Action risk analysis for multilevel security model with credibility characteristics

刘雄,谭智勇,刘铎,戴一奇
DOI: https://doi.org/10.16511/j.cnki.qhdxxb.2010.01.028
2010-01-01
Abstract:The BLP (Bell-LaPadula) model and its derivatives are normally used to implement secure policies in multilevel security systems. The derivatives improved the flexibility but also introduce risks which have not been analyzed in detail. This paper investigates the multilevel security model with credibility characteristics to analyze the security of actions using the quantitative risk analysis method to compute the expected damage resulting from an action. The analysis result can be used to evaluate system security and as a criterion to judge the validity of the action. The system can then control the damage and improve flexibility.
What problem does this paper attempt to address?