Existing access control methods grant access requests based on the combinations of applications as subject and files as objects. Therefore intents of applications and the possible effects caused by granting the access requests have not been taken into consideration. In this paper, we propose a new access control method based on application history and intents. With our access control method, system administrators can reduce the risks caused by malicious access attempts and wrong operations. In this paper, the concept and implementation design will be explained as well as the brief evaluation report of TOMOYO Linux, our implementation of the new access control method to Linux.
翻译:现有访问控制方法基于以应用为主体、文件为客体的组合来授权访问请求,因此未考虑应用的意图以及授权访问请求可能造成的影响。本文提出一种基于应用历史与意图的新型访问控制方法。通过该访问控制方法,系统管理员能够降低恶意访问尝试与误操作带来的风险。本文将阐述该方法的理念与实现设计,并给出我们面向Linux实现的访问控制方法——TOMOYO Linux的简要评估报告。