• 综合
  • 标题
  • 关键词
  • 摘要
  • 学者
  • 期刊-刊名
  • 期刊-ISSN
  • 会议名称
搜索

作者:

Liao, Jianhua (Liao, Jianhua.) | Zhao, Yong (Zhao, Yong.) | Shen, Changxiang (Shen, Changxiang.)

收录:

CPCI-S

摘要:

In this paper, we introduce a new application isolation model which bases on Least-Privilege principle and Need-to-Know principle. Since this model is easy to implement, we call it the Feather-weight Application Isolation (FAI) model. This model is used to achieve the Process Permission Constraint (PPC) and classified Object Access Control (OAC). The model allows us to make application isolation depending on PPC policies and OAC policies. Compared with the existing complex isolation models such as sandboxes and virtual machines, the FAI model is simpler, and therefore it does not only meet the necessary security requirements but also increases the usability. To isolate applications and prevent classified objects of the applications from being illegally tampered, the FM model extends the traditional two-dimensional access control matrix to a three-dimensional access control matrix, which includes subjects, objects and processes. In order to support multi-level security and Mandatory Access Control (MAC), the concept of processes sensitivity level ranges is considered in the model. In this article, we first give an informal description of the model, and then introduce the formalized description and safety analysis. Finally we explain the feasibility of the model by showing the result of the engineering implementation.

关键词:

Access control Process constraint Application isolation Security model

作者机构:

  • [ 1 ] [Liao, Jianhua]Peking Univ, Sch Elect Engn & Comp Sci, Beijing 100871, Peoples R China
  • [ 2 ] [Zhao, Yong]Beijing Univ Technol, Dept Comp Sci & Technol, Beijing, Peoples R China
  • [ 3 ] [Shen, Changxiang]Beijing Univ Technol, Dept Comp Sci & Technol, Beijing, Peoples R China

通讯作者信息:

  • [Liao, Jianhua]Peking Univ, Sch Elect Engn & Comp Sci, Beijing 100871, Peoples R China

查看成果更多字段

相关关键词:

相关文章:

来源 :

TRUSTED SYSTEMS

ISSN: 0302-9743

年份: 2010

卷: 6163

页码: 197-,

语种: 英文

被引次数:

WoS核心集被引频次: 0

SCOPUS被引频次:

ESI高被引论文在榜: 0 展开所有

万方被引频次:

中文被引频次:

近30日浏览量: 0

在线人数/总访问数:198/4605198
地址:北京工业大学图书馆(北京市朝阳区平乐园100号 邮编:100124) 联系我们:010-67392185
版权所有:北京工业大学图书馆 站点建设与维护:北京爱琴海乐之技术有限公司