作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (18): 152-154. doi: 10.3969/j.issn.1000-3428.2006.18.055

• 安全技术 • 上一篇    下一篇

Unix主机安全监控技术研究

沈卫超,王世华   

  1. (北京应用物理与计算数学研究所,北京 100088)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-09-20 发布日期:2006-09-20

Research on Unix Host Security Monitor Technique

SHEN Weichao, WANG Shihua   

  1. (Institute of Applied Physics and Computational Mathematics, Beijing 100088)
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-09-20 Published:2006-09-20

摘要: 提出了一种基于P2DR的、不可旁路的强制访问控制技术。通过强身份认证、封装Unix命令和基于P2DR的强制访问控制,以多级安全策略模型为基础构建了Unix主机安全监控系统框架,重点应用于涉密网络中Unix主机的安全防护。

关键词: 主机安全, 强制访问控制, 安全审计, P2DR

Abstract: A mandatory access control technique is proposed which is based on P2DR and cannot be bypassed. The framework of Unix host security monitoring system is constructed on multi-level security policy model through strong authentication, encapsulated Unix command and mandatory access control based on P2DR. And the system is mainly applied to Unix host security protection in secret network environment.

Key words: Host security, Mandatory access control, Security audit, P2DR