Synchronization Protocols to Prevent Illegal Information Flow in Role-Based Access Control Systems

Synchronization Protocols to Prevent Illegal Information Flow in Role-Based Access Control Systems
复制标题

防止基于角色的访问控制系统中非法信息流的同步协议

DOI:
10.1109/cisis.2014.39
复制
发表时间:
2014
期刊:
2014 Eighth International Conference on Complex, Intelligent and Software Intensive Systems
影响因子:
--
通讯作者:
M. Takizawa
M. Takizawa
中科院分区:
--
文献类型:
--
作者:
Shigenari Nakamura;Dilewaer Doulikun;A. Aikebaier;T. Enokido;M. Takizawa

文献摘要

参考文献

被引文献

相似文献

在信息系统中,如果事务操纵对象,则一个对象中的数据可能会非法流入另一个对象。在我们之前的研究中,讨论了基于角色的同步(RBS)和基于对象的同步(OBS)协议来呈现基于角色的访问控制(RBAC)模型中的非法信息流。非法读操作是指可能暗示非法信息流的读操作。发出非法读操作的事务将被中止。在本文中,我们考虑一个唯一的对象,其数据不允许流向另一个对象。非法写入被定义为在事务中读取唯一对象或非法读取对象后发出的写入操作。每个事务都会读取任何对象,但如果事务非法写入对象,则会中止。基于事务发出非法写操作的中止,讨论了同步协议WA-RBS和WA-OBS。
In information systems, data in an object may illegally flow into another object if transactions manipulate the objects. In our previous studies, the role-based synchronization (RBS) and object-based synchronization (OBS) protocols are discussed to present illegal information flow in the role-based access control (RBAC) model. Illegal read operations mean read operations which might imply illegal information flow. Transactions which issue illegal read operations are aborted. In this paper, we consider a unique object whose data is not allowed to flow to another object. An illegal write is defined to be a write operation which is issued after reading a unique object or illegally reading an object in a transaction. Each transaction reads any object but is aborted if the transaction illegally writes an object. Synchronization protocol WA-RBS and WA-OBS are discussed based on abortion of transaction issuing illegal write operations.
DOI: 10.1109/tnsm.2013.122313.130423
发表时间: 2014-01
影响因子: 5.3
作者:
J. Bacon;D. Eyers;Thomas Pasquier;Jatinder Singh;I. Papagiannis;P. Pietzuch
通讯作者: J. Bacon;D. Eyers;Thomas Pasquier;Jatinder Singh;I. Papagiannis;P. Pietzuch