• DocumentCode
    2258860
  • Title

    Research on Validity Evaluation of Mandatory Access Control Policy under LSM Framework

  • Author

    Wang, Gaozu ; Li, Weihuai ; Li, Wenbin

  • Author_Institution
    Sch. of Comput. Sci., Northwestern Polytech. Univ., Xi´´an, China
  • fYear
    2010
  • fDate
    11-14 Dec. 2010
  • Firstpage
    306
  • Lastpage
    309
  • Abstract
    Mandatory access control is an important technology to achieve security-enhanced operating system, and access control policy is core to Mandatory Access Control. The security policy generation tool is given by current mainstream of mandatory access control system, while it is lack of assessment of effectiveness of security policies. This paper analyzes the implementation method of mandatory access control based on LSM, proposes a solution based on system calls to evaluate validity of mandatory access control policy, outlines its concrete realization and verifies its effectiveness from a practical view.
  • Keywords
    Linux; authorisation; LSM framework; Linux security module; mandatory access control policy; security policy generation tool; security-enhanced operating system; validity evaluation; Evaluation of Security Policy; Linux Security Module Framework; Mandatory Access Control; Security Policy;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Security (CIS), 2010 International Conference on
  • Conference_Location
    Nanning
  • Print_ISBN
    978-1-4244-9114-8
  • Electronic_ISBN
    978-0-7695-4297-3
  • Type

    conf

  • DOI
    10.1109/CIS.2010.73
  • Filename
    5696287