|

Secure Software Architectures
by Robert Riemenschneider, Mark Moriconi, Xiaolei Qian & Li Gong.
From Proceedings of the IEEE Symposium on Security and Privacy. Oakland, CA. May, 1997. Pages 84–93.
Abstract
The computer industry is increasingly dependent
on open architectural standards for their competitive
success. This paper describes a new approach to secure
system design in which the various representations of the
architecture of a software system are described formally
and the desired properties of the system are proven to hold
at the architectural level. The main ideas are illustrated by means
of the X/Open Distributed Transaction Processing reference
architecture, which is formalized and extended for secure
access control as defined by the Bell-LaPadula model. The extension
allows vendors to develop individual components independently and with
minimal concern about security. Two important observations were
gelaned on the implications of incorporating security into software
architectures.
BibTEX Entry
@InProceedings{moriconi97,
AUTHOR = {Mark Moriconi and Xiaolei Qian and {R.A.} Riemenschneider and Li Gong},
TITLE = {Secure Software Architectures},
YEAR = {1997},
PAGES = {84--93},
MONTH = {May},
ADDRESS = {Oakland, {CA}},
URL = {http://www.csl.sri.com/papers/sp97/},
BOOKTITLE = {Proceedings of the {IEEE} Symposium on Security and Privacy}
}
Files
|
|