Towards a test cases generation method for security policies

  • Authors:
  • Ryma Abbassi;Sihem Guemara EL Fatmi

  • Affiliations:
  • School of Communication Engineering, Sup' Com, Tunis, Tunisia;School of Communication Engineering, Sup' Com, Tunis, Tunisia

  • Venue:
  • ICT'09 Proceedings of the 16th international conference on Telecommunications
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

Security Policy specification and testing constitute two fundamental challenges in the development of secure communication systems since they can ensure that a security policy is correctly enforced. Model checking techniques can be used to do such task. Given a system modeling and a test criterion, the model checker can generate a counterexample from which test cases can be deduced. To address the previous challenges, we propose in this paper, a framework to specify a security policy and to test its implementation. This framework is characterized as follows: (1) the security policy enforcement is specified through a new modeling language, S-Promela, (2) the test criteria are expressed by the use of a temporal logic LTL and (3) the test cases are generated by a classical model checking technique.