High assurance discretionary access control for object bases

High assurance discretionary access control for object bases
复制标题

对象库的高保证自主访问控制

DOI:
10.1145/168588.168606
复制
发表时间:
1993
期刊:
ArXiv
影响因子:
--
通讯作者:
S. Jajodia
S. Jajodia
中科院分区:
--
文献类型:
--
作者:
E. Bertino;P. Samarati;S. Jajodia

文献摘要

被引文献

相似文献

自由裁量式访问控制基于对用户授权的访问请求进行检查,在信息被“合法”访问后,不提供任何限制信息使用的方法。这使得自由裁量权系统容易受到特洛伊木马恶意泄露信息的攻击。因此,需要提供额外的控制来限制系统中不加区分的信息流。本文提出了一种消息过滤器来补充面向对象系统中的任意授权控制,以限制授权系统对特洛伊木马的脆弱性。面向对象数据模型的封装特性要求只能通过定义的方法访问对象,这使得此类系统中的信息流以消息及其回复的形式具有非常具体和自然的体现。因此,信息信息流可以通过中介在对象之间交换消息的传输来控制。消息过滤器拦截对象之间交换的每条消息,以确保信息不会泄露到用户不允许访问的对象中。
Discretionary access control, based on checking access requests against users' authorizations, does not provide any way of restricting the usage of information once it has been “legally” accessed. This makes discretionary systems vulnerable to Trojan Horses maliciously leaking information. Therefore the need arises for providing additional controls limiting the indiscriminate flow of information in the system. This paper proposes a message filter complementing discretionary authorization control in object-oriented systems to limit the vulnerability of authorization systems to Trojan Horses. The encapsulation property of the object-oriented data model, which requires that access to objects be possible only through defined methods, makes information flow in such systems have a very concrete and natural embodiment in the form of messages and their replies. As a result, information information flow can be controlled by mediating the transmission of messages exchanged between objects. The message filter intercepts every message exchanged between objects to ensure that information is not leaked to objects accessible by users not allowed for it.