【24h】

Testing of PolPA authorization systems

机译:测试POLPA授权系统

获取原文

摘要

The implementation of an authorization system is a difficult and error-prone activity that requires a careful verification and testing process. In this paper, we focus on testing the implementation of the PolPA authorization system and in particular its Policy Decision Point (PDP), used to define whether an access should be allowed or not. Thus exploiting the PolPA policy specification, we present a fault model and a test strategy able to highlight the problems, vulnerabilities and faults that could occur during the PDP implementation, and a testing framework for the automatic generation of a test suite that covers the fault model. Preliminary results of the test framework application to a realistic case study are presented.
机译:授权系统的实现是需要仔细验证和测试过程的困难和错误的活动。 在本文中,我们专注于测试Polpa授权系统的实施,特别是其策略决策点(PDP),用于定义是否应允许访问访问。 从而利用POLPA策略规范,我们展示了一个故障模型和一个测试策略,能够突出显示PDP实现中可能发生的问题,漏洞和故障,以及用于自动生成故障模型的测试套件的测试框架 。 提出了测试框架应用于现实案例研究的初步结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号