Title :
Model-Driven Security Patterns Application Based on Dependences among Patterns
Author :
Shiroma, Yuki ; Washizaki, Hironori ; Fukazawa, Yoshiaki ; Kubo, Atsuto ; Yoshioka, Nobukazu
Author_Institution :
Dept. Comput. Sci. & Eng., WASEDA Univ., Tokyo, Japan
Abstract :
The spread of open-software services through the Internet increases the importance of security. A security pattern is one of the techniques in which developers utilize security experts´ knowledge. Security patterns contain typical solutions about security problems. However there is a possibility that developers may apply security patterns in inappropriate ways due to a lack of consideration on dependencies among patterns. Application techniques of security patterns that consider such dependencies have not been proposed yet. In this paper, we propose an automated application technique of security patterns in model driven software development by defining applications procedures of security patterns to models as model transformation rules with consideration for pattern dependencies. Our technique prevents inappropriate applications such as the application of security patterns to wrong model elements and that in wrong orders. Therefore our technique supports developers apply security patterns to their own models automatically in appropriate ways.
Keywords :
security of data; software engineering; model driven software development; model transformation rules; model-driven security patterns application; open software services; pattern dependency; Application software; Authorization; Availability; Computer science; Concrete; Information security; Monitoring; National security; Programming; Web and internet services; ATL; Model Driven Development; Security Patterns; UML;
Conference_Titel :
Availability, Reliability, and Security, 2010. ARES '10 International Conference on
Conference_Location :
Krakow
Print_ISBN :
978-1-4244-5879-0
DOI :
10.1109/ARES.2010.103