• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2006, Vol. 28 ›› Issue (7): 7-10.

• 论文 • 上一篇    下一篇

一个安全文件系统的半形式化功能规范设计

韩乃平[1] 刘文清[2]   

  • 出版日期:2006-07-01 发布日期:2010-05-20

  • Online:2006-07-01 Published:2010-05-20

摘要:

形式化、半形式化规范的理论和实践是高安全等级操作系统设计所必须解决的问题,但我国高安全等级操作系统形式化设计方面十分薄弱,没有实践过程和相关理论的技术积累.本文借助Lapadula给出的规则集建模方法,基于Linux系统调用给出了一个实际开发的安全文件系统NeoFs的顶层功能规范的方法和过程.

关键词: 安全操作系统设计 安全文件系统 半形式化 功能规范

Abstract:

The theory and application of formal or partial-formal specification are the key to designing high-level secure operating systems, However, the founda tion and experience of designing formal high-level secure operating systems in our country are deficient, and no practical development process and relat  ive design principle are available. In this paper, using the rule-set modeling proposed by Lapadula, we introduce a method and its process to develop th   e top specification of a secure file system NeoFs based on the Linux system invocation.

Key words: secure operating system design secure file system parl-forrnalizaiton function specification