中国科技核心期刊

中文核心期刊

CSCD来源期刊

空间控制技术与应用 ›› 2021, Vol. 47 ›› Issue (2): 49-54.doi: 10.3969/j.issn.1674-1579.2021.02.007

• 论文与报告 • 上一篇    下一篇

面向安全属性的软件组件可信依赖关系度量模型

  

  1. 华东师范大学软件工程学院
  • 出版日期:2021-04-10 发布日期:2021-04-19
  • 基金资助:
    国家自然科学基金资助项目(61672012)

A Novel Trustworthiness Measure Model of Trustworthy Dependence Relation Between Software Components For Security Attributes

  • Online:2021-04-10 Published:2021-04-19

摘要: 随着软件的应用规模越来越大,软件系统一旦出现故障,很可能会造成人员伤亡或财产等重大损失,因此对软件可信性进行评估尤为重要.在安全攸关如航空航天等领域,作为可信关键属性之一的安全性影响着整个软件系统的可信评估.特别当一个组件受到安全攻击或缺陷出现时,可信性会下降,会影响到与它可信关联的组件可信性,从而影响到整个系统的可信性.遵循这一思路,设计了软件系统组件可信性发生改变后对其它组件可信性影响度量公式,进一步给出当一组件可信性发生变化,整个软件系统各组件可信性度量发生变化的度量模型.本文以某“航天电源管理设备”为例,证明了本文所建立的组件可信依赖关系度量模型的合理性和有效性.

关键词: 软件, 安全性, 可信系统, 信任关系

Abstract: With the increasing scale of software application, once the software system fails, property loss or casualties can hardly be avoided. Therefore, it is particularly important to evaluate the trustworthiness of the software. In safetycritical areas such as aerospace, security, as one of the key attributes of trustworthiness, affects the trustworthiness evaluation of the entire software system. Especially when an attack or defect occurs, the trustworthiness of the component will decrease, which will affect the trustworthiness of its security associated components. Moreover, it will affect the trustworthiness of the whole system. Follow the idea, the formulas are designed to measure the impact of the change of the trustworthiness of a component on the other components. Furthermore, we propose the componentdependence measurementtrustworthiness model (CDMTM) of the entire software system. Finally, taking a certain “aerospace power management equipment” as an example, we prove the rationality and effectiveness of the CDMTM established in this paper.

Key words: software, security, trustworthy systems, trustworthy dependence relations

中图分类号: 

  • TP311.