Title :
Design and implementation MAC in security operating system
Author :
Yi, Cai ; Zhi-rong, Zheng ; Chang-xiang, Shen
Author_Institution :
Comput. Technol. Res. Inst. of Navy, Beijing, China
Abstract :
Users and resources in a system are defined subjects and objects separately and abstractly by a mandatory access control mechanism. Both subjects and objects are endowed with security levels. Subjects accessing objects must obey security policy according their security levels in MAC. In this paper, we introduce how to design and implement a MAC mechanism in a security operating system. It includes how to define security levels based on the BLP model, and why and how to create multilevel directories.
Keywords :
authorisation; operating systems (computers); mandatory access control mechanism; multilevel directories; security operating system; Access control; Computer aided instruction; Computer interfaces; Control systems; Guidelines; Hardware; Information security; National security; Operating systems; Sections;
Conference_Titel :
TENCON '02. Proceedings. 2002 IEEE Region 10 Conference on Computers, Communications, Control and Power Engineering
Print_ISBN :
0-7803-7490-8
DOI :
10.1109/TENCON.2002.1181253