Availability Evaluation Method and Implementation Framework of Multilevel Secuerity Systems with Credibility Characteristics

Tan Zhiyong,Liu Duo,Dai Yiqi
DOI: https://doi.org/10.23919/cje.2010.10159181
IF: 1.019
2010-01-01
Chinese Journal of Electronics
Abstract:To evaluate and choose proper credibility evaluation functions and credibility threshold parameters in the Multilevel security (MLS) system based on the CBLP model which was proposed in the authors' previous paper, we devised a sampling statistics method to evaluate the availability of the MLS system, by obtaining the change curve of the subjects' credibility and the rejection ratio of access operations. The validity of this method was evaluated according to the strong law of large numbers and the central limit theorem. The analysis of specific scenarios showed that the result of the sampling statistics method is highly consistent with that of the formal analysis methods. Then an implementation framework based on the availability evaluation method is proposed. Since it is hard to evaluate the availability of the system completely by formalization analysis, the sampling statistics analysis method can provide an important reference for the effective implementation of the CBLP system.
What problem does this paper attempt to address?