XUE Haiwei, ZHANG Yunliang, GUO Zhien, et al., “A Multilevel Security Model for Private Cloud,” Chinese Journal of Electronics, vol. 23, no. 2, pp. 232-235, 2014,
Citation: XUE Haiwei, ZHANG Yunliang, GUO Zhien, et al., “A Multilevel Security Model for Private Cloud,” Chinese Journal of Electronics, vol. 23, no. 2, pp. 232-235, 2014,

A Multilevel Security Model for Private Cloud

  • Received Date: 2012-10-01
  • Rev Recd Date: 2013-03-01
  • Publish Date: 2014-04-05
  • Towards data leak caused by misoperation and malicious inside users, we proposed a multilevel security model based on Bell-lapadula (BLP) model. In our model each subject was assigned with a security level. Subjects can read objects only when their security levels are not less than objects' security levels, and subjects can write objects only when their security levels are not more than objects' security levels. The current security level in our model can be dynamically changed when users read sensitive data, since users can access data with different security levels in private cloud. Our model use mandatory access control method to control user's operation and can guarantee that users can not leak sensitive data after they read them. Our model can be proved secure by mathematical method, and we implemented a prototype system of our model and the experimental results show that it is secure.
  • loading
  • R. Richardson, "2010/2011 computer crime and security survey", Computer Security Institute, pp.1-42, 2011.
    P. Watson, "A multi-level security model for partitioning workflows over federated clouds", Journal of Cloud Computing, Vol.1, No.1, pp.1-15, 2012.
    J.C. Mace, Van Moorsel A., P. Watson, "The case for dynamic security solutions in public cloud workflow deployments", IEEE/IFIP 41st International Conference on Dependable Systems and Networks Workshops (DSN-W), Hong Kong, China, pp.111-116, 2011.
    D.E. Bell, L.J. LaPadula, "Secure Computer Systems: Mathematical Foundations[R]", USA: MITRE CORP BEDFORD MA, 1973.
    D.E. Bell, "Looking Back at the Bell-LaPadula Model", Proceedings of the Annual Computer Security Applications Conference, Tucson, Arizona, USA, pp.337-351, 2005.
    Si Tiange, Zhang Raoxue, Dai Yiqi, "L-BLP security model in local area network", Acta Electronica Sinica, Vol.35, No.5, pp.1005-1008, 2007.
    Haiwei Xue, Xiong Liu, Yiqi Dai, "A privacy protection model on internal networks", Proc. of 13th IEEE Joint International Computer Science and Information Technology Conference, Chongqing, China, pp.1-5, 2011.
  • 加载中

Catalog

    通讯作者: 陈斌, bchen63@163.com
    • 1. 

      沈阳化工大学材料科学与工程学院 沈阳 110142

    1. 本站搜索
    2. 百度学术搜索
    3. 万方数据库搜索
    4. CNKI搜索

    Article Metrics

    Article views (580) PDF downloads(1581) Cited by()
    Proportional views
    Related

    /

    DownLoad:  Full-Size Img  PowerPoint
    Return
    Return