首页> 外文会议>IEEE international conference on secure integration and reliability improvement >Security Variability Design and Analysis in an Aspect Oriented Software Architecture
【24h】

Security Variability Design and Analysis in an Aspect Oriented Software Architecture

机译:面向方面的安全变异性设计与分析

获取原文

摘要

Developing secure systems at software architecture stage presents additional challenges: a system may demand multiple security capabilities and each security capability can be realized by many security solutions. Effective techniques are needed to assist software architects in modeling and evaluating security capabilities. The benefits of such techniques include enabling software architects to create an optimized security architecture design. This paper presents a modeling approach to support security variability design and analysis. In the approach, security capabilities are modeled as aspects and alternative security solutions are reflected. This allows to effectively perforM interaction analysis among security solutions, e.g., determining supporting or conflicting solutions etc. A Health Watcher system is used to illustrate the approach, where the system is designed with two security aspects, data origin authentication and nonrepudiation. The proposed security variability design approach has been showed to effectively support the interaction analysis between data origin authentication solutions and non-repudiation solutions.
机译:在软件架构阶段开发安全系统呈现额外的挑战:系统可能需要多种安全功能,并且许多安全解决方案可以实现每个安全功能。需要有效的技术来帮助软件架构师建模和评估安全功能。这种技术的好处包括使软件架构师能够创建优化的安全架构设计。本文介绍了支持安全变异性设计和分析的建模方法。在此方法中,安全功能被建模为方面,并反映了替代安全解决方案。这允许有效地执行安全解决方案之间的交互分析,例如,确定支持或冲突解决方案等。使用健康观察系统,用于说明系统设计有两个安全方面,数据原始身份验证和非分层系统的方法。已经显示了所提出的安全可变性设计方法,以有效地支持数据来源认证解决方案和非拒绝解决方案之间的交互分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号