Development of secured systems by mixing programs, specifications and proofs in an object-oriented programming environment: a case study within the FoCaLiZe environment

  • Authors:
  • Damien Doligez;Mathieu Jaume;Renaud Rioboo

  • Affiliations:
  • Gallium, Inria, Rocquencourt, France;Univ. P. & M. Curie, Paris, France;CPR CEDRIC, ENSIIE, Evry, France

  • Venue:
  • Proceedings of the 7th Workshop on Programming Languages and Analysis for Security
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

FoCaLiZe is an object-oriented programming environment that combines specifications, programs and proofs in the same language. This paper describes how its features can be used to formally express specifications and to develop by stepwise refinement the design and implementation of secured systems, while proving that the implementation meets its specification or design requirements. We thus obtain a modular implementation of a generic framework for the definition of security policies together with certified enforcement mechanism for these policies.