Testing TLS Using Combinatorial Methods and Execution Framework - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2017

Testing TLS Using Combinatorial Methods and Execution Framework

Dimitris E. Simos
  • Fonction : Auteur
Josip Bozic
  • Fonction : Auteur
  • PersonId : 994797
Feng Duan
  • Fonction : Auteur
  • PersonId : 1026264
Bernhard Garn
  • Fonction : Auteur
  • PersonId : 1023381
Kristoffer Kleine
  • Fonction : Auteur
  • PersonId : 1023379
Yu Lei
  • Fonction : Auteur
  • PersonId : 1023382
Franz Wotawa
  • Fonction : Auteur
  • PersonId : 994796

Résumé

The TLS protocol is the standard for secure Internet communication between two parties. Unfortunately, there have been recently successful attacks like DROWN or BREACH that indicate the necessity for thoroughly testing TLS implementations. In our research work, we focus on automated test case generation and execution for the TLS security protocol, where the aim is to make use of combinatorial methods for providing test cases that ideally also reveal previously unknown attacks. This is made feasible by creating appropriate input parameter models for different messages that can appear in a TLS message sequence. In this paper, we present the resulting test case generation and execution framework together with the corresponding testing oracle. Furthermore, we discuss first empirical results obtained using different TLS implementations and their releases.
Fichier principal
Vignette du fichier
449632_1_En_10_Chapter.pdf (430.37 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01678990 , version 1 (09-01-2018)

Licence

Paternité

Identifiants

Citer

Dimitris E. Simos, Josip Bozic, Feng Duan, Bernhard Garn, Kristoffer Kleine, et al.. Testing TLS Using Combinatorial Methods and Execution Framework. 29th IFIP International Conference on Testing Software and Systems (ICTSS), Oct 2017, St. Petersburg, Russia. pp.162-177, ⟨10.1007/978-3-319-67549-7_10⟩. ⟨hal-01678990⟩
147 Consultations
180 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More