Title
A New Security Testing Method and Its Application to the Secure Xenix Kernel
Abstract
A new security testing method is proposed that combines the advantages of both traditional "black box" (monolithic functional) testing and "white box" (functional-synthesis- based) testing. The new method allows significant coverage both for security model-based tests and for individual kernel-call tests. It eliminates redundant kernel test cases (1) by using a variant of control synthesis graphs, (2) by analyzing dependencies between descriptive kernel-call specifications, and (3) by exploiting access check separability. A higher degree of test assurance is achieved than that of other security testing methods because the new method helps eliminate cyclic dependencies among test programs for different kernel calls. The application of this method to the testing of the Secure Xenix* kernel is illustrated. The design and the implementation of Secure Xenix are presented in a companion paper.
Year
DOI
Venue
1986
10.1109/TSE.1987.232890
IEEE Trans. Software Eng.
Keywords
DocType
Volume
test assurance,redundant kernel test case,test program,different kernel call,secure xenix kernel,security testing method,individual kernel-call test,new security testing method,new method,black box,security model-based test,computational modeling,data models,kernel,security testing,security,testing
Conference
13
Issue
ISSN
ISBN
2
1540-7993
0-8186-0716-5
Citations 
PageRank 
References 
8
1.44
5
Authors
7
Name
Order
Citations
PageRank
Virgil D. Gligor14133513.94
C. Sekar Chandersekaran27723.38
Wen-der Jiang35619.94
Wen-der Jiang45619.94
Abhai Johri5339.34
Gary L. Luckenbaugh64818.50
l e reich781.44