库系统 .最后给出了模型的部分实现机制 . Security policy of multilevel security DBMS is expressed by many models.One of them is access control model.Mandatory Access Control (MAC) model guarantees that information flow in multilevel databases is inaccordance with security policy.Role-Based Access Control can simplify administration of privileges in multilevel databases.This paper proposes an integrated model of RBAC and MAC.Multilevel role and internal role are defined,and some modified operations in the model are presented.Administration of privileges under MAC policy is done by system automatically.The integrated model can simplify administration of privileges,and is appropriate for multilevel relation database system which has many users or complex security levels.Some implementing mechanisms of the model are provided.
出处 《电子学报》 EI CAS CSCD 北大核心 2004年第10期1635-1639,共5页 Acta Electronica Sinica
基金 国家 973项目 (No .G1 9990 3580 2 ) 国家自然科学基金 (No .60 0 2 52 0 5 60 2 730 2 7) 国家 863项目 (No .2 0 0 2AA1 4 1 0 80 )
关键词 数据库安全 访问控制 综合模型 基于角色的访问控制 强制访问控制 database security access control integrated model RBAC MAC
  • 相关文献

参考文献9

  • 1D Elliott Bell,Leonard J LaPadula.Bell-LaPadula Model For Secure Computer Systems[R].The MITRE Corporation,March 1976.
  • 2D F Ferraiolo,D R Kuhn.Role-based access control[A].In Proc.of 15th National Computer Security Conference[C].October,1992.554-563.
  • 3Nyanchama M,Osborn S L.Information flow analysis in role-based security system[J].Journal of Computing and Information,1994,1(1):1368-1384.
  • 4Ravi Sandhu,Edward J.Coyne,Hal L.Feinstein,Charles E.Youman.Role-based access control models[J].IEEE Computer,February 1996,29(2):38-47.
  • 5D Ferraiolo,R Sandhu,S Gavrila,D Kuhn,R Chandramouli.Proposed NIST standard for role-based access control[A].ACM TISSEC[C].Volume 4,Issue 3,August 2001,4(3):224-274.
  • 6S Osborn,R Sandhu,Q Munawer.Configuring role-based access control to enforce mandatory and discretionary access control policies[A].ACM TISSEC[C].Volume 3,Issue 2,May 2000.85-106.
  • 7D Richard Kuhn.Role based access control on MLS systems without kernel changes[A].In Proc.of the third ACM Workshop on Role-Based Access Control[C].Fairfax,Virginia,United States,October 22-23,1998.25-32.
  • 8Sylvia Osborn.Mandatory access control and role-based access control revisited[A].In Proc.of the Second ACM Workshop on Role-Based Access Control[C].Fairfax,Virginia,United States,November 06-07,1997.31-40.
  • 9Ravi Sandhu.Design and implementation of multilevel databases[A].In Proc.of 6th RADC Workshop on Multilevel Database Security[C].Southwest Harbor,Maine,June 1994.

同被引文献113

引证文献13

二级引证文献20

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部