检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:张赛男[1] 乔正洪[1] 雷小宇[1] 王梅娟[1]
机构地区:[1]中国人民解放军理工大学理学院,江苏南京211100
出 处:《微电子学与计算机》2011年第8期136-139,142,共5页Microelectronics & Computer
摘 要:随着计算机应用到各个领域的广度、深度不断扩大,软件的安全需求变得越来越复杂.然而开发人员对系统进行建模时一般不考虑安全需求,系统安全策略和安全机制往往是开发人员在系统开发后期对系统的补充和措施的完善.由此提出将访问控制需求集成到软件开发过程的分析阶段,将访问控制策略建模与功能需求建模集成.通过模型驱动方法为功能需求模型相关的安全方面提供模型,研究从功能模型产生安全模型,最终形成安全访问控制策略.Along with the development of the depth and width in applying computers into all kinds of domains,the software's security requirements become more and more complicated.However,the present software system modeling does not deal with security.System security policy and mechanism often become supplement at the end of system development.This paper investigates how to integrate access control requirements into analysis phrase of the development process and how to integrate the modeling of access control policies into the UML modeling of functional requirements.Through the approach of model driven,the paper provides models for security aspects related to the models for functional requirements and investigates how the security models can be generated from the functional models.Finally security access control policies will be generated.
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.117

