节点文献
分布式计算系统信息流安全
Information Flow Security for Distribution Computation System
【摘要】 程序信息流安全是信息安全的一个重要研究方向.基于类型的静态分析可以保证程序信息流安全.鉴于分布式移动计算系统中进程之间的通讯会引起严重的信息泄密,本文研究了进程之间的通讯对系统信息流安全的影响,通过对高阶函数式编程语言进行扩充,加入通讯原语,得到分布式移动计算语言ConcurML,它能很好地模拟网络连接的动态性和代码移动性.并给出了动态语义和静态语义的形式描述,所设计的两级信息流类型系统使用类型和效果技术,结合了多态这样的类型特征,能有效地保证进程之间的通讯不会导致信息泄密.
【Abstract】 Ensuring information flow security of programs is an important research direction of information security. Type-based analyses can be used to ensure information flow security of programs. Distribution computation system involves communication, which makes ensuring security more difficult. This paper introduces a distribution language called ConcurML which combines extends functional language with constructs for transmitting and receiving values on channels across remote sites, and develops a type system exploiting type and effect systems to factor the information security analysis into two pieces. It can ensure security for communication between processes.
【Key words】 information flow security; formal semantics; type and effect system; polymorphism;
- 【文献出处】 小型微型计算机系统 ,Journal of Chinese Computer Systems , 编辑部邮箱 ,2007年03期
- 【分类号】TP309
- 【被引频次】4
- 【下载频次】230