一种基于通信信道容量的多级安全模型  被引量:6

A Multilevel Security Model Based on Communication Channel Capacity

在线阅读下载全文

作  者:刘雄[1] 卓雪君[1] 汤永利[1] 戴一奇[1] 

机构地区:[1]清华大学计算机科学与技术系,北京100084

出  处:《电子学报》2010年第10期2460-2464,共5页Acta Electronica Sinica

摘  要:安全模型有多种代表模型,如BLP模型和不可推断模型等.这些模型在理论描述或者实际应用方面存在一定的局限性,如BLP模型未能考虑隐蔽通道,不可推断模型不适应非确定系统.针对这些模型的不足,本文在BLP模型基础上,考虑了隐蔽通道的特性,提出了泄密通道有限容忍的通信信道模型,该模型能通过调节泄密通道信道容量上限来平衡实际系统可用性和安全性.Many typical security models have been proposed,such as the BLP model and the nondeducibility model,however,these models have some disadvantages and limitations in theoretical analysis or implementation respectively.For instance,BLP model did not take the covert channel into account,and the nondeducibility model cannot be applied to the nondeterministic systems.Considering these shortages brought about by the existing works,this paper take the properties of the covert channel as a main consideration,and propose a novel finite-information-leakage-tolerance communication channel model based on the BLP model.The proposed model finds a tradeoff between the availability and security of the practical system by adjusting the upper bound of the channel capacity of the information leakage.

关 键 词:安全模型 BLP模型 隐蔽通道 通信信道模型 

分 类 号:TP309[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象