节点文献

电子政务数据交换中心安全服务系统的分析与设计

【作者】 李强

【导师】 王延章;

【作者基本信息】 大连理工大学 , 管理科学与工程, 2003, 硕士

【摘要】 电子政务数据交换中心的出现使得各级政府以及同一政府各部门间可以方便快捷地进行数据交换和信息共享,但是在这种方便的背后也隐藏着敏感数据容易被窃取等安全问题,存在着极大的安全风险。由于目前现有的安全产品只能够提供相对单一的安全功能,不能满足电子政务数据交换中心对全面安全的需要,因此有必要设计一个安全服务系统来满足数据交换中心对全面安全的需要。 针对上述问题,本文从技术角度出发,分析了电子政务数据交换中心目前面临的安全风险以及数据交换中心对安全的需求。并根据计算机信息安全的理论与软件体系结构理论,深入探讨了如何为电子政务数据交换中心提供安全访问控制、平滑系统升级能力以及安全系统集成等问题,同时综合运用了主要以微内核技术、层次模型技术、对象技术等为主的软件体系构造方法,访问控制、引用监视器技术以及可配置消息过滤技术等安全技术,设计了电子政务数据交换中心安全服务系统,并在此基础之上实现了该系统。根据论文写作的需要,进行了如下工作: 1)、分析了数据交换中心系统对安全的需求。 2)、设计了数据交换中心安全服务系统的系统结构。 3)、设计了数据交换中心安全服务系统的安全控制结构。 4)、实现了数据交换中心安全服务系统。 本文以政务建设大型项目“辽宁省党政信息网”中的数据交换中心项目为研究背景,通过对有关问题的探讨与实践,从技术角度较好地解决了电子政务数据交换中心的安全问题,满足了电子政务数据交换中心在技术方面对安全的需求,并且该文的研究成果在该项目中得到了很好的应用。

【Abstract】 The appearance of Data Exchange Center made it easy to exchange data and share information between all levers of governmental departments. But behind the convenience there exists security risk. Thinking about the product that only could provide simplex security function and could not meet the e-government data exchange center’s general requirement, therefore it’s necessary to design a new security service system to meet the general requirement of Data Exchange Center.Considering this problem, this paper begin from the point of view of technique, analyzed the security risk of data exchange center presently. By the theory of computer information security and theory of software architecture, the security service matters were discussed, such as security access control, upgrade system smoothly and security system integrated. According to the discuss above, a new security service system for e-government data exchange center was designed and implemented based on the technology of microkernel model, layered model, object-oriented model, rule based access control, reference monitor and configurable message filter. In order to write out the thesis, the follow work was done:1). Analysis of the data exchange center’s security requirement.2). Design of the system architecture of security service system for data exchangecenter. 3). Design of the security architecture of security service system for dataexchange center. 4). Implementation of the security service system for data exchange center.Based on the project of "Liaoning provincial party and government information net ", which is one of the big projects of the e-government affair, through the discussing and practice, this paper solved the security problem of e-government affair data exchange center from the point of view of technology, fulfilled the technological security requirement for data exchange center, and the conclusion have been used in the project very well.

  • 【分类号】TP399
  • 【被引频次】2
  • 【下载频次】282
节点文献中: