节点文献

基于抽象和搜索空间划分的安全性判定方法

Security Analysis of Access Control Policy Based on Predicate Abstract and Verification Space Division

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 王昌达华明辉周从华宋香梅鞠时光

【Author】 WANG Chang-da HUA Ming-hui ZHOU Cong-hua SONG Xiang-mei JU Shi-guang(School of Computer Science and Telecommunication Engineering,Jiangsu University,Zhenjiang,Jiangsu 212013,China)

【机构】 江苏大学计算机科学与通信工程学院

【摘要】 为满足访问控制策略安全性快速判定的要求,提出一种基于谓词抽象和验证空间划分的访问控制策略状态空间约减方法,将在访问控制策略原始状态机模型上的安全性分析工作转移到包含较少状态的抽象模型上,并进一步划分抽象模型的验证空间,以提高效率。理论分析和实验数据均表明,其安全性分析所需的时间和空间都得到有效约减。与传统方法相比,它具有速度更快、自动化程度更高等优点。

【Abstract】 In order to implement security analysis of access control policy rapidly,predicate Abstract with verification space division was presented,i.e.transfer pristine state machine model analysis to Abstract state machine model which contains fewer states.Furthermore,verification space division was introduced to decrease the dimensions of model checking.Endorsed by both theoretic analysis and experiment,time and space requirement are effectively reduced.Compared with the known methods,our methodology is more efficiency and less human interacted.

【基金】 国家自然科学基金(60773049);江苏省自然科学基金(BK2007086);江苏省高校自然科学研究计划(07KJB520016);江苏省六大人才高峰项目(1631170006);江苏大学高级人才项目(07JDG053)资助
  • 【文献出处】 计算机科学 ,Computer Science , 编辑部邮箱 ,2011年10期
  • 【分类号】TP309
  • 【被引频次】3
  • 【下载频次】82
节点文献中: 

本文链接的文献网络图示:

本文的引文网络