Service dependencies in information systems security - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2010

Service dependencies in information systems security

Résumé

In the complex world of information services, we are realizing that system dependencies upon one another have not only operational implications but also security implications. These security implications are multifold. Beyond allowing an attacker to propagate over an information system by leveraging stepping stones vulnerabilities, it also allows a defender to select the most interesting enforcement points for its policies, overall reducing the cost of managing the security of these complex systems. In this paper, we present a dependency model that has been designed for the purpose of providing security operators with a quantitative decision support system for deploying and managing security policies.

Dates et versions

hal-01164740 , version 1 (17-06-2015)

Identifiants

Citer

Hervé Debar, Nizar Kheir, Nora Cuppens-Bouhlahia, Frédéric Cuppens. Service dependencies in information systems security. MMM-ACNS 2010 : 5th International Conference on Mathematical Methods, Models and Architectures for Computer Network Security, Sep 2010, Saint Petersburg, Russia. pp.1 - 20, ⟨10.1007/978-3-642-14706-7_1⟩. ⟨hal-01164740⟩
104 Consultations
0 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More