信息网络安全 ›› 2017, Vol. 17 ›› Issue (6): 22-29.doi: 10.3969/j.issn.1671-1122.2017.06.004

• 技术研究 • 上一篇    下一篇

P2P网络中基于准入度的任务访问控制模型

刘浩1, 2, 陈志刚1, 张连明3   

  1. 1. 中南大学信息科学与工程学院,湖南长沙 410083;
    2. 湖南人文科技学院信息学院,湖南娄底 417000;
    3.湖南师范大学物理与信息科学学院,湖南长沙 410081
  • 收稿日期:2017-04-15 出版日期:2017-06-20
  • 通讯作者: 刘浩 lhkd0407@126.com
  • 作者简介:刘浩(1977-),男,湖南,副教授,博士,主要研究方向为计算机网络安全;陈志刚(1964-),男,湖南,教授,博士,主要研究方向为并行计算与分布式系统;张连明(1972-),男,湖南,教授,博士,主要研究方向为复杂网络与网络演算。
  • 基金资助:
    国家自然科学基金[61572191,61571188 ]; 湖南省自然科学基金[2017JJ2124]; 湖南省教育厅优秀青年科研项目[15B125]; 湖南省计算机应用技术重点建设学科资助项目

A Task-based Access Control Model of Peer-to-Peer Network Based on Admission Degree

LIU Hao1, 2, CHEN Zhigang1, ZHANG Lianming3   

  1. 1. School of Information Science and Engineering, Central South University, Changsha Hunan 410083, China;
    2. Institute of Information, Hunan University of Humanities, Science and Technology, Loudi Hunan 417000, China;
    3.College of Physics and Information Science, Hunan Normal University, Changsha Hunan 410081, China
  • Received:2017-04-15 Online:2017-06-20

摘要: P2P网络的自组织开放性等特点给系统带来一系列的安全隐患,然而传统的访问控制模型并不能适用于分布式管理的P2P网络。针对该问题,文章给出了一种新颖的任务访问控制模型。首先,基于多维信任云模型得出主体节点对目标节点的信任度。然后,采用风险评估理论对本次共享交互进行风险评估。最后,该模型参考了社会网络中人际交互决策的基本原理,从信任度与风险值两个角度得出目标节点的访问准入度。根据目标节点的访问准入度,该模型对任务访问控制模型进行了改进,以实现主体节点对访问权限的动态管理。引入该模型后,降低了非合作节点对P2P系统的影响,提高了系统的交互成功率,增强了P2P网络的安全性。

关键词: P2P网络, 信任, 风险, 任务, 访问准入度

Abstract: The features opening and self-organization of P2P network brings a series of security risks to it, however the traditional access control model is not suitable for P2P network the distributed management system. This paper proposes a novel task-based access control mode of Peer-to-Peer network. Firstly, the subject node evaluates the trust of object node by means of multidimensional trust cloud model, and calculates the risk value of this sharing transaction using the theory of risk evaluation. In the end, the basic principles of interpersonal interaction in social networks are provided references in this model, and the admission degree of object node is obtained by synthesizing the trust of object node and the risk value of this shar-ing transaction. According to the access degree of the target node, the task access control model is improved in this model, and the dynamic management of access rights is realized. After introducing the model, the in-fluence of non cooperative nodes is reduced in P2P system, and the success ratio of the system is improved, and the security of P2P network is enhanced.

Key words: peer-to-peer network, trust, risk, task, admission degree

中图分类号: