A Security Characterisation Framework for Trustworthy Component Based Software Systems

  • Authors:
  • Khaled Khan;Jun Han

  • Affiliations:
  • -;-

  • Venue:
  • COMPSAC '03 Proceedings of the 27th Annual International Conference on Computer Software and Applications
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper explores how to characterise securityproperties of software components, and how to reasonabout their suitability for a trustworthy compositionalcontract. Our framework provides an explicit opportunityfor software composers as well as software components totest a priori security properties of software components ina system composition. The proposed framework uses logicprogramming as a tool to represent security properties ofatomic components and reason about their compositionalmatching with other components. This enables softwarecomponents as well as composers to 'test' possiblematches and mismatches between the security propertiesof the candidate components and the securityrequirements of the enclosing application system.