Abstract:With the development of access control technology as well as the diversity of security requirements, the combination of access control model in application is increasingly becoming an important security goal in the design of operating system, which gives new requirements for the unification and case application of the policy description language. Based on the research of the existing security policy language and access control model, this paper presents an access control policy language EGACPL. With the application of structuralized and object-oriented design, EGACPL is easy for developers to understand and use. It unifies the description of policy elements and security rules to support a wide range of access control model, which shows better generality.