DocumentCode :
3371053
Title :
Implementation and Automatic Testing for Security Enhancement of Linux Based on Least Privilege
Author :
Zhai, Gaoshou ; Zeng, Jie ; Ma, Miaoxia ; Zhang, Liang
Author_Institution :
Sch. of Comput. & Inf. Technol., Beijing Jiaotong Univ., Beijing
fYear :
2008
fDate :
24-26 April 2008
Firstpage :
181
Lastpage :
186
Abstract :
Nowadays, technologies of information security have been attached more and more importance to and it´s a critical problem to take measures to ensure the reliability of related trustworthy software such as secure operating systems (SOSs). Thereafter, it´s always necessary for such systems to be taken complete and rigorous security test and evaluation among development team and/or by third-party security certification organization. However, such software testing is usually time consuming, cost consuming and boresome and thus technologies of software testing automation have alluring application foreground in that field. In this paper, methods and technologies about how to test a SOS automatically are discussed in breadth and in depth at first. Then least privilege is studied and the corresponding modules of security enhancement are added to Linux based on Linux Kernel Modules (LKM). Finally, a prototype of automatic security testing as to such least privilege mechanism is implemented and the results are analyzed.
Keywords :
Linux; program testing; security of data; software reliability; Least Privilege; Linux Kernel Modules; automatic security testing; automatic testing; information security; related trustworthy software reliability; secure operating systems; security enhancement; software testing; third-party security certification organization; Automatic testing; Automation; Certification; Costs; Information security; Linux; Operating systems; Software measurement; Software testing; System testing; Linux; least privilege; secure operating system; security testing; test automatization;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Information Security and Assurance, 2008. ISA 2008. International Conference on
Conference_Location :
Busan
Print_ISBN :
978-0-7695-3126-7
Type :
conf
DOI :
10.1109/ISA.2008.61
Filename :
4511559
Link To Document :
بازگشت