Building Secure Applications using Pattern-Based Design Fragments

被引:1
|
作者
Rimba, Paul [1 ,2 ]
Zhu, Liming [1 ,2 ]
Xu, Xiwei [1 ]
Sun, Daniel [1 ,2 ]
机构
[1] NICTA, Sydney, NSW, Australia
[2] Univ New South Wales, Sch Comp Sci & Engn, Sydney, NSW, Australia
关键词
Security; Composition; Verification; Operations;
D O I
10.1109/SRDSW.2015.12
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Developing and operating a complex secure application with high assurance is difficult and requires experts. Security patterns and best practices have been proposed to assist architects in designing secure applications. However, these are usually written independently of the underlying platforms and operating environment. This leads to a gap between patterns and the platforms, and does not directly support the design-level analysis and verification of systems to be built on those platforms. We propose an approach to incrementally build an application design using design fragments, which are specializations of patterns for target platforms. Design fragments can be composed and reused during design, and directly support design-level security analyses and operation level concerns. We apply this approach in a case study of the design and analysis of a smart electricity meter. We show how the approach can be used to iteratively address threats.
引用
收藏
页码:19 / 24
页数:6
相关论文
共 50 条
  • [21] Pattern-based Preservation of Building Blocks in Genetic Algorithms
    Kameya, Yoshitaka
    Prayoonsri, Chativit
    2011 IEEE CONGRESS ON EVOLUTIONARY COMPUTATION (CEC), 2011, : 2578 - 2585
  • [22] PSiGene:: A pattern-based component generator for building simulation
    Schütze, M
    Riegel, JP
    Zimmermann, G
    THEORY AND PRACTICE OF OBJECT SYSTEMS, 1999, 5 (02): : 83 - 95
  • [23] Pattern-based framework for multimedia distributed applications
    Gievska, S
    Jordanoski, S
    Trajkovic, V
    Davcev, D
    TOOLS 23 - TECHNOLOGY OF OBJECT-ORIENTED LANGUAGES AND SYSTEMS, PROCEEDINGS, 1998, : 31 - 36
  • [24] Pattern-based generation of customized, flexible building simulators
    Riegel, JP
    Schutze, M
    Zimmermann, G
    CAAD FUTURES 1997, 1997, : 285 - 298
  • [25] A pattern-based framework for the exploration of design alternatives
    Kunert, Tibor
    Kroemker, Heidi
    HUMAN-COMPUTER INTERACTION, PT 1, PROCEEDINGS: INTERACTION DESIGN AND USABILITY, 2007, 4550 : 1119 - +
  • [26] Pattern-based design for intelligent mobile agents
    Ojha, Ananta Charan
    Pradhan, Sateesh Kumar
    Patra, Manas Ranjan
    2007 INNOVATIONS IN INFORMATION TECHNOLOGIES, VOLS 1 AND 2, 2007, : 239 - +
  • [27] Application and evaluation of a pattern-based building energy model calibration method using public building datasets
    Sun, Kaiyu
    Hong, Tianzhen
    Kim, Janghyun
    Hooper, Barry
    BUILDING SIMULATION, 2022, 15 (08) : 1385 - 1400
  • [28] Application and evaluation of a pattern-based building energy model calibration method using public building datasets
    Kaiyu Sun
    Tianzhen Hong
    Janghyun Kim
    Barry Hooper
    Building Simulation, 2022, 15 : 1385 - 1400
  • [29] A rigorous foundation for pattern-based design models
    Kim, SK
    Carrington, D
    ZB 2005: FORMAL SPECIFICATION AND DEVELOPMENT IN Z AND B, PROCEEDINGS, 2005, 3455 : 242 - 261
  • [30] Command Pattern-based MOF Design and Testing
    Liu, Minghui
    Zhou, Chenchu
    Wu, Xinfeng
    Lv, Jiyuan
    Liu, Yusheng
    2022 7TH INTERNATIONAL CONFERENCE ON CONTROL, ROBOTICS AND CYBERNETICS, CRC, 2022, : 64 - 68