杨赞1,2, 王建新2, 杨林2, 刘晓明1, 魏真真3, 陈洁坤4   

  1. 1. 解放军理工大学 指挥自动化学院, 南京 270007;
    2. 总参61研究所, 北京 100113;
    3. 中国人民解放军6104*部队, 北京 100094;
    4. 中国人民解放军316医院, 北京 100094
  • 收稿日期:2012-09-02 出版日期:2014-01-01 发布日期:2014-01-01
  • 作者简介:杨赞(1983-),男,工程师,博士研究生.研究方向:宽带信息网络,网络安全.E-mail:woshiyangzan@163.com
Fused access control mechanism based on usage control in multi-domain environment

YANG Zan1,2, WANG Jian-xin2, YANG Lin2, LIU Xiao-ming1, WEI Zhen-zhen3, CHEN Jie-kun4   

  1. 1. Institute of Command Automation, PLA University of Science and Technology, Nanjing 210007, China;
    2. Institute of EESEC of China, Beijing 100113, China;
    3. The 6104* Troop of PLA, Beijing 100094, China;
    4. The 316 Hospital of PLA, Beijing 100094, China
  • Received:2012-09-02 Online:2014-01-01 Published:2014-01-01



关键词: 计算机应用, 多域网络, 使用控制, 属性, 信任, 任务描述


It is particular difficult to make reasonable access control in multi-domain networks. In order to meet unexpected and dynamic nature of inter-domain access and to improve the accuracy and comprehensiveness of the judgment, this paper proposes a fused access control mechanism ATM-UCON based on the SRM model of usage control. It realizes the three authorization modules to attribute-based judgment, trust-based judgment, and mission-description-based judgment. It also provides a feasible implementation mechanism of UCON.

Key words: computer application, multi-domain network, usage control, attribute, trust, mission-description


