为了保障信息的安全性和保密性,对信息的访问和操作需要遵循一定的安全策略。安全标签是实现多级安全系统的基础,是实施强制访问控制安全策略的前提。对基于安全标签的强制访问控制模型的实现方案和技术进行了较为详细地分析,主要从安全标签的定义、组成、存储、比较算法和实现等几个方面进行了讨论。鉴于安全标签在高安全等级数据库系统中的重要作用,并在自行开发的具有自主版权的数据库管理系统LogicSQL上实施了该方案,使其至少达到B1级别安全。
In order to protect security and secrecy of information in the computer information systems, in general, we need to follow some security polices to access and handle information. Security label is a basis of implementing multi-level security system and man- datory access control security policy. Scheme and technologies are analyzed to fulfill the mandatory access control model based on security label, and few aspects of security label are discussed, including definition, composition, storage structure, compare algorithm, implementation. Because security label plays an important role in highly secured database system. The scheme for an independent copyright database management system LogicSQL is implemented. The B 1 security level for LogicSQL database is designed.