首页> 外文会议>Model driven engineering languages and systems >Security Analysis of a Biometric Authentication System Using UMLsec and JML
【24h】

Security Analysis of a Biometric Authentication System Using UMLsec and JML

机译:使用UMLsec和JML的生物特征认证系统的安全性分析

获取原文
获取原文并翻译 | 示例

摘要

Quality assurance for security-critical systems is particularly challenging: many systems are developed, deployed, and used that do not satisfy their security requirements. A number of software engineering approaches have been developed over the last few years to address this challenge, both in the context of model-level and code-level security assurance. However, there is little experience so far in using these approaches in an industrial context, the challenges and benefits involved and the relative advantages and disadvantages of different approaches. This paper reports on experiences from a practical application of two of these security assurance approaches. As a representative of model-based security analysis, we considered the UMLsec approach and we investigated the JML annotation language as a representative of a code-level assurance approach. We applied both approaches to the development and security analysis of a biometric authentication system and performed a comparative evaluation based on our experiences.
机译:对安全性至关重要的系统的质量保证尤其具有挑战性:许多开发,部署和使用的系统无法满足其安全性要求。过去几年中,已经在模型级和代码级安全性保证的背景下开发了许多软件工程方法来应对这一挑战。但是,到目前为止,在工业环境中使用这些方法的经验很少,所涉及的挑战和好处以及不同方法的相对优缺点。本文报告了其中两种安全保证方法的实际应用经验。作为基于模型的安全性分析的代表,我们考虑了UMLsec方法,并研究了JML注释语言作为代码级保证方法的代表。我们将两种方法都应用于生物认证系统的开发和安全性分析,并根据我们的经验进行了比较评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号