Security Driven Requirements Refinement and Exploration of Architecture with Multiple NFR Points of View

Security Driven Requirements Refinement and Exploration of Architecture with Multiple NFR Points of View
复制标题

DOI:
10.1109/hase.2014.35
复制
发表时间:
2014-01
期刊:
2014 IEEE 15th International Symposium on High-Assurance Systems Engineering
影响因子:
--
通讯作者:
T. Okubo;Nobukazu Yoshioka;H. Kaiya
T. Okubo;Nobukazu Yoshioka;H. Kaiya
中科院分区:
其他
文献类型:
--
作者:
T. Okubo;Nobukazu Yoshioka;H. Kaiya

文献摘要

相似文献

早期的软件架构设计是必不可少的,特别是当涉及到安全问题时,因为安全风险,需求和架构都是密切相关和相互作用的。我们提出了安全驱动的双峰方法,相互细化的要求,和架构。然而,对于初始需求的架构设计有多种选择,它们的选择取决于非功能需求(NFR),例如安全性,性能和成本,这些需求通常会发生很大变化。我们提出了一个新的方法,我们称之为TPM-SA 2,以避免任何回溯细化。TPM-SA 2中的每个架构备选方案都经过了改进,以便与需求保持一致。对于每个细化,需求可以被更新,反之亦然。TPM-SA 2使我们能够预测每个候选架构对NFR的影响,并选择最合适的影响。因此,我们可以定义需求和架构,并比以往更早地估计开发成本。
Earlier software architecture design is essential particularly when it comes to security concerns, since security risks, requirements and architectures are all closely interrelated and interacting. We have proposed the security driven twin peaks method with a mutual refinement of the requirements, and architectures. However, there are multiple alternatives to an architecture design for initial requirements, and their choices depend on non-functional requirements (NFRs), such as security, performance, and cost which often largely change. We propose a new method we call TPM-SA2 to avoid any back-track in refinement. Each architectural alternative in TPM-SA2 is refined so that it aligns with the requirements. For each refinement, the requirements can be updated vice versa. TPM-SA2 enables us to predict the impacts on the NFRs by each candidate for the architecture, and choose the most appropriate one with respect to the impact. As a result, we can define the requirements and architectures, and estimated the development costs earlier than ever.