Towards model-centric engineering of a dynamic access control product line

Towards model-centric engineering of a dynamic access control product line
复制标题

走向以模型为中心的动态访问控制产品线工程

DOI:
--
复制
发表时间:
2012
期刊:
Software Product Lines Conference
影响因子:
--
通讯作者:
J. Ebert
J. Ebert
中科院分区:
--
文献类型:
--
作者:
Mahdi Derakhshanmanesh;M. Salehie;J. Ebert

文献摘要

被引文献

相似文献

访问控制系统部署在组织中,以保护关键的网络物理资产。这些系统需要进行调整,以科普不同的环境因素,如资源或要求的变化。尽管如此,适应通常是手动执行的。此外,需要系统地共同开发出入控制系统的不同产品变体。这些特性要求采用产品线工程方法来提高重用性。此外,为了科普运行时的不确定性,自适应性,即,需要支持在网络物理域中的变化之间的切换(重新配置)和调整访问策略(行为自适应)。 在这份立场文件中,我们勾画了一个方法,工程动态访问控制系统的核心概念的基础上,从动态软件产品线和可执行的运行时模型。建议的解决方案,并讨论了沿着一个样本动态软件产品线在基于角色的访问控制域的第一次经验。
Access control systems are deployed in organizations to protect critical cyber-physical assets. These systems need to be adjustable to cope with different contextual factors like changes in resources or requirements. Still, adaptation is often performed manually. In addition, different product variants of access control systems need to developed together systematically. These characteristics demand a product line engineering approach for enhanced reuse. Moreover, to cope with uncertainty at runtime, adaptivity, i.e., switching between variations in a cyber-physical domain (reconfiguration) and adjusting access policies (behavior adaptation), needs to be supported. In this position paper, we sketch an approach for engineering dynamic access control systems based on core concepts from dynamic software product lines and executable runtime models. The proposed solution is presented and first experiences are discussed along a sample dynamic software product line in the role-based access control domain.