期刊文献+

基于Linux的USB存储设备访问控制机制研究 被引量:5

Research on Access Control Mechanism of USB Storage Devices Based on Linux
下载PDF
导出
摘要 USB存储设备所造成的数据泄漏问题日益严重。对USB存储设备进行访问控制,可以有效阻止USB存储设备的数据泄漏。文中主要研究基于Linux操作系统的USB存储设备访问控制机制,并且从用户态、内核Lsm框架以及驱动这三个不同层次分别提出了三种可行的USB存储设备访问控制机制。在这基础上,结合这三种访问控制机制各自的特点以及关键技术对它们的有效性、可用性进行了分析。作为验证,在Linux平台上实现了这三种机制。三种方法均可以有效地进行USB存储设备访问控制。 USB storage devices lead to data leakage easily.USB storage device access control technology can effectively prevent data leakage by USB storage device.Study the USB storage device access control technology based on the Linux operating system,and propose three possible access control mechanism of USB storage devices from the three levels which are user space,kernel and driver respectively.On this basis,analyze effectiveness and availability according to their characteristics and key technologies.As the demonstration,have implemented three methods based on Linux kernel.All methods can be effective access control for USB storage devices.
出处 《计算机技术与发展》 2012年第3期1-5,共5页 Computer Technology and Development
基金 国家核高基专项(2011ZX01040-001)
关键词 USB存储设备 访问控制 驱动 LSM框架 USB storage device access control driver LSM framework
  • 相关文献

参考文献12

  • 1计世网Ice.妥善管理USB防止数据泄漏[EB/OL].2011-07-01.http://soft.ccw.com.cn/news/htm2008/20080531_437321.shtml. 被引量:1
  • 2Drake D.Writing udev rules[EB/OL].2011-07.http://re-activated.net/writing_udev_rules.html. 被引量:1
  • 3肖林甫等编著..Linux那些事儿之我是USB[M].北京:电子工业出版社,2010:576.
  • 4Wright C,Cowan C,Morris J,et al.Linux Security Modules:General Security Support for the Linux Kernel[EB/OL].2001-09[2011-07].http://lsm.immunix.org. 被引量:1
  • 5Bovet D P,Cesati M.Understanding the Linux Kernel[M].南京:东南大学出版社,2006. 被引量:1
  • 6刘岩,王箭.LSM实现机制的研究[C]//2009通信理论与技术新发展:第十四届全国青年通信学术会议论文集.出版地不详:出版者不详,2009:228-232. 被引量:1
  • 7马桂媛,何大可.通用访问控制框架LSM的研究[J].微机发展,2004,14(7):73-75. 被引量:3
  • 8Wright C,Cowan C,Smalley S,et al.Linux Security ModuleFramework[C]//2002 Ottawa Linux Symposium.Ottawa:[s.n.],2002. 被引量:1
  • 9Smalley S,Vance C,Salamon W.Implementing SELinux as aLinux Security Module[R].[s.l.]:NAI Labs,2002. 被引量:1
  • 10赵亮.Linux安全模块(LSM)简介[M].[s.l.]:IBM De-veloper Works,2003. 被引量:1

二级参考文献11

  • 1Centeno A, Muniswamy- Reddy K - K, Wright C. CSE 508 -Group 13 Project Report LSM for Enhanced Access Control [EB/OL]. http://www. fsl. es. sunysb. edu/~cwright/pubs/rbac. pdf 2003 - 02. 被引量:1
  • 2卿斯汉,刘文清.国家信息安全保障体系建设应当从安全操作系统抓起[EB/OL].www.ccidnet.com/news/other/zhengwen.doc.2002-05. 被引量:1
  • 3Wright C,Cowan C,Smalley S.Linux Security Module Framework[EB/OL].http://lsm.immunix.org/2002-10. 被引量:1
  • 4Spencer R, Smalley S. The Flask Security Architecture: System Support for Diverse Security Policies[A]. Proceeding of the 8th USENIX Security Symposium[C]. [s. l. ]: [s. n. ], 1999.123 - 139. 被引量:1
  • 5La Padula L J. Formal Modeling in a Generalized Framework for Access Control[A]. The IEEE Symp on Security and Privacy[C]. Oakland CA: [ s. n. ], 1990. 被引量:1
  • 6Wright C, Cowan C, Smalley S. Linux Security Modules: General Security Support for the Linux Kernel[ EB/OL]. http://lsm. immunix. org/2002 - 06. 被引量:1
  • 7Smally S, Vance C, Salamon W. Implementing SELinux as a Linux Security Module [ EB/OL ]. http://lsm. immunix. org/2002 - 05. 被引量:1
  • 8Spencer R, Smalley S. The Flask Security Architecture: System Support for Diverse Security Policies[C].Proceedings of the 8th USENIX Security Symposium. Washington, D. C., USA: [s. n.]. 1999: 123-139. 被引量:1
  • 9Loscocco P, Smalley S. Integrating Flexible Support for Security Policies into the Linux Operating System[C].Proceedings of the FREENIX Track: 2001 USENIX Annual Technical Conference. Berkeley, CA, USA: USENIX Association, 2001: 29-42. 被引量:1
  • 10Wright C, Cowan C, Smalley S, et al. Linux Security Modules: General Security Support for the Linux Kernel[C].Proc. of the 11th USENIX Security Symposium. San Francisco, CA, USA: USENIX Association, 2002. 被引量:1

共引文献10

同被引文献35

引证文献5

二级引证文献11

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部