|
Security policies for classic multi- support structures, especially generic access control framework (Generalized Frameworkfor Access Control, GFAC) after adding multiple security policies decreased efficiency issues , drawing on artificial immune system (Artificial Immune System, AIS) possess the powerful learning , recognition and memory as well as distributed , self-organizing , diversity and other characteristics , this article will AIS apply some of the principles and mechanisms of access control technology , proposed a common immune mechanism based access control framework (Immunity-based GFAC , IGFAC). The article first describes the architecture of the model and define their access control process model elements ; Secondly, combined with the actual access request regularity and characteristics of the immune system , the model gives the definition of antigens and antibodies , and that data preprocessing , mature cells and memory cell generation , etc. ; Finally , elaborate access control decision section. In this section, when making a decision based on GFAC frequent visits ACI access control efficiency led to the fact that the immune response mechanism is introduced into the model , focusing on the realization that part of several potential immune mechanisms, including immune recognition , immune learning , immune memory , such as a concrete realization of dynamic updates , and gives related algorithms . Simulation results found , IGFAC in time efficiency than GFAC has great advantages, because IGFAC by introducing immune mechanism , not only can save the decision results , reducing the number of access ACI , but also frequent access memory , a faster speed response . Performance estimates indicate that , IGFAC generic access control model while retaining the good characteristics of the premise, not only effectively improve the efficiency of system access control decisions , along with a certain degree of adaptability and diversity characteristics, which promote the creation of a model for condition .
|