张赛男, 乔正洪, 雷小宇, 王梅娟. 基于模型驱动的安全访问控制的研究[J]. 微电子学与计算机, 2011, 28(8): 136-139,142.
引用本文: 张赛男, 乔正洪, 雷小宇, 王梅娟. 基于模型驱动的安全访问控制的研究[J]. 微电子学与计算机, 2011, 28(8): 136-139,142.
ZHANG Sai-nan, QIAO Zheng-hong, LEI Xiao-yu, WANG Mei-juan. Research of Security Access Control Based on Model-Driven[J]. Microelectronics & Computer, 2011, 28(8): 136-139,142.
Citation: ZHANG Sai-nan, QIAO Zheng-hong, LEI Xiao-yu, WANG Mei-juan. Research of Security Access Control Based on Model-Driven[J]. Microelectronics & Computer, 2011, 28(8): 136-139,142.

基于模型驱动的安全访问控制的研究

Research of Security Access Control Based on Model-Driven

  • 摘要: 随着计算机应用到各个领域的广度、深度不断扩大,软件的安全需求变得越来越复杂.然而开发人员对系统进行建模时一般不考虑安全需求,系统安全策略和安全机制往往是开发人员在系统开发后期对系统的补充和措施的完善.由此提出将访问控制需求集成到软件开发过程的分析阶段,将访问控制策略建模与功能需求建模集成.通过模型驱动方法为功能需求模型相关的安全方面提供模型,研究从功能模型产生安全模型,最终形成安全访问控制策略.

     

    Abstract: Along with the development of the depth and width in applying computers into all kinds of domains,the software's security requirements become more and more complicated.However,the present software system modeling does not deal with security.System security policy and mechanism often become supplement at the end of system development.This paper investigates how to integrate access control requirements into analysis phrase of the development process and how to integrate the modeling of access control policies into the UML modeling of functional requirements.Through the approach of model driven,the paper provides models for security aspects related to the models for functional requirements and investigates how the security models can be generated from the functional models.Finally security access control policies will be generated.

     

/

返回文章
返回