A Generic Metamodel For Security Policies Mutation

Abstract : We present a new approach for mutation analysis of Security Policies test cases. We propose a metamodel that provides a generic representation of security policies access control models and define a set of mutation operators at this generic level. We use Kermeta to build the metamodel and implement the mutation operators. We also illustrate our approach with two successful instantiation of this metamodel: we defined policies with RBAC and OrBAC and mutated these policies.
Document type :
Conference papers
Complete list of metadatas

https://hal.inria.fr/inria-00456954
Contributor : Didier Vojtisek <>
Submitted on : Tuesday, February 16, 2010 - 10:42:48 AM
Last modification on : Monday, February 25, 2019 - 3:14:04 PM
Long-term archiving on : Friday, June 18, 2010 - 9:01:40 PM

File

mouelhi08e.pdf
Files produced by the author(s)

Identifiers

  • HAL Id : inria-00456954, version 1

Citation

Tejeddine Mouelhi, Franck Fleurey, Benoit Baudry. A Generic Metamodel For Security Policies Mutation. SecTest 08: 1st International ICST workshop on Security Testing, April 9, Lillehammer, Norway, RSM - Dépt. Réseaux, Sécurité et Multimédia (Institut TELECOM ; TELECOM Bretagne), IRISA - Institut de Recherche en Informatique et Systèmes aléatoires (INRIA), SINTEF - The Foundation for Scientific and Industrial Research (SINTEF), 2008, Lillehammer, Norway. 8 p. ⟨inria-00456954⟩

Share

Metrics

Record views

390

Files downloads

524