Classifying Security Patterns

Autor: Nobukazu Yoshioka, Yoshiaki Fukazawa, Eduardo B. Fernandez, Hironori Washizaki, Atsuto Kubo
Rok vydání: 2008
Předmět:
Zdroj: Progress in WWW Research and Development ISBN: 9783540788485
APWeb
DOI: 10.1007/978-3-540-78849-2_35
Popis: Patterns combine experience and good practices to develop basic models that can be used for new designs. Security patterns join the extensive knowledge accumulated about security with the structure provided by patterns to provide guidelines for secure system design and evaluation. In addition to their value for new system design, security patterns are useful to evaluate existing systems. They are also useful to compare security standards and to verify that products comply with some standard. A variety of security patterns has been developed for the construction of secure systems and catalogs of them are appearing. However, catalogs of patterns are not enough because the designer does not know when and where to apply them, especially in a large complex system. We discuss here several ways to classify patterns. We show a way to use these classifications through pattern diagrams where a designer can navigate to perform her pattern selection.
Databáze: OpenAIRE