Systems-theoretic security requirements modeling for cyber-physical systems

被引:4
|
作者
Carter, Bryan T. [1 ]
Bakirtzis, Georgios [2 ]
Elks, Carl R. [3 ]
Fleming, Cody H. [1 ,4 ]
机构
[1] Univ Virginia, Syst Engn, Charlottesville, VA USA
[2] Univ Virginia, Comp Sci & Elect & Comp Engn, Charlottesville, VA USA
[3] Virginia Commonwealth Univ, Elect & Comp Engn, Richmond, VA USA
[4] Univ Virginia, Mech & Aerosp Engn, Charlottesville, VA 22904 USA
关键词
cybersecurity; cyber-physical system; security analysis; SysML; system modeling; SAFETY;
D O I
10.1002/sys.21504
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Cyber-physical systems (CPS) present a unique modeling challenge due to their numerous heterogeneous components, complex physical interactions, and disjoint communication networks. Modeling CPS to aid security analysis further adds to these challenges, because securing CPS requires not only understanding of the system architecture, but also the system's role within its broader expected service. This is due to the infeasibility of completely securing every single component, network, and part within a CPS. As such it is necessary to be cognizant of the system's expected service, or mission, so that the effects of an exploit can be mitigated and the system can perform its mission at least in a partially degraded manner-in other words, a mission-aware approach to security. As such, a security analysis methodology based on this philosophy is greatly aided by the creation of a model that combines system architecture information, its admissible behaviors, and its mission context. This paper presents a technique for creating such a model using the Systems Modeling Language.
引用
收藏
页码:411 / 421
页数:11
相关论文
empty
未找到相关数据