Transforming and Selecting Functional Test Cases for Security Policy Testing

  • Authors:
  • Tejeddine Mouelhi;Yves Le Traon;Benoit Baudry

  • Affiliations:
  • -;-;-

  • Venue:
  • ICST '09 Proceedings of the 2009 International Conference on Software Testing Verification and Validation
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, we consider typical applications in which the business logic is separated from the access control logic, implemented in an independent compo-nent, called the Policy Decision Point (PDP). The execution of functions in the business logic should thus include calls to the PDP, which grants or denies the access to the protected resources/functionalities of the system, depending on the way the PDP has been con-figured.