Design and implementation MAC in security operating system

被引:3
作者
Cai, Y [1 ]
Zheng, ZR [1 ]
Shen, CX [1 ]
机构
[1] Comp Technol Res Inst Navy, Beijing 100841, Peoples R China
来源
2002 IEEE REGION 10 CONFERENCE ON COMPUTERS, COMMUNICATIONS, CONTROL AND POWER ENGINEERING, VOLS I-III, PROCEEDINGS | 2002年
关键词
D O I
10.1109/TENCON.2002.1181253
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Users and resources in system are defined subjects, and objects separately and abstractly by mandatory access control mechanism. Both subjects and objects are endowed with security levels. Subjects accessing objects must obey security policy according their security levels in MAC. In this paper, we introduce how to design and implement MAC mechanism in security operating system. It includes how to define security levels based on BLP model, and why and how to create multilevel directories.
引用
收藏
页码:216 / 219
页数:4
相关论文
共 2 条
[1]  
CLARKE EM, CMUCS96178
[2]  
*ISO WG3, 1999, 1540811999 ISO IEC W