An approach to modular and testable security models of real-world health-care applications

  • Authors:
  • Achim D. Brucker;Lukas Brügger;Paul Kearney;Burkhart Wolff

  • Affiliations:
  • SAP Research, Karlsruhe, Germany;ETH Zurich, Zurich, Switzerland;BT Innovate & Design, Ipswich, United Kingdom;Université Paris-Sud, Paris, France

  • Venue:
  • Proceedings of the 16th ACM symposium on Access control models and technologies
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present a generic modular policy modelling framework and instantiate it with a substantial case study for model-based testing of some key security mechanisms of applications and services of the NPfIT. NPfIT, the National Programme for IT, is a very large-scale development project aiming to modernise the IT infrastructure of the NHS in England. Consisting of heterogeneous and distributed applications, it is an ideal target for model-based testing techniques of a large system exhibiting critical security features. We model the four information governance principles, comprising a role-based access control model, as well as policy rules governing the concepts of patient consent, sealed envelopes and legitimate relationships. The model is given in Higher-order Logic (HOL) and processed together with suitable test specifications in the TestGen system, that generates test sequences according to them. Particular emphasis is put on the modular description of security policies and their generic combination and its consequences for model-based testing.