1 / 4
文档名称:

基于风险的数字权限管理模型的研究.doc

格式:doc   页数:4
下载后只包含 1 个 DOC 格式的文档,没有任何的图纸或源代码,查看文件列表

如果您已付费下载过本站文档,您可以点这里二次下载

分享

预览

基于风险的数字权限管理模型的研究.doc

上传人:164922429 2014/2/15 文件大小:0 KB

下载得到文件列表

基于风险的数字权限管理模型的研究.doc

文档介绍

文档介绍:
基于风险的数字权限管理模型的研究
崔宁宁,何永忠**
(北京交通大学计算机与信息技术学院,北京 100044)
5
10
15
20
25
30
35
40
摘要:传统的 DRM 系统在制定使用策略时都是采用的精确授权,而实际上策略的制定本身
具有模糊性和不确定性,并且会随着使用过程中的风险动态变化而变化。本文提出了一种基
于风险的数字权限管理模型,将风险引入访问控制决策中,对主体、客体、操作和时间约束
区间等访问控制信息进行风险分析与量化,并根据风险量化值的大小决定是否授权,使得系
统授权与访问控制决策能更准确地反映安全控制策略目的,并随着系统状态而动态调整,从
而获得共享需要和安全控制之间的最佳平衡。
关键词:信息安全,数字权限管理,多级安全模型,缓存,风险
中图分类号:TP393
Research on Digital rights management model based on risk
CUI Ningning, HE Yongzhong
(Computer and Information Technology School, Beijing Jiaotong University, Beijing 100044)
Abstract: Traditional DRM system is accurate authorization in making use of policy, but in fact that
strategy formulation is fuzzy and uncertainty, and it will change with the risk in the process of using .
This article proposes a model of digital rights management based on risk. With risk as an authorization
factor of policy, and make quantitative measurement of the access control information such as subject,
object, operation and time constraints. Then this paper can decide whether to authorize with the
quantitative risk values. The proposed method can make the system authorization and the access
control decision reflect the purpose of security control strategy more accurately, and they also can
dynamic adjustment with the system state, so as to obtain the best balance between the needs of sharing
and security control.
Key words