首页> 外文会议>IEEE International Requirements Engineering Conference >Trade-off Analysis between Security Policies for Java Mobile Codes and Requirements for Java Application
【24h】

Trade-off Analysis between Security Policies for Java Mobile Codes and Requirements for Java Application

机译:Java Mobile Codes和Java应用要求的安全策略之间的权衡分析

获取原文

摘要

We propose a method for analyzing trade-off between security policies for Java mobile codes and requirements for Java application. We assume that mobile codes are downloaded from different sites, they are used in an application on a site, and their functions are restricted by security policies on the site. We clarify which functions can be performed under the policies on the site using our tool[l]. We also clarify which functions are needed so as to meet the requirements for the application by goal oriented requirements analysis(GORA). By comparing functions derived from the policies and functions from the requirements, we can find conflicts between the policies and the requirements, and also find vagueness of the requirements. By using our tool and GORA again, we can decide which policies should be modified so as to meet the requirements. We can also decide which requirements should be abandoned so as to meet policies which can not be changed.
机译:我们提出了一种用于分析Java Mobile Codes和Java应用程序要求的安全策略之间的权衡的方法。我们假设移动代码从不同的站点下载,它们用于站点上的应用程序,它们的功能受到站点上的安全策略限制。我们澄清了哪些函数可以使用我们的工具[l]在网站上的策略下执行。我们还澄清需要哪些功能,以满足目标面向目标的需求分析(Gora)对申请的要求。通过比较从策略和函数的函数从要求进行比较,我们可以在政策和要求之间找到冲突,并且还发现要求的模糊性。通过使用我们的工具和Gora,我们可以决定修改哪些策略以满足要求。我们还可以决定应抛弃哪些要求,以满足无法更改的政策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号