Role-Based Information Flow Control Models

Role-Based Information Flow Control Models
复制标题

基于角色的信息流控制模型

DOI:
10.1109/aina.2014.139
复制
发表时间:
2014
期刊:
2014 IEEE 28th International Conference on Advanced Information Networking and Applications
影响因子:
--
通讯作者:
M. Takizawa
M. Takizawa
中科院分区:
--
文献类型:
--
作者:
Shigenari Nakamura;Dilawaer Duolikun;A. Aikebaier;T. Enokido;M. Takizawa

文献摘要

参考文献

被引文献

相似文献

在信息系统中,如果主体操纵对象,对象中的数据可能非法流入另一对象。本文讨论了在基于角色的访问控制(RBAC)模型中,防止非法信息发生的信息流控制模型。首先,我们在角色ri和rj之间定义一个法律的的信息流关系ri rj。这意味着,如果一个被授予角色ri的主体在另一个被授予角色rj的主体之前操纵对象,则不会发生非法信息流。我们讨论的安全系统中,没有非法的信息流发生,即使从不同的主题进行操作,以任何顺序。然后,我们讨论了一个基于角色的同步(RBS)协议和一个基于对象的同步(OBS)协议,以防止不安全系统中的非法信息流。这里,如果事务读取对象并且可能发生非法信息流,则事务被中止。在RBS协议中,非法信息流条件是根据OBS协议中的角色而对象来规定的。我们评估RBS和OBS协议的交易中止的数量。
In information systems, data in an object may illegally flow into another object if a subject manipulates the objects. In this paper, we discuss information flow control models to prevent illegal information to occur in the role-based access control (RBAC) model. First, we define a legal information flow relation ri⇒ rj among roles ri and rj. It means, if a subject granted the role ri manipulates objects before another subject granted the role rj, no illegal information flow occur. We discuss safe systems where no illegal information flow occur even if operations from different subjects are performed in any order. Then, we discuss a role-based synchronization (RBS) protocol and an object-based synchronization (OBS) protocol to prevent illegal information flow in unsafe systems. Here, a transaction is aborted if the transaction reads an object and illegal information flow might occur. In the RBS protocol, the illegal information flow condition is specified in terms of roles while objects in the OBS protocol. We evaluate the RBS and OBS protocols in terms of number of transactions aborted.
基于角色访问控制模型的法律信息流(LIF)调度程序(已接受)
DOI: --
发表时间: 2008
影响因子: 5
作者:
Enokido;T;Barolli;V.;and Takizawa;M.
通讯作者: M.