摘要
针对域间网络环境中协同组合应用的策略合成效率与有效性问题,基于粒逻辑的组合运算推理,提出了一种基于粒结构逻辑的域间授权策略动态合成方法(GiDAPGLCM)。基于策略行为能力属性元素约减与合并,提出了域间授权策略行为能力的属性粒合成算法、权限粒合成算法和全局策略动态合成算法。GiDAPGLCM方法通过域间协同服务组合关系确定策略的动态合成模式,遵循安全管理规则实施对策略合成的约束。策略合成理论与效率分析表明,该方法能提供较高的策略合成效率,保障策略合成的正确性,并具备较高的动态适应能力。
To improve the efficiency and the validity of the policy compositive of cooperate combination applications in the inter-domain net environment, and based on compositive reasoning algorithms of the granular logic, this paper presents the GiDAPGLCM. Based on the reduction and combination of the behaviors and abilities policy, this paper put forward the attribute granular compositive arithmetic of the inter-domain authorization policy behaviors and abilities, the compositive arithmetic of the permissions granula and the dynamic compositive arithmetic of the overall policy. From the inter-domain cooperation services combination connection, the GiDAPGLCM ascertains the dynamic compositive mode of the policy, and restricts the policy compositive by following the security management regulation. The policy compositive theory and efficiency analysis show that GiDAPGL- CM can offer an upper policy compositive efficiency, ensure the correctness of the policy compositive, and it also possesses an upper dynamic adaptive capacity.
出处
《信息工程大学学报》
2010年第3期345-350,共6页
Journal of Information Engineering University
基金
国家863计划资助项目(2008104)
关键词
粒逻辑
域间授权
策略集
granular logic
inter-domain authorization
policy set