首页> 外文会议>Enabling Technologies: Infrastructure for Collaborative Enterprises, 2002. WET ICE 2002. Proceedings. Eleventh IEEE International Workshops on >Integrating a flexible modeling framework (FMF) with the network security assessment instrument to reduce software security risk
【24h】

Integrating a flexible modeling framework (FMF) with the network security assessment instrument to reduce software security risk

机译:将灵活的建模框架(FMF)与网络安全评估工具集成在一起,以降低软件安全风险

获取原文

摘要

The network security assessment instrument is a comprehensive set of tools that can be used individually or collectively to ensure the security of network aware software applications and systems. Using the various tools collectively provide a distinct advantage for assuring the security of software and systems. Each tool's resulting output provides feedback into the other tools. Thus, more comprehensive assessment results are attained through the leverage each tool provides to the other when they are employed in concert. Previous portions of this work were presented at the IEEE Wet Ice 2000 and 2001 Workshops and are printed in those proceedings. This paper presents a portion of an overall research project on the generation of the network security assessment instrument to aid developers in assessing and assuring the security of software in the development and maintenance lifecycles. This portion, the flexible modeling framework (FMF), focuses on modeling requirements and early lifecycle designs to discover vulnerabilities that result from interaction between system components that are either under development in a new system or proposed as additions to an existing system. There are early indications that this new approach, the flexible modeling framework (FMF), has promise in the areas of network security as well as other critical areas such as system safety. Information about the overall research effort regarding network security is available at http://security.jpl.nasa.gov/rssr.
机译:网络安全评估工具是一套全面的工具,可以单独或共同使用以确保网络感知软件应用程序和系统的安全。共同使用各种工具可为确保软件和系统的安全性提供明显的优势。每个工具的输出结果都提供了对其他工具的反馈。因此,通过将每种工具共同使用时可以提供给其他工具的杠杆作用,可以获得更全面的评估结果。这项工作的先前部分在IEEE Wet Ice 2000和2001研讨会上进行了介绍,并印在这些论文集中。本文介绍了有关网络安全评估工具生成的总体研究项目的一部分,以帮助开发人员评估和确保开发和维护生命周期中软件的安全性。这部分是灵活的建模框架(FMF),着重于建模要求和早期生命周期设计,以发现由新系统中正在开发或建议作为现有系统的补充的系统组件之间的交互作用而导致的漏洞。早期迹象表明,这种新的方法,即灵活建模框架(FMF),在网络安全以及其他关键领域(例如系统安全)方面具有希望。有关网络安全的整体研究工作的信息,请访问http://security.jpl.nasa.gov/rssr。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号