作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (14): 43-45. doi: 10.3969/j.issn.1000-3428.2010.14.016

• 软件技术与数据库 • 上一篇    下一篇

访问控制系统的规则集模型及其检测算法

李晓聪,鞠时光,王益维   

  1. (江苏大学计算机科学与通信工程学院,镇江 212013)
  • 出版日期:2010-07-20 发布日期:2010-07-20
  • 作者简介:李晓聪(1985-),女,硕士研究生,主研方向:模型检测技术,访问控制系统建模与验证;鞠时光,教授;王益维,硕士 研究生
  • 基金资助:
    国家自然科学基金资助项目(60773049)

Rule Set Model and Its Checking Algorithm in Access Control System

LI Xiao-cong, JU Shi-guang, WANG Yi-wei   

  1. (School of Computer Science and Telecommunication Engineering, Jiangsu University, Zhenjiang 212013)
  • Online:2010-07-20 Published:2010-07-20

摘要: 针对访问控制系统规则存在漏洞问题,提出一个建立在系统读写规则集基础之上的访问控制系统规则集模型及相应的模型检测算法,通过对系统状态的遍历,判断目标在权限提供某些许可的情况下是否可完成,并在目标可完成的情况下输出相应的策略。实验结果证明,在中等规模的系统中该算法有效。

关键词: 访问控制系统, 模型检测, 变迁

Abstract: This paper presents a rule set model which is used in access control systems and the corresponding model checking algorithm for loopholes which are brought by the rules in access control system. A method which search system states is used to determine if the goals can be achieved under the conditions that some permissions are given by rights. Corresponding strategies are output when the goals are achieved. Experimental results show that the algorithm is efficient in moderate systems.

Key words: access control system, model checking, transition

中图分类号: