作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (8): 123-125. doi: 10.3969/j.issn.1000-3428.2010.08.043

• 安全技术 • 上一篇    下一篇

扩展的BLP模型及其应用

胡勇强,伍红兵,俞海英,龙 瑞   

  1. (解放军理工大学工程兵工程学院网络信息中心,南京 210007)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2010-04-20 发布日期:2010-04-20

Extended BLP Model and Its Application

HU Yong-qiang, WU Hong-bing, YU Hai-ying, LONG Rui   

  1. (Network Information Center, Engineering Institute of Engineer Corps, PLA University of Science and Technology, Nanjing 210007)
  • Received:1900-01-01 Revised:1900-01-01 Online:2010-04-20 Published:2010-04-20

摘要: 分析经典BLP模型中的非可信主体当前敏感级fC和“宁静原则”存在的不合理性,针对该问题,利用动态变化的主体敏感级v-max/a-min代替主体当前敏感级fC。为解决完整性保护问题,提出一个扩展的BLP模型,模型中引入主体的完整性和主客体的可信度,对于客体可信度,从完整性和可信性2个方面进行保护,同时对主体的可信度采用动态变化原则,并给出一个EBLP模型在操作系统中的应用实例。

关键词: BLP模型, 动态敏感级, 可信度, 完整性

Abstract: The inconsequence of the current sensitivity level fC of subjects and the tranquility principle in the typical BLP model is analyzed. The problems by replacing fC with the dynamical sensitivity pair v-max/a-min is fixed. In order to incorporate with the integrity protection, an extended BLP model which introduces the integrity of subjects and the credibility of subjects and objects is presented. This model distinguishes the credibility protection of objects with the integrity protection of objects and uses dynamical credibility level. An example for how to use the EBLP on operating systems is given.

Key words: BLP model, dynamical sensitivity level, credibility, integrity

中图分类号: