【24h】

A Qualitative Evaluation of Security Patterns

机译:对安全模式的定性评估

获取原文

摘要

Software Security has received a lot of attention during the last years. It aims at preventing security problems by building software without the so-called security holes. One of the ways to do this is to apply specific patterns in software architecture. In the same way that the well-known design patterns for building well-structured software have been used, a new kind of patterns, called security patterns have emerged. The way to build secure software is still vague, but guidelines for this have already appeared in the literature. Furthermore, the key problems in building secure software have been mentioned. Finally, threat categories for a software system have been identified. Based on these facts, it would be useful to evaluate known security patterns based on how well they follow each guideline, how they encounter with possible problems in building secure software and for which of the threat categories they do take care of.
机译:在过去几年中,软件安全性受到了很多关注。它旨在通过在没有所谓的安全漏洞的情况下构建软件来防止安全问题。这样做的一种方法是在软件架构中应用特定模式。以与建立结构良好的软件的众所周知的设计模式已被使用,已经出现了一种新的模式,称为安全模式。构建安全软件的方式仍然模糊,但这已经出现在文献中。此外,提到了建立安全软件的关键问题。最后,已经确定了软件系统的威胁类别。基于这些事实,根据他们遵循每个指导方式,如何在构建安全软件和他们所做的哪些威胁类别中遇到可能存在的问题,评估已知的安全模式将是有用的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号