论文部分内容阅读
经典的 Bell & L a Padula( BL P)模型是在计算机安全系统中实现多级安全性 ( ML S)支持的基础 ,被视作基本安全公理 .结合以 L inux为基础的一个安全操作系统 ( RS- L inux)的开发 ,讨论抽象的 BL P安全公理在安全操作系统实现中的实际意义 .从理论上构造 BL P公理的一种新的实施方法 ( ABL P方法 ) ,并给出该方法的正确性证明 .ABL P方法主要由 3条访问控制规则构成 ,其特点是允许主体的当前敏感标记进行适应性调整 ,它以常规实施方法为基础 ,克服了常规实施方法在标记指派方面的不足 ,为安全判定增加了灵活性 .
The classic Bell & L a Padula (BL P) model is the foundation for ML S support in computer security systems and is considered as a fundamental safety axiom. Combining a Linux-based secure operating system ( RS-Linux, and discuss the practical significance of abstract BL P security axioms in the implementation of secure operating system.A new implementation method (ABL P method) of BL P axiom is theoretically constructed and presented Proof of correctness.The ABL P method is mainly composed of three access control rules, which is characterized by allowing the subject’s current sensitive markers to be adaptively adjusted, which overcomes the shortcomings of the conventional implementation methods in terms of tag assignment, based on the conventional method of implementation , Adds flexibility to safety judgments.