SoREn, How Dynamic Software Update Tools Can Help Cybersecurity Systems to Improve Monitoring and Actions

被引:2
作者
Martinez, Sebastien [1 ]
Gransart, Christophe [1 ]
Stienne, Olivier [1 ]
Deniau, Virginie [1 ]
Bon, Philippe [1 ]
机构
[1] Univ Gustave Eiffel, IFSTTAR, Champs Sur Marne, France
关键词
dynamic software updating; dynamic reconfiguration; quiescence; security;
D O I
10.3897/jucs.66857
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Because stopping a service to apply updates raises issues, Dynamic Software Updating studies the application of updates on programs without disrupting the services they provide. This is acheived using specific mechanisms operating updating tasks such as the modification of the program state. To acheive transparency, Dynamic Software Updating systems use pre-selected and pre-configured mechanisms. Developers provide patches that are transparently converted to dynamic updates. The cost of such transparency is often that applied patches cannot modify the general semantic of the updated program. Allowing dynamic modification of the general semantic of a running program is rarely considered. In the context of protection of communications between moving vehicles and uncontrolled infrastructure, SoREn (Security REconfigurable Engine) is designed to be dynamically reconfigurable. Its semantics can transparently be modified at runtime to change the security policy it enforces. Administrators can supply new policies to trigger a reconfiguration, without developing new components. This paper details and discusses the design of SoREn, its meta-model linked to cybersecurity business concepts and its automatic reconfiguration calculator allowing transparent application of reconfigurations.
引用
收藏
页码:27 / 53
页数:27
相关论文
共 20 条
  • [11] THE EVOLVING PHILOSOPHERS PROBLEM - DYNAMIC CHANGE MANAGEMENT
    KRAMER, J
    MAGEE, J
    [J]. IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 1990, 16 (11) : 1293 - 1306
  • [12] LAMIH, 2015, CYB SEC SYST COMM TR
  • [13] Socio-technical systems cybersecurity framework
    Malatji, Masike
    Von Solms, Sune
    Marnewick, Annlize
    [J]. INFORMATION AND COMPUTER SECURITY, 2019, 27 (02) : 233 - 272
  • [14] Martinez S., 2015, ICSEA 2015
  • [15] The Go Programming Language
    Meyerson, Jeff
    [J]. IEEE SOFTWARE, 2014, 31 (05) : 104 - 103
  • [16] OISF, 2020, SUR OP SOURC IDS
  • [17] Intrusion detection system for detecting wireless attacks in IEEE 802.11 networks
    Sethuraman, Sibi Chakkaravarthy
    Dhamodaran, Sangeetha
    Vijayakumar, Vaidehi
    [J]. IET NETWORKS, 2019, 8 (04) : 219 - 232
  • [18] Sourcefire, 2020, SNORT OP SOURC NETW
  • [19] Tranquillity: A low disruptive alternative to quiescence for ensuring safe dynamic updates
    Vandewoude, Yves
    Ebraert, Peter
    Berbers, Yolande
    D'Hondt, Theo
    [J]. IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 2007, 33 (12) : 856 - 868
  • [20] Zeek, 2020, ZEEK