首页 | 本学科首页   官方微博 | 高级检索  
     检索      

跨域云环境下基于动态异构网络的风险访问模型
引用本文:文静,袁家斌,王诗璇,魏利利.跨域云环境下基于动态异构网络的风险访问模型[J].河海大学学报(自然科学版),2020,48(3):284-290.
作者姓名:文静  袁家斌  王诗璇  魏利利
作者单位:南京航空航天大学计算机科学与技术学院,江苏 南京 211106;淮阴师范学院计算机科学与技术学院,江苏 淮安 223300,南京航空航天大学计算机科学与技术学院,江苏 南京 211106,南京航空航天大学计算机科学与技术学院,江苏 南京 211106,中国兵器工业第二〇八研究所,北京 102202
基金项目:国家重点研发计划(2017YFB0802303);国家自然科学基金面上项目(61571226);南京市产学研合作后补助项目计划(201722025)
摘    要:针对在动态异构网络中传统的访问控制机制复杂度高、灵活性差、数据安全性支持不足的问题,提出一种引入风险管理机制的多级安全访问模型。为每一个域设定动态风险阈值,对发起访问的主体和被访问的客体进行风险预审核。在设定的访问周期内对访问次数、累计访问风险值、最大访问风险值进行比较并给出限制条件,对频繁发起访问的低风险主体给予风险预支额度,在未透支风险额度的情况下允许其进一步访问。访问结束后,会动态调整本域风险阈值,使之具有一定的动态适应性。

关 键 词:多级安全  访问控制  动态风险阈值  风险预支  历史访问记录  异构网络

Risk access model based on dynamic heterogeneous network in cross-domain cloud environment
WEN Jing,YUAN Jiabin,WANG Shixuan,WEI Lili.Risk access model based on dynamic heterogeneous network in cross-domain cloud environment[J].Journal of Hohai University (Natural Sciences ),2020,48(3):284-290.
Authors:WEN Jing  YUAN Jiabin  WANG Shixuan  WEI Lili
Institution:College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing 211106, China; College of Computer Science and Technology, Huaiyin Normal University, Huaian 223300, China; NO. 208 Research Institute of China Ordnance Industries, Beijing 102202, China
Abstract:Aiming at the high complexity, poor flexibility and security problem in the traditional cross-domain access under the dynamic heterogeneous network environment, this paper proposed a multi-level security access model that introduced the risk management mechanism, where a dynamic risk threshold is set for each domain and a risk pre-audit is performed on both subject and object of the access. The model compares the number of access, the cumulative access risk values, and the maximum value within the set access period and then stipulates restriction conditions. For low-risk entities that frequently initiate access, a risk advance limit is offered, and further access is allowed in case of non-overdraft risk limit. After the access, the risk threshold of the domain will be adjusted dynamically to make it a certain dynamic adaptability.
Keywords:multi-level security  access control  dynamic risk threshold  risk advance  access history record  heterogeneous network
本文献已被 万方数据 等数据库收录!
点击此处可从《河海大学学报(自然科学版)》浏览原始摘要信息
点击此处可从《河海大学学报(自然科学版)》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号