A security characterisation framework for trustworthy component based software systems

被引:15
|
作者
Khan, KM [1 ]
Han, J [1 ]
机构
[1] Univ Western Sydney, Sch Comp & Informat Technol, Sydney, NSW 1797, Australia
关键词
D O I
10.1109/CMPSAC.2003.1245337
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper explores how to characterise security properties of software components, and how to reason about their suitability for a trustworthy compositional contract. Our framework provides an explicit opportunity for software composers as well as software components to test a priori security properties of software components in a system composition. The proposed framework uses logic programming as a tool to represent security properties of atomic components and reason about their compositional matching with other components. This enables software components as well as composers to 'test' possible matches and mismatches between the security properties of the candidate components and the security requirements of the enclosing application System.
引用
收藏
页码:164 / 169
页数:6
相关论文
共 50 条
  • [1] An ontology framework for managing security attacks and defences in component based software systems
    Vorobiev, Artem
    Han, Jun
    Bekmamedova, Nargiza
    [J]. ASWEC 2008: 19TH AUSTRALIAN SOFTWARE ENGINEERING CONFERENCE, PROCEEDINGS, 2008, : 552 - 561
  • [2] A process framework for characterising security properties of component-based software systems
    Khan, KM
    Han, J
    [J]. 2004 AUSTRALIAN SOFTWARE ENGINEERING CONFERENCE, PROCEEDINGS, 2004, : 358 - 367
  • [3] Security characterisation and integrity assurance for component-based software
    Han, J
    Zheng, YL
    [J]. INTERNATIONAL CONFERENCE ON SOFTWARE METHODS AND TOOLS, PROCEEDING, 2000, : 61 - 66
  • [4] Special issue: Component-based software engineering of trustworthy embedded systems
    Crnkovic, Ivica
    Heineman, George T.
    Schmidt, Heinz W.
    Stafford, Judith
    Wallnau, Kurt
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2007, 80 (05) : 641 - 642
  • [5] Framework for Trustworthy Software Development
    Bose, R. P. Jagadeesh Chandra
    Singi, Kapil
    Kaulgud, Vikrant
    Phokela, Kanchanjot Kaur
    Podder, Sanjay
    [J]. 2019 34TH IEEE/ACM INTERNATIONAL CONFERENCE ON AUTOMATED SOFTWARE ENGINEERING WORKSHOPS (ASEW 2019), 2019, : 45 - 48
  • [6] Component-based hardware/software co-verification for building trustworthy embedded systems
    Xie, Fei
    Yang, Guowu
    Song, Xiaoyu
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2007, 80 (05) : 643 - 654
  • [7] An Ontology-Based Framework Model for Trustworthy Software Evolution
    Li, Ji
    Liu, Chunmei
    Li, Zhiguo
    [J]. ADVANCED DATA MINING AND APPLICATIONS (ADMA 2010), PT II, 2010, 6441 : 537 - 544
  • [8] A component-based development process for trustworthy systems
    Mohammad, Mubarak
    Alagar, Vangalur
    [J]. JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2012, 24 (07) : 815 - 835
  • [9] Constructive extensibility of trustworthy component-based systems
    Dihego, Jose
    Sampaio, Augusto
    Oliveira, Marcel
    [J]. 30TH ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, VOLS I AND II, 2015, : 1808 - 1814
  • [10] A test framework for CORBA* component model-based software systems
    Batteram, HJ
    Romijn, WA
    [J]. BELL LABS TECHNICAL JOURNAL, 2003, 8 (03) : 15 - 29