On Desing of Access Control for Database Systems
On Desing of Access Control for Database Systems
批准号:
07455163
负责人:
TSUJII Shigeo
金额:
$3.46万
依托单位:
依托单位国家:
日本
项目类别:
Grant-in-Aid for Scientific Research (B)
财政年份:
1995
资助国家:
日本
项目状态:
已结题
起止时间:
1995 至 1996
中文摘要
点击翻译按钮获取中文摘要
英文摘要
To control the access right of users to data base systems concentrically is one of the approaches for solving to the problem. A systematic model for the approach is called the security model. Typical security models are a mandatory model of the Bell and LaPadula model (summarize BLP) and a discretionaly model using an access matrix. The BLP is defined security levels for information and users. An access right of users is controlled by comparing the security levels of the users and the information. Direction of the information flows are defined by the security levels.On the other haid, the discretionaly model using an access matrix an access matrix has an advantage to be able to look aroud information flows all over the users. But there is a problem that the indirect information flows are caused by writing any information to the other information, and consequently, confidentiality and integrity for the information are damaged. And if access right is changed, we have a further problem th … More at the access matrix which has been secure before changing access right is not secure. But reports of this type of research have apparently not been published to date.This research proposes a security model and reification method to detect the indirect information flows and to verify whether information is secure or not. For the security model proposed, a Hierarchical Time Petri Net (H-TPN), which is an extended not of the Hierarchical Petri Net, is defimed. The H-TPN is introduced time parameter and colored tokens in the Hierarchical Petri Net. The information flows in the access matrix are described by the paths on the H-TPN whose places describe users and information. The time parameter is defined in the transitions of the H-TPN.Colored tokens, which are divided into two types, are introduced to reduce complexity of toke'n propagation paths, The one type of the colored tokens describes information to be verified, the others describe information not to be verified. Operation rules between colored tokens are defined.In the proposed security model, we will show very interesting properties for the security with regard to the time. The properites are a condition to be secure till a certain time and a condition to be secure from a certain time to a certain future time. Less
期刊论文(8)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
辻井重男 他: "On Ambiguity in Coppersmith′ Attacking Method against NIKS-TAS Schem" 電子情報通信学会 英文論文誌. E79. 66-75 (1996)
Shigeo Tsujii 等人:“论 Coppersmith 的针对 NIKS-TAS 方案的攻击方法的歧义”,IEICE 英文期刊,66-75 (1996)。
DOI:
--
发表时间:
期刊:
影响因子:
--
作者:
[]
通讯作者:
趙 晋輝 他: "Design of Cryptographieally secure elliptic curves over extension fields with CM field method" Proc of PRAGOCRYPTO′96. Part 1. 93-108 (1996)
Jinhui Zhao 等人:“使用 CM 场方法设计扩展域上的密码学安全椭圆曲线”Proc of PRAGOCRYPTO96 第 1 部分. 93-108 (1996)。
DOI:
--
发表时间:
期刊:
影响因子:
--
作者:
[]
通讯作者:
辻井重男: "文明構造・文化概念の変容と情報セキュリティ" 電子情報通信学会誌. 79. 98-106 (1996)
Shigeo Tsujii:“文明结构/文化观念的转变与信息安全”电子信息通信工程师学会学报79. 98-106(1996)。
DOI:
--
发表时间:
期刊:
影响因子:
--
作者:
[]
通讯作者:
Shigeo TSUJI et al: "On Ambiguity in Coppersmith' Attacking Method against NIKS-TAS Schem" IEICE TRANSACTIONS. E79. 66-75 (1996)
Shigeo TSUJI 等人:“论 Coppersmith 针对 NIKS-TAS 方案的攻击方法中的歧义”IEICE TRANSACTIONS。
DOI:
--
发表时间:
期刊:
影响因子:
--
作者:
[]
通讯作者:
辻井重男 他: "On Ambiguity in Coppersmith' Attacking Method against NIKS-TAS Scheme" 電子情報通信学会論文誌(英文誌). E79-A. 66-75 (1996)
Shigeo Tsujii 等人:“论 Coppersmith 针对 NIKS-TAS 方案的攻击方法中的歧义”,电子、信息和通信工程师学会汇刊(英文版)E79-75(1996 年)。
DOI:
--
发表时间:
期刊:
影响因子:
--
作者:
[]
通讯作者:
共 8 条
High Quality Imaging and Distributed Multimedea Applications
-
批准号:04044063
-
项目类别:Grant-in-Aid for international Scientific Research
-
资助金额:$8.32万
-
财政年份:1992
-
负责人:TSUJII Shigeo
-
依托单位:
海外基金