Information flow control in role-based model for distributed objects

Information flow control in role-based model for distributed objects
复制标题

分布式对象基于角色的模型中的信息流控制

DOI:
10.1109/icpads.2001.934841
复制
发表时间:
2001
期刊:
Proceedings. Eighth International Conference on Parallel and Distributed Systems. ICPADS 2001
影响因子:
--
通讯作者:
M. Takizawa
M. Takizawa
中科院分区:
--
文献类型:
--
作者:
Keiji Izaki;Katsuya Tanaka;M. Takizawa

文献摘要

被引文献

相似文献

在基于对象的框架中实现了各种分布式应用程序。基于对象的技术用于设计应用程序并增强应用程序之间的互操作性。除了实现互操作性外,还需要系统安全。安全系统不仅需要保护对象免受非法操纵的影响,还需要对象之间的非法信息流。我们讨论了基于对象的系统中基于角色的访问控制模型以及如何解决角色中的非法信息流。我们定义了一组安全的角色,没有发生非法信息流。我们讨论一种算法以检查是否发生非法信息流。此外,我们讨论了如何安全执行属于不安全角色的交易。
Various kinds of distributed applications are realized in object-based frameworks. Object-based technologies are used to design applications and enhance the interoperability among applications. In addition to realizing the interoperability, the system is required to be secure. The secure system is required to not only protect objects from illegal manipulation but also illegal information flow among objects. We discuss a role-based access control model in the object-based systems and how to resolve illegal information flow in the roles. We define a safe set of roles where no illegal information flow occurs. We discuss an algorithm to check if illegal information flow occurs. In addition, we discuss how to safely perform transactions belonging to unsafe roles.