Modeling secure navigation in web information systems

M Busch, A Knapp, N Koch - … Conference, BIR 2011, Riga, Latvia, October …, 2011 - Springer
M Busch, A Knapp, N Koch
Perspectives in Business Informatics Research: 10th International Conference …, 2011Springer
Secure web information systems are becoming increasingly important due to rising
cybercrime as well as the growing awareness of data privacy. Besides authentication and
confidential connections, both data access control and navigational access control are the
most relevant security features in this field. Adding such security features, however, to
already implemented web applications is an error-prone task. Our approach enables web
engineers to model security issues in an early phase of the development process. We …
Summary
Secure web information systems are becoming increasingly important due to rising cybercrime as well as the growing awareness of data privacy. Besides authentication and confidential connections, both data access control and navigational access control are the most relevant security features in this field. Adding such security features, however, to already implemented web applications is an error-prone task. Our approach enables web engineers to model security issues in an early phase of the development process. We demonstrate the integration for the UML-based Web Engineering (UWE) method. The approach supports the engineer by providing means to model navigational security with a plugin in a UML modeling tool. Additionally, the models can be used for the verification of web systems and security properties, such as reachability of navigation nodes in general and of those that are restricted to authorized users.
Springer
Showing the best result for this search. See all results