首页> 外文会议>International Conference on Advances in Information Security and Its Applications >Selective Regression Test for Access Control System Employing RBAC
【24h】

Selective Regression Test for Access Control System Employing RBAC

机译:采用RBAC的访问控制系统的选择性回归测试

获取原文

摘要

To provide a selective regression test method for the access control systems which employ role based access control (RBAC) policy. Access control regression test is always tedious and error-prone for financial systems involving complicated constraints, like separation of duty and cardinality constraints. We give the formal definition of RBAC policy change then we propose a test selection framework via policy change and change propagation analysis. Our method provides the confidence that it's only necessary to exercise the selected test cases to guarantee the access control of the system is not broken for the new release. We also describe SACRT, an access control regression test tool which realizes our framework. According to our practical application experience in the realistic financial systems, SACRT demonstrates the effectiveness in reducing the size of the access control regression test suite.
机译:为提供基于角色的访问控制(RBAC)策略的访问控制系统提供一种选择性回归测试方法。访问控制回归测试始终繁琐且易于易于涉及复杂的限制的金融系统,如勤义和基数限制的分离。我们给出了RBAC政策变更的正式定义,然后我们通过策略变更提出测试选择框架并改变传播分析。我们的方法提供了唯一必须锻炼所选测试用例的信心,以保证系统的访问控制未被打破新版本。我们还描述了ACTHT,一种实现我们框架的访问控制回归测试工具。根据我们在现实的金融系统中的实际应用经验,Alrt展示了减少访问控制回归测试套件的大小的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号