After analyzing the access rights of the processes
this paper presents a data-protection model which will prevent the attack of the malicious processes on the base of minimal privilege principle.This model has reinforced the DAC access control mechanism.When process accesses user’s data
the process has to gain the user’s intention.Based on the task of the process
the user will endow the process minimal rights to access the related data
which will prevent the process from accessing data that are not concerned with the task.Thus it will prevent process destroy user’s data because of overusing access rights.The test result shows that this model can effectively stop the unauthorized access and protect data from destructing or stealing.
关键词
信息安全数据保护用户意愿
Keywords
information securitydata protectionintention of user