tizen-security-compliance

Compare original and translation side by side

🇺🇸

Original

English
🇨🇳

Translation

Chinese

Tizen Security Compliance Skill

Tizen安全合规Skill

Trit: 0 (ERGODIC) Category: tizen-infrastructure Author: Tizen Community Source: tizen/security License: Apache-2.0
Trit: 0 (ERGODIC) 分类: tizen-infrastructure 作者: Tizen社区 来源: tizen/security 许可证: Apache-2.0

Description

描述

Maps security requirements to implementation. Coordinates compliance against FIPS 140-3, OCF, CommonCriteria, and Tizen specification.
将安全需求映射到实现方案,协调符合FIPS 140-3、OCF、通用准则(CommonCriteria)以及Tizen规范的合规性工作。

When to Use

使用场景

This is a Tizen security/IoT skill. Use when:
  • Developing Tizen applications (web, native, .NET)
  • Auditing Tizen app security
  • Provisioning TizenRT/ARTIK IoT devices
  • Implementing Tizen compliance
  • Analyzing SMACK policies or Cynara access control
这是一款Tizen安全/IoT技能。适用于以下场景:
  • 开发Tizen应用(Web、原生、.NET)
  • 审计Tizen应用安全性
  • 配置TizenRT/ARTIK IoT设备
  • 实现Tizen合规性
  • 分析SMACK策略或Cynara访问控制

Tizen Security Model

Tizen安全模型

SMACK (Simplified Mandatory Access Control Kernel)

SMACK(简化强制访问控制内核)

  • Linux kernel 3.12+ mandatory access control
  • Process isolation via labels
  • Prevent inter-app resource access
  • Linux内核3.12及以上版本的强制访问控制机制
  • 通过标签实现进程隔离
  • 阻止应用间的资源访问

Cynara

Cynara

  • Fast privilege access control service
  • Policy-based permission checking
  • External agent integration
  • 快速权限访问控制服务
  • 基于策略的权限检查
  • 支持外部Agent集成

KeyManager

KeyManager

  • Central secure storage repository
  • Password-protected data access
  • Certificate and key management
  • 集中式安全存储库
  • 受密码保护的数据访问
  • 证书与密钥管理

Tizen Manifest

Tizen清单

  • Privilege declarations (public, partner, platform)
  • App sandboxing configuration
  • Resource access specifications
  • 权限声明(公共、合作伙伴、平台)
  • 应用沙箱配置
  • 资源访问规范

Related Skills

相关技能

  • manifest-privilege-validator
  • smack-policy-auditor
  • tizen-cve-scanner
  • sandbox-escape-detector
  • cynara-policy-checker
  • iot-device-provisioning
  • manifest-privilege-validator
  • smack-policy-auditor
  • tizen-cve-scanner
  • sandbox-escape-detector
  • cynara-policy-checker
  • iot-device-provisioning

References

参考资料

SDF Interleaving

SDF交叉关联

This skill connects to Software Design for Flexibility (Hanson & Sussman, 2021):
本技能与《Software Design for Flexibility》(Hanson & Sussman, 2021)相关联:

Primary Chapter: 10. Adventure Game Example

主要章节:第10章 冒险游戏示例

Concepts: autonomous agent, game, synthesis
概念: 自主Agent、游戏、综合

GF(3) Balanced Triad

GF(3)平衡三元组

tizen-security-compliance (−) + SDF.Ch10 (+) + [balancer] (○) = 0
Skill Trit: -1 (MINUS - verification)
tizen-security-compliance (−) + SDF.Ch10 (+) + [balancer] (○) = 0
技能Trit: -1(MINUS - 验证)

Secondary Chapters

次要章节

  • Ch6: Layering
  • 第6章:分层

Connection Pattern

关联模式

Adventure games synthesize techniques. This skill integrates multiple patterns.
冒险游戏综合多种技术,本技能整合了多种模式。