计算机应用研究
計算機應用研究
계산궤응용연구
APPLICATION RESEARCH OF COMPUTERS
2010年
1期
226-230
,共5页
陈喆%王亚弟%蔡国明%卢明龙
陳喆%王亞弟%蔡國明%盧明龍
진철%왕아제%채국명%로명룡
敏感资源%安全防护%信任协商%策略循环依赖
敏感資源%安全防護%信任協商%策略循環依賴
민감자원%안전방호%신임협상%책략순배의뢰
privacy information%privacy preservation%trust negotiation%policy cycle dependence
传统信任协商存在对凭证和访问控制策略的安全防护不足、无法避免策略循环依赖等问题,不适用于安全性要求较高的应用环境.在对信任协商过程中现有敏感资源分类进行扩充的基础上,提出了一个基于完全敏感资源防护的信任协商算法(full privacy preservation based TNS, FPPB_TNA).该算法采用广度优先搜索方法对协商双方的资源披露进行控制,通过安全双方计算对完全敏感资源进行保护,不仅提高了算法的执行效率,而且有效地解决了策略循环依赖问题.算法分析和应用实例证明FPPB_TNA算法具有较好的安全性和完备性.
傳統信任協商存在對憑證和訪問控製策略的安全防護不足、無法避免策略循環依賴等問題,不適用于安全性要求較高的應用環境.在對信任協商過程中現有敏感資源分類進行擴充的基礎上,提齣瞭一箇基于完全敏感資源防護的信任協商算法(full privacy preservation based TNS, FPPB_TNA).該算法採用廣度優先搜索方法對協商雙方的資源披露進行控製,通過安全雙方計算對完全敏感資源進行保護,不僅提高瞭算法的執行效率,而且有效地解決瞭策略循環依賴問題.算法分析和應用實例證明FPPB_TNA算法具有較好的安全性和完備性.
전통신임협상존재대빙증화방문공제책략적안전방호불족、무법피면책략순배의뢰등문제,불괄용우안전성요구교고적응용배경.재대신임협상과정중현유민감자원분류진행확충적기출상,제출료일개기우완전민감자원방호적신임협상산법(full privacy preservation based TNS, FPPB_TNA).해산법채용엄도우선수색방법대협상쌍방적자원피로진행공제,통과안전쌍방계산대완전민감자원진행보호,불부제고료산법적집행효솔,이차유효지해결료책략순배의뢰문제.산법분석화응용실예증명FPPB_TNA산법구유교호적안전성화완비성.
Traditional trust negotiation has the insufficiency of credence and privacy preservation of access control strategy, and unsuitably applies in the high security requirement environment.According to the extension of sensitivity resource classification in trust negotiation process,presented a trust negotiation algorithm based on full privacy preservation(FPPB_TNA).This algorithm adopted breadth-first search to control the negotiators resources issuance, and adopted secure two-party computing to protect the full privacy, that not only improved the efficiency, but also effectively resolved policy cycle dependence.The analysis and application instance of algorithm prove the better security and maturity of the FPPB_TNA algorithm.