面向安全属性的软件组件可信依赖关系度量模型

A Novel Trustworthiness Measure Model of Trustworthy Dependence Relation Between Software Components For Security Attributes

  • 摘要: 随着软件的应用规模越来越大,软件系统一旦出现故障,很可能会造成人员伤亡或财产等重大损失,因此对软件可信性进行评估尤为重要.在安全攸关如航空航天等领域,作为可信关键属性之一的安全性影响着整个软件系统的可信评估.特别当一个组件受到安全攻击或缺陷出现时,可信性会下降,会影响到与它可信关联的组件可信性,从而影响到整个系统的可信性.遵循这一思路,设计了软件系统组件可信性发生改变后对其它组件可信性影响度量公式,进一步给出当一组件可信性发生变化,整个软件系统各组件可信性度量发生变化的度量模型.本文以某“航天电源管理设备”为例,证明了本文所建立的组件可信依赖关系度量模型的合理性和有效性.

     

    Abstract: With the increasing scale of software application, once the software system fails, property loss or casualties can hardly be avoided. Therefore, it is particularly important to evaluate the trustworthiness of the software. In safetycritical areas such as aerospace, security, as one of the key attributes of trustworthiness, affects the trustworthiness evaluation of the entire software system. Especially when an attack or defect occurs, the trustworthiness of the component will decrease, which will affect the trustworthiness of its security associated components. Moreover, it will affect the trustworthiness of the whole system. Follow the idea, the formulas are designed to measure the impact of the change of the trustworthiness of a component on the other components. Furthermore, we propose the componentdependence measurementtrustworthiness model (CDMTM) of the entire software system. Finally, taking a certain “aerospace power management equipment” as an example, we prove the rationality and effectiveness of the CDMTM established in this paper.

     

/

返回文章
返回