针对嵌入式计算机应用领域中越来越突出的信息安全问题。本文以uCOSII 操作系统为基础,在其上增加了强制访问控制MAC 模块。模块参照BLP 安全模型,根据uCOSII 特性设计出BLP 修正模型,实现了对系统的强制存取控制。 关键字:强制访问控制安全模型 安全操作系统 Abstract: For the more and more serious problem of computer information protection in the application of embedded computer system, the paper design and implement a mandatory access control module based on uCOSII operation system. Abided by the Bell-LaPadula module, the MAC module make some modification for the uCOSII and implement the mandatory access control in the operation system. Keyword: mandatory access control; security module; security operation system