Skip to main content

From Safety Models to Security Models: Preliminary Lessons Learnt

  • Conference paper

Part of the book series: Lecture Notes in Computer Science ((LNPSE,volume 8696))

Abstract

We aim at developing common models and tools to assess both safety and security of avionics platforms so we studied the adaptation of models devised for Safety assessment in order to analyse security. In this paper, we describe a security modelling ana analysis approach based on the AltaRica language and associated tools, we illustrate the approach with an avionics case-study. We report lessons learnt about the convergence and divergence points between security and safety with respect to modelling and analysis techniques.

This is a preview of subscription content, log in via an institution.

Buying options

Chapter
USD   29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD   39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD   54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Learn about institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. Bieber, P., Delmas, R., Seguin, C.: DALculus – theory and tool for development assurance level allocation. In: Flammini, F., Bologna, S., Vittorini, V. (eds.) SAFECOMP 2011. LNCS, vol. 6894, pp. 43–56. Springer, Heidelberg (2011)

    Chapter  Google Scholar 

  2. Bieber, P., Seguin, C.: Safety Analysis of Embedded Systems with the AltaRica Approach. In: Industrial Use of Formal Methods: Formal Verification, ch. 3. Wiley (2013)

    Google Scholar 

  3. Blanquart, J.-P., Bieber, P., Descargues, G., Hazane, E., Julien, M., Leonardon, L.: Similarities and dissimilarities between safety levels and security levels. In: Proceedings of the Embedded Real-Time Systems and Software Conference (ERTS2 2012) (2012)

    Google Scholar 

  4. Bozzano, M., Villafiorita, A., Aakerlund, O., Bieber, P., Bougnol, C., Böde, E., Bretschneider, M., Cavallo, A., Castel, C., Cifaldi, M., Cimatti, A., Griffault, A., Kehren, C., Lawrence, B., Luedtke, A., Metge, S., Papadopoulos, C., Passarello, R., Peikenkamp, T., Persson, P., Seguin, C., Trotta, L., Valacca, L., Zacco, G.: Esacs: an integrated methodology for design and safety analysis of complex systems. In: Proceedings of ESREL 2003. Balkema Publisher (2003)

    Google Scholar 

  5. Kordy, B., Mauw, S., Radomirovic, S., Schweitzer, P.: Attack-defense trees. Journal of Logic and Computation 24, 55–87 (2012)

    Article  MathSciNet  Google Scholar 

  6. Lund, M.S., Solhaug, B., Stoelen, K.: Model-Driven Risk Analysis. The CORAS Approach. Springer (2010)

    Google Scholar 

  7. Piètre-Cambacédès, L., Bouissou, M.: The promising potential of the bdmp formalism for security modelling. In: Proceedings of the 39th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN 2009) (2009)

    Google Scholar 

  8. S. S-18 and E. W.-. committees. Arp4754a - guidelines for development of civil aircraft and systems. SAE aerospace (2010)

    Google Scholar 

  9. Sagaspe, L., Bel, G., Bieber, P., Boniol, F., Castel, C.: Safe allocation of shared avionics resources. In: Proceedings of the Ninth IEEE International Symposium on High-Assurance Systems Engineering (HASE 2005) (2005)

    Google Scholar 

  10. WG72. Ed202 - airworthiness security process specification. EUROCAE (October 2010)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2014 Springer International Publishing Switzerland

About this paper

Cite this paper

Bieber, P., Brunel, J. (2014). From Safety Models to Security Models: Preliminary Lessons Learnt. In: Bondavalli, A., Ceccarelli, A., Ortmeier, F. (eds) Computer Safety, Reliability, and Security. SAFECOMP 2014. Lecture Notes in Computer Science, vol 8696. Springer, Cham. https://doi.org/10.1007/978-3-319-10557-4_30

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-10557-4_30

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-10556-7

  • Online ISBN: 978-3-319-10557-4

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics