Towards the Model-Driven Engineering of Security Requirements for Embedded Systems

被引:0
作者
Roudier, Yves [1 ]
Idrees, Muhammad Sabir [1 ]
Apvrille, Ludovic [2 ]
机构
[1] EURECOM, Network & Secur Dept, Sophia Antipolis, France
[2] Telecom ParisTech, Inst Mines Telecom, CNRS LTCI, Syst On Chip Lab Lab SoC, Sophia Antipolis, France
来源
2013 3RD INTERNATIONAL WORKSHOP ON MODEL-DRIVEN REQUIREMENTS ENGINEERING (MODRE) | 2013年
关键词
Communication System Security; Computer Security; Design methodology; System-level design; Component Architectures; Embedded Systems; Security Requirements Engineering;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper discusses why and how security requirements engineering must be adapted to the model-driven approach usually adopted to design and develop embedded systems. In particular, we discuss to what extent the elicitation of security requirements and the Y-chart partitioning approach, a central design methodology in embedded systems, can mutually enrich each other. We also show how SysML, which is already commonly used to engineer requirements in embedded systems, can also represent security requirements, assets, and threats with only a few extensions and thus support a more comprehensive requirements engineering methodology. We illustrate the use of our overall methodology and toolkit with examples from the automotive embedded system field in order to demonstrate the relevance of our approach.
引用
收藏
页码:55 / 64
页数:10
相关论文
共 34 条
[1]  
[Anonymous], P 31 IEEE S SEC PRIV
[2]  
Apvrille L., 2012, ERTSS 2012 TOUL FRAN
[3]   A UML-based environment for system design space exploration [J].
Apvrille, Ludovic ;
Muhammad, Waseem ;
Ameur-Boulifa, Rabea ;
Coudert, Sophie ;
Pacalet, Renaud .
2006 13TH IEEE INTERNATIONAL CONFERENCE ON ELECTRONICS, CIRCUITS AND SYSTEMS, VOLS 1-3, 2006, :1272-1275
[4]   Goal-driven risk assessment in requirements engineering [J].
Asnar, Yudistira ;
Giorgini, Paolo ;
Mylopoulos, John .
REQUIREMENTS ENGINEERING, 2011, 16 (02) :101-116
[5]  
Assolini F., 2012, TALE 1000 ONE DSL MO
[6]   Metropolis: An integrated electronic system design environment [J].
Balarin, F ;
Watanabe, Y ;
Hsieh, H ;
Lavagno, L ;
Passerone, C ;
Sangiovanni-Vincentelli, A .
COMPUTER, 2003, 36 (04) :45-+
[7]  
Bar-El H., 2009, DESIGN, P1
[8]   Automatic verification of correspondences for security protocols [J].
Blanchet, Bruno .
JOURNAL OF COMPUTER SECURITY, 2009, 17 (04) :363-434
[9]  
Broy M., P WORKSH FORM DES SA
[10]  
Costin A., BLACK HAT 2012 JUL 2