Swinburne
Browse

Secrobat: Secure and robust component-based architectures

Download (287.17 kB)
conference contribution
posted on 2024-07-11, 11:31 authored by Artem Vorobiev, Jun HanJun Han
Software systems, component-based systems (CBS) in particular, have a lot of vulnerabilities that may be exploited by intruders. Companies spend much time and money to 'patch' them up. It is partly due to the fact that a systemýýs security features are often added to the system after its functional requirements have been addressed. As such, system security features are not systematically designed into the system, and consequently the system has inherent security 'holes'. Therefore, there is a strong need for a systematic engineering approach to developing secure and robust systems, especially distributed systems, by considering functional and security requirements at the same time. In particular, these systems should be highly adaptive and reconfigurable in order to resist different types of attacks and failures. This paper introduces a reference architecture, called Secrobat, for creating secure and robust CBS. It has several key features including defensive components and the adaptive and reconfigurable architecture with the hybrid peer/super-peer structure. The reference architecture is illustrated with an example gaming system.

History

Available versions

PDF (Published version)

ISBN

769526853

ISSN

1530-1362

Journal title

Proceedings - Asia-Pacific Software Engineering Conference, APSEC

Conference name

Asia-Pacific Software Engineering Conference, APSEC

Pagination

7 pp

Publisher

IEEE

Copyright statement

Copyright © 2006 IEEE. The published version is reproduced in accordance with the copyright policy of the publisher. Personal use of this material is permitted. However, permission to reprint/republish this material for advertising or promotional purposes or for creating new collective works for resale or redistribution to servers or lists, or to reuse any copyrighted component of this work in oTher works must be obtained from The IEEE.

Language

eng

Usage metrics

    Publications

    Categories

    No categories selected

    Keywords

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC