作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2012, Vol. 38 ›› Issue (13): 96-98. doi: 10.3969/j.issn.1000-3428.2012.13.027

• 安全技术 • 上一篇    下一篇

Biba改进模型在安全操作系统中的应用

郭荣春1,刘文清2,徐 宁2,李继云1   

  1. (1. 东华大学计算机科学与技术学院,上海 201620;2. 中标软件有限公司,上海 200030)
  • 收稿日期:2011-09-01 出版日期:2012-07-05 发布日期:2012-07-05
  • 作者简介:郭荣春(1984-),男,硕士研究生,主研方向:操作系统安全;刘文清,副研究员、博士;徐 宁,博士研究生;李继云,副教授
  • 基金资助:
    国家自然科学基金资助项目(61072017);“核高基”重大专项(2010ZX01036-001-001)

Application of Improved Biba Model in Security Operating System

GUO Rong-chun   1, LIU Wen-qing   2, XU Ning   2, LI Ji-yun   1   

  1. (1. College of Computer Science and Technology, Donghua University, Shanghai 201620, China; 2. China Standard Software Co., Ltd., Shanghai 200030, China)
  • Received:2011-09-01 Online:2012-07-05 Published:2012-07-05

摘要: 经典Biba模型的严格完整性策略在应用中未考虑主客体操作的复杂性,且信息向操作系统安全子系统(SSOOS)范围外传输时存在完整性问题。针对上述问题,根据GB/T 20272-2006中结构化保护级标准对安全操作系统完整性的要求,在主客体完整性的灵活性、操作复杂性、SSOOS之外完整性标签等方面对Biba模型进行改进。理论分析结果证明,该模型在确保经典Biba模型完整性的基础上,大幅提升了系统的可用性。

关键词: Biba模型, 安全操作系统, 完整性模型, 结构化保护级, 完整性策略

Abstract: The strict integrity strategy of classical Biba model does not consider the problem of complexity in application of host-guest and the problem of the integrity of the label when the information transmits to outside of Security Subsystem of Operating System(SSOOS). According to GB/T 20272-2006 specification for safety operating system, this paper improves classical Biba model in the flexibility in integrity of host-guest, operation complexity and the integrity of the label beside SSOOS. Theory analysis result shows that improved Biba model enhances system usability on basis of guaranteeing integrity of Biba model.

Key words: Biba model, security operating system, integrity model, structural protection level, integrity policy

中图分类号: