Por motivos de mantenimiento se ha deshabilitado el inicio de sesión temporalmente. Rogamos disculpen las molestias.
Ponencia
Definition and Verification of Security Configurations of Cyber-Physical Systems
Autor/es | Varela Vaca, Ángel Jesús
Rosado, David G. Sánchez, Luis Enrique Gómez López, María Teresa Martínez Gasca, Rafael Fernández Medina, Eduardo |
Departamento | Universidad de Sevilla. Departamento de Lenguajes y Sistemas Informáticos |
Fecha de publicación | 2020 |
Fecha de depósito | 2022-10-24 |
Publicado en |
|
ISBN/ISSN | 978-3-030-64329-4 0302-9743 |
Resumen | The proliferation of Cyber-Physical Systems (CPSs) is rais ing serious security challenges. These are complex systems, integrating
physical elements into automated networked systems, often containing a
variety of devices, ... The proliferation of Cyber-Physical Systems (CPSs) is rais ing serious security challenges. These are complex systems, integrating physical elements into automated networked systems, often containing a variety of devices, such as sensors and actuators, and requiring complex management and data storage. This makes the construction of secure CPSs a challenge, requiring not only an adequate specification of secu rity requirements and needs related to the business domain but also an adaptation and concretion of these requirements to define a security configuration of the CPS where all its components are related. Derived from the complexity of the CPS, their configurations can be incorrect according to the requirements, and must be verified. In this paper, we propose a grammar for specifying business domain security requirements based on the CPS components. This will allow the definition of security requirements that, through a defined security feature model, will result in a configuration of services and security properties of the CPS, whose correctness can be verified. For this last stage, we have created a cata logue of feature models supported by a tool that allows the automatic verification of security configurations. To illustrate the results, the pro posal has been applied to automated verification of requirements in a hydroponic system scenario. |
Agencias financiadoras | Ministerio de Ciencia Y Tecnología (MCYT). España Junta de Andalucía Junta de Castilla-La Mancha |
Identificador del proyecto | RTI2018-094283-B-C33 (ECLIPSE)
METAMORFOSIS (US-1381375) SBPLY-17-180501-000202 (GENESIS) |
Cita | Varela Vaca, Á.J., Rosado, D.G., Sánchez, L.E., Gómez López, M.T., Martínez Gasca, R. y Fernández Medina, E. (2020). Definition and Verification of Security Configurations of Cyber-Physical Systems. En CyberICPS 2020, SECPRE 2020, ADIoT 2020: International Workshop on the Security of Industrial Control Systems and Cyber-Physical Systems, International Workshop on Security and Privacy Requirements Engineering, International Workshop on Attacks and Defenses for Internet-of-Things (135-155), Guildford, UK: Springer. |
Ficheros | Tamaño | Formato | Ver | Descripción |
---|---|---|---|---|
Definition and Verification of ... | 2.791Mb | [PDF] | Ver/ | |