针对目前访问控制模型在系统的安全实现方面存在的不足,在RABC的基础上,提出了可信操作环境下基于可信验证的DBMS访问控制模型.该模型满足系统的保密性和完整性需求,最大程度实现信息双向流动,同时支持最小特权安全特性,是一个权限分配灵活的访问控制模型。
Actual access control model can't realize the system's security effectively.It presents an access control model for DBMS based on credible validation in trusted operation environment.The model can satisfy the system's requirements of security and integrality,realize the bidirectional flow of information at most,and also support the least privilege security characteristic.It is a flexible access control model on privilege distributing.