DocumentCode :
2711646
Title :
Security characterisation and integrity assurance for component-based software
Author :
Han, Jun ; Zheng, Yuliang
Author_Institution :
Sch. of Network Comput., Monash Univ., Clayton, Vic., Australia
fYear :
2000
fDate :
2000
Firstpage :
61
Lastpage :
66
Abstract :
Software systems are increasingly being assembled from components that are developed by and purchased from third parties, for technical and economic gains. In such component-based software development, the functionality and quality-of-service attributes of the software components should be clearly and adequately specified (or packaged) through their interfaces, so that the characteristics of the systems assembled from the components can be analysed relative to the system requirements. In this paper, we consider one particular quality-of-service attribute, i.e. security, and outline an approach to (1) specifying the security characteristics of software components and (2) analysing the security properties of component-based systems in terms of their component characteristics and system architectures. The approach is partially based on the Common Criteria for Information Technology Security Evaluation (ISO/IEC International Standard 15408). In addition, we also introduce out work on ensuring the integrity of software components as part of the infrastructural support for component-based software engineering
Keywords :
IEC standards; ISO standards; quality of service; security of data; software engineering; software standards; subroutines; Common Criteria for Information Technology Security Evaluation; ISO/IEC International Standard 15408; component-based software development; infrastructural support; integrity assurance; security characteristics; service quality; software component functionality; software component interfaces; software engineering; system architectures; system requirements; third-party components; Assembly systems; IEC standards; ISO standards; Information security; Packaging; Programming; Quality of service; Software packages; Software quality; Software systems;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Software Methods and Tools, 2000. SMT 2000. Proceedings. International Conference on
Conference_Location :
Wollongong, NSW
Print_ISBN :
0-7695-0903-7
Type :
conf
DOI :
10.1109/SWMT.2000.890421
Filename :
890421
Link To Document :
بازگشت