首页> 外文会议>International Conference on Instrumentation and Measurement, Computer, Communication and Control >A Method of Software System Security Verification and Evaluation Based on Extension of AADL Model
【24h】

A Method of Software System Security Verification and Evaluation Based on Extension of AADL Model

机译:基于AADL模型扩展的软件系统安全验证与评估方法

获取原文

摘要

In the complex hardware and software hybrid system, the rapid increase of the software scale and the system complexity bring the important challenge to the software security modeling. There are still many functional or semantic problems for traditional modeling language and modeling method, when they are used into the security modeling. Therefore, based on the Architecture Analysis and Design Language (AADL), this paper proposes the AADL error model and extracted the timing fault tree. After comprehensive analysis by using the common factor failure analysis and the hardware and software failure analysis, we can obtain the generation mechanism of danger. By establishing the AADL multi-view security model of the software system, and converting it into the Timed Abstract State Machine (TASM) and the Markov model, this paper forms a method of the security verification and evaluation based on extended AADL model. Finally, we confirm the effectiveness of the proposed method by performing security analysis for an instance.
机译:在复杂的软硬件混合系统中,软件规模的快速增长和系统复杂性给软件安全建模带来了重要的挑战。当将传统建模语言和建模方法用于安全性建模时,仍然存在许多功能或语义问题。因此,本文基于架构分析与设计语言(AADL),提出了AADL错误模型并提取了时序故障树。通过使用公因子故障分析和软硬件故障分析进行综合分析,可以得出危险的产生机理。通过建立软件系统的AADL多视图安全模型,并将其转换为定时抽象状态机(TASM)和马尔可夫模型,形成了一种基于扩展ADL模型的安全验证和评估方法。最后,我们通过对实例进行安全性分析来确认所提出方法的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号