针对目前Linux操作系统的主要安全问题,构建了一种基于安全标签的访问控制模型——S-Linux。描述了该模型的结构和工作原理,详细论述了该模型基于LSM机制的实现,对该模型的功能和系统兼容性作了理论分析,并用试验进行了验证,最后总结了该模型的特点和不足。
To solve the primary security problem of Linux, build an access control model based on security label. The paper describes the structure and operational theory of the model, dwells on its realization based on LSM mechanism, analyses in theory the function and system compatibility of the model, experiments on the model correctness, it is the summary of its feature and inadequacy at last.