furthermore, this paper discussed several technical problems in system realization . finally, for the sake of the practical system security management, a mechanism and realization of dynamic authorization function based on the role is discussed 最后,本文在对现有技术提供的系统安全管理方案研究的基础上,结合系统实际情况,讨论了适用于实际系统的基于角色的动态功能授权机制和实现技术,增强了系统的安全性。
third, based on the thorough research of the multilevel security models, integrity models and role-based access control models ( rbac ), a modified blp model ( mblp ) is designed and applied in a secure operating system developed independently . then, a well-integrated model of blp model, clark-wilson model, dte model and rbac models is proposed, leading to a prominent dynamic authorization access control model ( daacm ), which supports diverse security policies, including confidentiality, integrity and authorization 第三,在深入研究多级安全模型、完整性模型、基于角色的授权模型等基础上,首先提出了一个修改blp模型(mblp)的方案,并在一个自主开发的安全操作系统中得到了应用;然后通过将blp模型、clark-wilson模型、dte模型、rbac模型有机地集成应用,提升出一个支持机密性、完整性和授权等多安全策略的,可实现动态授权的访问控制模型(daacm)。