北京大学学报(自然科学版)

信息系统组合安全强度和脆弱性分析

段云所,刘欣,陈钟   

  1. 北京大学信息科学技术学院计算机科学技术系,北京,100871
  • 收稿日期:2004-02-23 出版日期:2005-05-20 发布日期:2005-05-20

Analysis on Combined Security Efficiency and Vulnerability for Information System Security Evaluation

DUAN Yunsuo, LIU Xin, CHEN Zhong   

  1. Department of Computer Science and Technology, School of Electronics Engineering and Computer Science, Peking University, Beijing, 100871
  • Received:2004-02-23 Online:2005-05-20 Published:2005-05-20

摘要: 从计算机信息系统安全评测的需求和现状出发,探讨了依据国家标准和国际标准对信息系统安全等级进行评测的关键问题。核心是讨论计算机信息系统各安全功能组件组合后对系统安全强度的影响和抗攻击强度级别划分的依据。

关键词: 信息系统, 安全等级, 评测, 标准

Abstract: To meet the requirements of information system security evaluation, some key technologies are discussed in terms of international and domestic standards. Especially, the combined efficiency of different security functional components and anti-attack strength classification are described in detail.

Key words: information system, security level, evaluation, criterion

中图分类号: