信息安全研究 ›› 2025, Vol. 11 ›› Issue (12): 1146-.
王建新1刘昂1刘雯2肖超恩3张磊4王志强5
1(北京电子科技学院网络信息化管理处北京100070) 2(北京电子科技学院密码科学与技术系北京100070) 3(北京电子科技学院电子与通信工程系北京100070) 4(北京电子科技学院教务处北京100070) 5(北京电子科技学院网络空间安全系北京100070)
Wang Jianxin1, Liu Ang1, Liu Wen2, Xiao Chaoen3, Zhang Lei4, and Wang Zhiqiang5
1(Network and Information Management Division, Beijing Electronic Science and Technology Institute, Beijing 100070) 2(Department of Cryptologic Science and Technology, Beijing Electronic Science and Technology Institute, Beijing 100070) 3(Department of Electronic and Communication Engineering, Beijing Electronic Science and Technology Institute, Beijing 100070) 4(Academic Affairs Office, Beijing Electronic Science and Technology Institute, Beijing 100070) 5(Department of Cyberspace Security, Beijing Electronic Science and Technology Institute, Beijing 100070)
摘要: 针对USB(universal serial bus)设备安全防护的热点问题,从访问控制层面探讨USB设备的安全防护措施,提出了属性基RBAC(rolebased access control)的混合扩展安全访问控制模型.基于该模型,通过采取认证和控制相结合方法,设计并实现了USB设备访问控制系统.实验验证了该模型及其访问控制系统的可行性,表明该系统可解决传统USB设备访问控制存在的粗粒度、静态分配等问题.
中图分类号: