首页> 外文会议>International Conference on Security Management >Modeling the Security Objectives According to the Common Criteria Methodology
【24h】

Modeling the Security Objectives According to the Common Criteria Methodology

机译:根据公共标准方法建模安全目标

获取原文

摘要

The paper discusses the selected issues of the IT security development process according to the Common Criteria, focusing on its security objectives elaboration stage. Meeting these objectives by the IT product or system, called there target of evaluation (TOE), decide about its assurance. The security objectives are elaborated on the basis of security problem definition and are used to specify security requirements to be satisfied by the security functions, implemented in the TOE at the claimed and evaluated assurance level (EAL). Thus the preciseness of the security objectives specification influence the design quality and the TOE assurance. The paper presents the general model of the security objectives, its elaboration processes and the defined specification means. The model is UML/OCL-based, thus it can be better understood by a wide community of UML users. The paper deals with more extensive works concerning IT security modeling and the development of computer-aided tools.
机译:本文根据公共标准讨论了IT安全开发过程的选定问题,重点关注其安全目标阐述阶段。通过IT产品或系统达到这些目标,称为评估目标(脚趾),决定其保证。安全目标是在安全问题定义的基础上阐述的,用于指定在所要求保护的和评估保证水平(EAL)中在脚趾中实现的安全功能的安全要求。因此,安全目标规范的确切影响了设计质量和脚趾保证。本文介绍了安全目标的一般模型,其精制过程和定义的规范意味着。该模型是基于UML / OCL的,因此通过广泛的UML用户可以更好地理解它。本文对IT安全建模和计算机辅助工具的开发进行了更广泛的作品。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号