全部 标题 作者
关键词 摘要

OALib Journal期刊
ISSN: 2333-9721
费用:99美元

查看量下载量

相关文章

更多...

一种面向对象的信息系统安全评估方法

DOI: 10.13190/jbupt.200504.69.076, PP. 69-73

Keywords: 面向对象,安全上下文,安全评估,对象模型

Full-Text   Cite this paper   Add to My Lib

Abstract:

安全评估是进行信息系统安全风险管理的重要途径,但安全评估目前缺乏有效的方法及工具.通过利用面向对象的技术,建立了安全评估对象模型,提出了关联检测和依赖检测的概念,并开发了相应的工具.应用结果表明,利用面向对象技术可以有效提高信息系统安全评估效率,同时关联检测和依赖检测也改进了穿透测试的效果.

References

[1]  Ghosh A. K., McGraw G. An Approach for Certifying Security in Software Components[A]. 21st NIST-NCSC National Information Systems Security Conference[C]. Virginia: NIST Press, 1998. 42-48.
[2]  Guo Daifei. Design of Secure Distributed Intrusion Detection Systems[J]. The Journal of China Universities of Posts and Telecommunica- tions, 2002, 9(2): 17-24.
[3]  Weissman C. Penetration Testing. Technical report, Naval Research Laboratory, January 1995. NRL Technical Memorandum 5540:082A.
[4]  柴平瑄,龚向阳,程时端. 分布式入侵检测技术的研究[J]. 北京邮电大学学报, 2002, 25(2);68-73.
[5]  Chai Pingxuan, Gong Xiangyang, Cheng Shiduan. Research on Distributed Intrusion Detection[J]. Journal of Beijing University of Posts and Telecommunications, 2002, 25(2): 68-73.
[6]  Peter Herrmann, Heiko Krumm. Object-oriented Security Analysis and Modeling[A]. 9th International Conference on Telecommunication Systems – Modelling and Analysis[C]. USA: Dallas: IFIP, 2001. 21-32.
[7]  Bramlage J. L. A New Paradigm For Performing Risk Assessment[A]. 20th National Information Systems Security Conference[C]. Baltimore:1997. 565-576.
[8]  Olivier MS, Solms SH von . An Object-based Version of the Path Context Model[J]. International Journal of Computer Mathematics, 1993, 49(3): 133-144
[9]  Bruce Barnett. NOOSE: Networked Object Oriented Security Examiner[A]. 14th Systems Administration Conference (LISA 2000)[C]. New Orleans: 2000. 369-378

Full-Text

Contact Us

service@oalib.com

QQ:3279437679

WhatsApp +8615387084133