Assurance Carrying Code for Software Supply Chain
Assurance Carrying Code for Software Supply Chain
复制标题
软件供应链保证承载代码
DOI:
10.1109/issrew53611.2021.00077
复制
发表时间:
2021
期刊:
影响因子:
--
通讯作者:
Hosokawa Yuichiro
中科院分区:
文献类型:
--
作者:
Matsuno Yutaka;Yamagata Yoriyuki;Nishihara Hideaki;Hosokawa Yuichiro
Modern software systems are composed of software components supplied by a software supply chain, and it has become difficult to maintain the dependability of the software supply chain. To address this problem, we introduce assurance carrying code, a framework in which every software component in a software supply chain has its own assurance case. When integrating a software component into a supply chain, the stakeholders check (manually or automatically) the assurance case to determine whether or not the software component is dependable for the supply chain. We introduce a pattern language for Goal Structuring Notation (GSN) formalized by-calculus, which is used in a theory of functional programming languages theory.