pdfreaders.org

Model-based Conformance Testing of Security Properties

Achim D. Brucker und Lukas Brügger

Modern systems need to comply to large and complex security policies that need to enforced at runtime. This runtime enforcement needs to happen on different levels, e.g., ranging from high level access control models to firewall rules.

We present an approach for the modular specification of security policies (e.g., access control policies, firewall policies). Based on this formal model, i.e, the specification, we discuss a model-based test case generation approach that can be used for both testing the correctness of the security infrastructure as well as the conformance of its configuration to a high-level security policy.

Schlüsselwörter:
Kategorien:
Dokumente:

QR Code for talk:brucker.ea:security-conformance:2013.Bitte zitieren sie diesen Artikel wie folgt:
Achim D. Brucker und Lukas Brügger. Model-based Conformance Testing of Security Properties. Dagstuhl Seminar 13012 "Symbolic Methods in Testing", 09. jan. 2013.
(Folien) (Handout) (BibTeX) (Share article on LinkedIn. Share article on CiteULike.)

BibTeX
@Talk{ talk:brucker.ea:security-conformance:2013,
abstract = {Modern systems need to comply to large and complex security policies that need to enforced at runtime. This runtime enforcement needs to happen on different levels, e.g., ranging from high level access control models to firewall rules.\\\\We present an approach for the modular specification of security policies (e.g., access control policies, firewall policies). Based on this formal model, i.e, the specification, we discuss a model-based test case generation approach that can be used for both testing the correctness of the security infrastructure as well as the conformance of its configuration to a high-level security policy.},
author = {Achim D. Brucker and Lukas Br{\"u}gger},
day = {09},
event = {Dagstuhl Seminar 13012 ``Symbolic Methods in Testing''},
handout = {https://www.brucker.ch/bibliography/download/2013/talk-brucker.ea-security-conformance-2013-2x2.pdf},
isodate = {2013-01-09},
lecturer = {Achim D. Brucker},
location = {Dagstuhl, Germany},
month = {jan},
slides = {https://www.brucker.ch/bibliography/download/2013/talk-brucker.ea-security-conformance-2013.pdf},
slideshare = {29126507},
slideshare_height = {356},
slideshare_width = {427},
title = {Model-based Conformance Testing of Security Properties},
url = {https://www.brucker.ch/bibliography/abstract/talk-brucker.ea-security-conformance-2013},
year = {2013},
}