高级检索

    策略灵活安全系统的设计与实现

    Design and Implementation on a Policy-Flexible System

    • 摘要: 安全需求多样化对操作系统提出策略灵活性要求 ,传统操作系统把对安全策略的支持分散到系统相关功能模块中 ,如文件系统及进程通信等 ,难以满足这种需求 该文通过对操作系统中策略相关功能部件的分析 ,提出了一种策略灵活的安全体系结构 ,并在Linux基础上实现该结构 同以往研究相比 ,该结构通过对安全属性的统一维护简化了策略冲突协调的复杂性 ,既方便用户灵活配置已有安全策略 ,又支持用户针对本领域的安全需求引入新的安全属性及添加新型安全策略

       

      Abstract: Security requirements’ diversity demands the flexibility and scalability of security policy, but traditional operating systems implement security policies in many components so that it is difficult to meet the needs. A policy-flexible system framework is brought forward through the analysis of all the facilities related to security policy in the system, and this framework is implemented based on Linux. Compared with the previous researches, the framework simplifies policies conflict mediating by centralized management of security attributes. So this framework can support users in configuring security policies flexibly, and add new security policies based on new security attributes according to security requirements in their fields.

       

    /

    返回文章
    返回