Specification of Information Flow Security Policies in Model-Based Systems Engineering

被引:1
|
作者
Gerking, Christopher [1 ]
机构
[1] Paderborn Univ, Heinz Nixdorf Inst, Paderborn, Germany
来源
SOFTWARE TECHNOLOGIES: APPLICATIONS AND FOUNDATIONS | 2018年 / 11176卷
关键词
Information flow; Security policies; Systems engineering; CYBER-PHYSICAL SYSTEMS; REQUIREMENTS;
D O I
10.1007/978-3-030-04771-9_47
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Model-based systems engineering provides a multi-disciplinary approach to developing cyber-physical systems. Due to their high degree of interconnection, security is a key factor for cyber-physical systems and needs to be front-loaded to the beginning of the development. However, there is a lack of model-based systems engineering approaches that enable the early specification of security policies. As a consequence, security requirements frequently remain unspecified and therefore are hard to satisfy in the downstream development phases. In this paper, we propose to integrate model-based systems engineering with the theory of information flow security. We extend systems engineering models to information flow policies, enabling systems engineers to specify the information flow security requirements of a system under development. On refinement of the resulting models, our approach allows to derive security requirements for individual software components. We illustrate our approach using a model-based design of an autonomous car.
引用
收藏
页码:617 / 632
页数:16
相关论文
共 50 条
  • [21] WorSE: A Workbench for Model-based Security Engineering
    Amthor, Peter
    Kuehnhauser, Winfried E.
    Poelck, Anja
    COMPUTERS & SECURITY, 2014, 42 : 40 - 55
  • [22] Security & Safety by Model-based Requirements Engineering
    Japs, Sergej
    2020 28TH IEEE INTERNATIONAL REQUIREMENTS ENGINEERING CONFERENCE (RE'20), 2020, : 422 - 427
  • [23] A Model-Based Framework for Security Policy Specification, Deployment and Testing
    Mouelhi, Tejeddine
    Fleurey, Franck
    Baudry, Benoit
    Le Traon, Yves
    MODEL DRIVEN ENGINEERING LANGUAGES AND SYSTEMS, PROCEEDINGS, 2008, 5301 : 537 - 552
  • [24] A Verified Capability-Based Model for Information Flow Security With Dynamic Policies
    Sun, Jianwen
    Long, Xiang
    Zhao, Yongwang
    IEEE ACCESS, 2018, 6 : 16395 - 16407
  • [25] Embedding Model-Based Security Policies in Software Development
    Navarro-Machuca, Javier
    Chen, Li-Chiou
    2016 IEEE 2ND INTERNATIONAL CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY), IEEE INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING (HPSC), AND IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2016, : 116 - 122
  • [26] Toward a Reference Architecture for Digital and Model-Based Engineering Information Systems
    Daly, Hayden C.
    Grogan, Paul T.
    RECENT TRENDS AND ADVANCES IN MODEL BASED SYSTEMS ENGINEERING, 2022, : 3 - 13
  • [27] Introduction to Information Visualization (InfoVis) techniques for Model-Based Systems Engineering
    Sindiy, Oleg
    Litomisky, Krystof
    Davidoff, Scott
    Dekens, Frank
    2013 CONFERENCE ON SYSTEMS ENGINEERING RESEARCH, 2013, 16 : 49 - 58
  • [28] Presenting Model-Based Systems Engineering Information to Non-Modelers
    Cohen, Jeffrey R.
    Arai, Sarah
    Rakalina, Tatyana
    Griffin, Emily
    Heiser, Jared
    Urbina, Michelle
    McGuire, Kerry M.
    Rubin, David
    Seigel, Alex J.
    Shah, Alay
    Ramachandran, Sandhya
    Dixit, Anusha
    Legaspi, Jennifer
    Mindock, Jennifer A.
    Bardina, Jorge
    Hailey, Melinda J.
    2021 IEEE AEROSPACE CONFERENCE (AEROCONF 2021), 2021,
  • [29] Model-Based Systems Security Quantification
    Ouchani, Samir
    Jarraya, Yosr
    Mohamed, Otmane Ait
    2011 NINTH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST, 2011, : 142 - 149
  • [30] Model-based security engineering with UML:: Introducing security aspects
    Juerjens, Jan
    FORMAL METHODS FOR COMPONENTS AND OBJECTS, 2006, 4111 : 64 - 87