

Filling the Gap between Requirements Engineering and Public Key/Trust Management Infrastructures

14 years 7 months ago
Filling the Gap between Requirements Engineering and Public Key/Trust Management Infrastructures
The last years have seen a major interest in designing and deploying trust management and public key infrastructures. Yet, it is still far from clear how one can pass from the organization and system requirements to the actual credentials and attribution of permissions in the PKI infrastructure. This paper presents a semi-formal and formal framework for filling this gap. We devise a methodology for modeling and analyzing security and trust requirements, that extends the Tropos methodology for Early Requirements modeling. The key intuition that underlies the framework is the identification of distinct roles for actors that manipulate resources, accomplish goals or execute tasks (aka functional requirements), and actors that own or permit usage of resources or goals (aka non functional requirements).
Paolo Giorgini, Fabio Massacci, John Mylopoulos, N
Added 01 Jul 2010
Updated 01 Jul 2010
Type Conference
Year 2004
Authors Paolo Giorgini, Fabio Massacci, John Mylopoulos, Nicola Zannone
Comments (0)