高级检索
    单智勇 石文昌. STBAC:一种新的操作系统访问控制模型[J]. 计算机研究与发展, 2008, 45(5): 758-764.
    引用本文: 单智勇 石文昌. STBAC:一种新的操作系统访问控制模型[J]. 计算机研究与发展, 2008, 45(5): 758-764.
    Shan Zhiyong and Shi Wenchang. STBAC: A New Access Control Model for Operating System[J]. Journal of Computer Research and Development, 2008, 45(5): 758-764.
    Citation: Shan Zhiyong and Shi Wenchang. STBAC: A New Access Control Model for Operating System[J]. Journal of Computer Research and Development, 2008, 45(5): 758-764.

    STBAC:一种新的操作系统访问控制模型

    STBAC: A New Access Control Model for Operating System

    • 摘要: 现代操作系统的主要威胁来自网络,传统访问控制机制在这方面尚有不足.提出一种应用于操作系统的访问控制模型——STBAC,可以有效防御网络攻击,并保持较好的兼容性和易用性.即使系统被攻破,STBAC模型仍然能保护关键资源,使入侵者无法达到真正的破坏目的.STBAC模型以进行过不可信远程通信的进程为可疑感染的起点,依据感染规则追踪可疑感染进程及其子进程在内核中的活动,依据保护规则禁止可疑感染进程非法访问关键资源,以防止系统关键资源遭到破坏.对原型系统的测试表明,STBAC模型在不明显影响系统兼容性和性能的前提下,可以有效地保护系统安全.

       

      Abstract: With the rapid development and increasing use of network, threats to modern operating systems mostly come from network, such as buffer overflows, viruses, worms, Trojans, DOS, etc. On the other hand, as computers, especially PCs, become cheaper and easier to use, people prefer to use computers exclusively and share information through network. The traditional access control mechanisms, however, can not deal with them in a smart way. Traditional DAC in OS alone cannot defeat network attacks well. Traditional MAC is effective in maintaining security, but it has problems of application incompatibility and administration complexity. To this end, a new access control model named STBAC for operating system is proposed which can defeat attacks from network while maintaining good compatibility, simplicity and performance. Even in the cases when some processes are subverted, STBAC can still protect vital resources, so that the intruder cannot reach his/her final goal. STBAC regards processes that have done nontrustablecommunication as starting points of suspicious taint, traces the activities of the suspiciously tainted processes and their child processes by taint rules, and forbids the suspiciously tainted processes to illegally access vital resources by protection rules. The tests on the STBAC prototype show that it can protect system security effectively without imposing heavy compatibility and performance impact upon operating system.

       

    /

    返回文章
    返回