Title
A B Formal Framework For Security Developments In The Domain Of Smart Card Applications
Abstract
We propose in this paper a formal framework based on the B method, that supports the development of secured smart card applications. Accordingly to the Common Criteria methodology, we focus on the formal definition and modelling of access control policies by means of dedicated B models expressing, on one hand, the access control rules, and, on the other hand, the dynamics of the system. These models are then weaved to prod Lice a security kernel. From there, we propose a conformance relationship that aims at establishing whether a concrete representation of the system complies, at the security level, with the security kernel. This embraces both a well-defined notion of security conformance as well as traceability allowing to relate basic events appearing at the level of applications with abstract security policies. This approach is Put in practice on an industrial case Study in the context of the POSE project, involving both academic and industrial partners.
Year
DOI
Venue
2008
10.1007/978-0-387-09699-5_10
PROCEEDINGS OF THE IFIP TC 11/ 23RD INTERNATIONAL INFORMATION SECURITY CONFERENCE
Keywords
Field
DocType
access control, B method, security model, traceability, common criteria, conformance relation
Security convergence,Security testing,Security kernel,Computer security,Computer science,Security service,Cloud computing security,Security information and event management,Logical security,Computer security model
Conference
Citations 
PageRank 
References 
3
0.40
12
Authors
3
Name
Order
Citations
PageRank
Frédéric Dadeau114315.86
Marie-Laure Potet219021.34
Régis Tissot3433.52