Formal verification of security pattern composition: application to SCADA - Archive ouverte HAL Accéder directement au contenu
Article Dans Une Revue COMPUTING AND INFORMATICS Année : 2019

Formal verification of security pattern composition: application to SCADA

Résumé

Information security was initially required in specific applications, however, nowadays, most companies and even individuals are interested in securing their information assets. The new requirement can be costly, especially with the high demand on security solutions and security experts. Security patterns are reusable security solutions that prove to be efficient and can help developers achieve some security goals without the need for expertise in the security domain. Some security pattern combinations can be beneficial while others are inconsistent. Model checking can be used to verify the production of combining multiple security patterns with an architecture. Supervisory control and data acquisition (SCADA) systems control many of our critical industrial infrastructures. Due to their limitations, and their augmented connectivity, SCADA systems have many unresolved security issues. In this paper, we demonstrate how we can automatically generate a secure SCADA model based on an insecure one and how to verify the generated model.
Fichier non déposé

Dates et versions

hal-02638911 , version 1 (28-05-2020)

Identifiants

Citer

Fadi Obeid, Philippe Dhaussy. Formal verification of security pattern composition: application to SCADA. COMPUTING AND INFORMATICS, 2019, 38, pp.1149-1180. ⟨10.31577/cai.2019.5.1149⟩. ⟨hal-02638911⟩
35 Consultations
0 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More