Author Login Editor-in-Chief Peer Review Editor Work Office Work

Computer Engineering ›› 2010, Vol. 36 ›› Issue (14): 43-45. doi: 10.3969/j.issn.1000-3428.2010.14.016

• Networks and Communications • Previous Articles     Next Articles

Rule Set Model and Its Checking Algorithm in Access Control System

LI Xiao-cong, JU Shi-guang, WANG Yi-wei   

  1. (School of Computer Science and Telecommunication Engineering, Jiangsu University, Zhenjiang 212013)
  • Online:2010-07-20 Published:2010-07-20

访问控制系统的规则集模型及其检测算法

李晓聪,鞠时光,王益维   

  1. (江苏大学计算机科学与通信工程学院,镇江 212013)
  • 作者简介:李晓聪(1985-),女,硕士研究生,主研方向:模型检测技术,访问控制系统建模与验证;鞠时光,教授;王益维,硕士 研究生
  • 基金资助:
    国家自然科学基金资助项目(60773049)

Abstract: This paper presents a rule set model which is used in access control systems and the corresponding model checking algorithm for loopholes which are brought by the rules in access control system. A method which search system states is used to determine if the goals can be achieved under the conditions that some permissions are given by rights. Corresponding strategies are output when the goals are achieved. Experimental results show that the algorithm is efficient in moderate systems.

Key words: access control system, model checking, transition

摘要: 针对访问控制系统规则存在漏洞问题,提出一个建立在系统读写规则集基础之上的访问控制系统规则集模型及相应的模型检测算法,通过对系统状态的遍历,判断目标在权限提供某些许可的情况下是否可完成,并在目标可完成的情况下输出相应的策略。实验结果证明,在中等规模的系统中该算法有效。

关键词: 访问控制系统, 模型检测, 变迁

CLC Number: