Improving software security through an integrated approach

被引:0
|
作者
Gan, Zaobin [1 ]
Wei, Dengwei [1 ]
Varadharajan, Vijay [2 ]
机构
[1] Huazhong Univ Sci & Technol, Wuhan 430074, Peoples R China
[2] Macquarie Univ, Dept Comp, Sydney, NSW 2109, Australia
关键词
system integration; RBAC;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
It has been recognized that the main source of problems with application software security is in most cases that the software is poorly designed and developed with respect to authentication and authorization. Aiming at preventing the security issues in the course of software design and development, this paper presents a framework for integrating a security policy specification with a system function integration. On the basis of the Role-Based Access Control (RBAC) model, this framework moves the responsibility of security through a central authorization management mechanism, Single Sign-On (SSO) access and integration management of security resources. The design can integrate the enterprise's multiple new, developing and existing application systems, and provide end users access these systems as a single system. An application instance of the framework is given in a large-sized enterprise information integrated system as well. The results show that the framework may provide enterprises with uniform and robust enforcement policies to improve the security of sensitive information systems.
引用
收藏
页码:437 / +
页数:2
相关论文
共 50 条
  • [41] Improving the Routing Security in Software-Defined Networks
    Ai, Jianjian
    Guo, Zehua
    Chen, Hongchang
    Cheng, Guozhen
    IEEE COMMUNICATIONS LETTERS, 2019, 23 (05) : 838 - 841
  • [42] Improving Security in Internet of Things with Software Defined Networking
    Vilalta, Ricard
    Ciungu, Raluca
    Mayoral, Arturo
    Casellas, Ramon
    Martinez, Ricardo
    Pubill, David
    Serra, Jordi
    Munoz, Raul
    Verikoukis, Christos
    2016 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2016,
  • [43] Improving Life Cycle Quality of Navy Vessel through Integrated Management Approach
    Ma Qvli
    Xie Zongren
    Lv Jianwei
    ARCHITECTURE, BUILDING MATERIALS AND ENGINEERING MANAGEMENT, PTS 1-4, 2013, 357-360 : 2849 - +
  • [44] Advanced Distribution Management System: Improving Distribution Efficiency through an Integrated Approach
    Devanand P.
    Rastogi R.
    Ahmad M.S.
    Batra T.
    Ohja A.
    Kumar M V.
    Das G.G.
    Ansari M.
    IEEE Power and Energy Magazine, 2020, 18 (01): : 55 - 62
  • [45] IMPROVING THE SECURITY QUALITY OF USE CASE MODELS THROUGH THE APPLICATION OF SOFTWARE REFACTORING USING GENETIC ALGORITHM
    Mumtaz, Haris
    Alshayeb, Mohammad
    Mahmood, Sajjad
    Niazi, Mahmood
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2020, 14 (01): : 31 - 48
  • [46] A parallel approach for improving data security
    Karthikeyan, S.
    Sairam, N.
    Manikandan, G.
    Sivaguru, J.
    Journal of Theoretical and Applied Information Technology, 2012, 39 (02) : 119 - 125
  • [47] A Hybrid Approach to Improving Program Security
    Nembhard, Fitzroy
    Carvalho, Marco
    Eskridge, Thomas
    2017 IEEE SYMPOSIUM SERIES ON COMPUTATIONAL INTELLIGENCE (SSCI), 2017, : 726 - 733
  • [48] Improving security of a chaotic encryption approach
    Li, SJ
    Mou, XQ
    Cai, YL
    PHYSICS LETTERS A, 2001, 290 (3-4) : 127 - 133
  • [49] An approach on improving reliability of software systems
    Yu, HJ
    Zhao, DY
    PROGRESS IN SAFETY SCIENCE AND TECHNOLOGY, VOL II, PT A AND B, 2000, 2 : 104 - 109
  • [50] INCREMENTAL APPROACH TO IMPROVING SOFTWARE TESTING
    Barriault, Steve
    ELECTRONICS WORLD, 2014, 120 (1938): : 12 - +