计算机与现代化 ›› 2013, Vol. 1 ›› Issue (4): 198-201,.doi: 10.3969/j.issn.1006-2475.2013.04.049

• 信息安全 • 上一篇    下一篇

Qubes安全操作系统的研究和改进

黄梦玲,翟正军   

  1. 西北工业大学计算机学院,陕西 西安 710072
  • 收稿日期:2012-11-30 修回日期:1900-01-01 出版日期:2013-04-17 发布日期:2013-04-17

Research and Improvement of Qubes Security Operating System

HUANG Meng-ling, ZHAI Zheng-jun   

  1. School of Computer Science, Northwestern Polytechnical University, Xi’an 710072, China
  • Received:2012-11-30 Revised:1900-01-01 Online:2013-04-17 Published:2013-04-17

摘要: 传统上,Linux操作系统通过采用自主访问控制、强制访问控制、安全审计、禁止客体重用、入侵检测等不同层次的安全技术,提高Linux系统安全。本文深入解析操作系统Qubes,它是一种基于Linux操作系统开发的安全操作系统。本文以Qubes操作系统为平台,主要论述Qubes操作系统的安全机制、系统方案设计和主要功能构件;同时在原有操作系统上对其进行改进,增加Qubes的中文支持功能。Qubes新的架构设计使Linux系统的整体安全性有了质的飞跃。

关键词: Qubes, 安全机制, 架构

Abstract: Traditionally, the Linux operating system makes use of different levels of security technologies, such as discretionary access control, mandatory access control, security audit, prohibited object reuse, intrusion detection, to improve the security of Linux system. This article provides insight to analyze a new operating system which is called Qubes. It is a secure operating system based on the development of Linux operating system. Mainly, the article researches on the security mechanism principle, the system program design and functional components of Qubes operating system. Additionally, it adds Chinese language support function to improve the Qubes operating system. The new architecture design makes a great improvement on the overall security of the Linux system.

Key words: Qubes, security mechanism, architecture

中图分类号: