| 講演抄録/キーワード |
| 講演名 |
2014-01-28 15:00
コモンクライテリアを用いたモデル駆動セキュリティ要求分析手法の変更容易性に関する評価 ○野呂 惇・松浦佐江子(芝浦工大) KBSE2013-78 |
| 抄録 |
(和) |
システムの要求分析において,アクセス制御に関する要求は機能要求であると同時にセキュリティ要求であるため,双方の要求間の関連が強く,同時に分析すると要求分析が複雑になり,各要件のトレーサビリティが低下する.このため,変更要求が起きた際に,どの変更がどこまで影響を及ぼすのかがわかりにくい.この問題に対し,我々はコモンクライテリアのセキュリティ機能方針を用いることで,UMLで定義された機能要求に対して,系統的にセキュリティ要求を分析し,トレーサビリティの高い要件定義を行うモデル駆動セキュリティ要求分析手法を提案してきた.本稿では,我々の提案手法による要求分析結果に対する変更容易性に関してケーススタディを通して議論し,提案手法の有用性を評価する. |
| (英) |
Requirements analysis is complicated because in requirements analysis of the system is a security request as well as a feature request is a request for access control, related requests between the two is strong, and analyze at the same time. On the other hand, it is difficult to know to what extent any change or affect when traceability is reduced when analyzed in isolation, change request has occurred. For this problem, by using the security function policy Common Criteria, we have proposed a security requirements analysis techniques to ensure traceability while separating security requirements and functional requirements.
In this paper, we discuss case study for ease of change to requirements analysis results obtained by our method, to evaluate the usefulness of the proposed method. |
| キーワード |
(和) |
コモンクライテリア / セキュリティ要求分析 / セキュリティ機能方針 / 変更容易性 / / / / |
| (英) |
Common Criteria / Security Requirements Analysis / Security Function Policy / Modifiability / / / / |
| 文献情報 |
信学技報, vol. 113, no. 414, KBSE2013-78, pp. 77-82, 2014年1月. |
| 資料番号 |
KBSE2013-78 |
| 発行日 |
2014-01-20 (KBSE) |
| ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
著作権に ついて |
技術研究報告に掲載された論文の著作権は電子情報通信学会に帰属します.(許諾番号:10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
| PDFダウンロード |
KBSE2013-78 |