- 51
- 0
- 约5.38千字
- 约 25页
- 2017-03-09 发布于上海
- 举报
The Protection of Information in Computer Systems计算机系统中的信息保护
The Protection of Information in Computer SystemsPart I. Basic Principles of Information Protection Jerome Saltzer Michael Schroeder Presented by Bert Bruce Overview Focus of paper on multiple user computer system User authority Who can do something to something Who can see something “Privacy” social Concern here is controlling access to data (security) Security Violations Unauthorized release of information Unauthorized modification of information Unauthorized denial of use of information Definitions Protection – control access to information Authentication – verify identity of user Categories of Protection Schemes Unprotected Typical batch system Physical isolation (computer room) All or Nothing User totally isolated in the system No sharing of resources Typical of early TS systems (Dartmouth BASIC) Categories of Protection Schemes Controlled Sharing OS puts limits on access TOPS-10 file system w/ WRX control User-programmed Sharing Controls Like OO files w/ access methods User control access as he likes Claims UNIX has this? Categories of Protection Schemes Putting Strings on Information Trace or control information after released File retains access status even when others have it Overriding question on these schemes is how controls can change over time How is privilege changed? Can access privilege be modified or revoked on the fly? Design Principles Since we can’t build software without flaws, we need ways to reduce number and severity of security flaws What follows are 10 Design Principles to apply when designing and creating protection mechanisms They were true in 1975 and remain relevant today Design Principles 1. Economy of Mechanism KISS Principle Easier to implement Allows total inspection of security mechanism Design Principles 2. Fail-safe Defaults Default case should be to exclude access Explicitly give right to access The reverse is risky i.e. find reasons to exclude You may not think of all reasons to exclude Design Principles 2. Fail-safe Defa
您可能关注的文档
- The Mongols cobblearning蒙古人cobblearning.net.pptx
- The Mongols ESM School District蒙古人ESM学区.ppt
- The Monkey’s Paw MS猴爪女士. CHERRY 8TH GRADE LANGUAGE ARTS.ppt
- The Monkey King 孙悟空 teacherweb猴王孙悟空 teacherweb.ppt
- The Monkey Trial wshsfernandez猴子审判wshsfernandez.yolasite.pptx
- The Monkey’s Paw” Mrs猴爪“夫人. Spaht.pptx
- The Monkey’s Paw” SWIFT Classroom猴爪“敏捷的教室.pptx
- The Monsters Are Due on Maple Street buncombe怪物枫叶街由于废话.k12.nc.us.ppt
- The Mongols in China nplainfield蒙古人在中国nplainfield.pptx
- The Monkey’s Paw Warren County Public Schools猴爪克里县公立学校.ppt
- 2025-2026学年天津市和平区高三(上)期末数学试卷(含解析).pdf
- 2025-2026学年云南省楚雄州高三(上)期末数学试卷(含答案).pdf
- 2025-2026学年甘肃省天水市张家川实验中学高三(上)期末数学试卷(含答案).docx
- 2025-2026学年福建省厦门市松柏中学高二(上)期末数学试卷(含答案).docx
- 2025-2026学年广西钦州市高一(上)期末物理试卷(含答案).docx
- 2025-2026学年河北省邯郸市临漳县九年级(上)期末化学试卷(含答案).docx
- 2025-2026学年河北省石家庄二十三中七年级(上)期末历史试卷(含答案).docx
- 2025-2026学年海南省五指山市九年级(上)期末化学试卷(含答案).docx
- 2025-2026学年河北省唐山市玉田县九年级(上)期末化学试卷(含答案).docx
- 2025-2026学年河北省邢台市市区九年级(上)期末化学试卷(含答案).docx
最近下载
- 原调正谱G小小蝴蝶la farfalletta钢琴伴奏高清打印版.pdf VIP
- 上海大学2024-2025学年第1学期《高等数学(上)》期末考试试卷(B卷)附参考答案.pdf
- 广发证券-交通银行-601328-零售转型提速,定增落地夯实资本根基.pdf
- 上海大学2024-2025学年第1学期《高等数学(上)》期末考试试卷(A卷)附参考答案.pdf
- 循环系统护理小讲课.pptx
- 建筑屋面西瓦专项施工方案(范本).doc VIP
- 2024年山东铝业职业学院单招综合素质考试题库及答案1套.docx VIP
- 探究TIPS术后支架堵塞的影响因素及抗凝治疗的必要性:基于多维度分析与临床实践.docx
- 成品仓库出货明细表.pdf VIP
- 贵州省黔西南州2025年中考数学试卷及答案.pdf VIP
原创力文档

文档评论(0)