Security and Protection in Information Processing Systems 2004
DOI: 10.1007/1-4020-8143-x_5
|View full text |Cite
|
Sign up to set email alerts
|

Analyzing Network Management Effects with SPIN and cTLA

Abstract: Abstract:Since many security incidents of networked computing infrastructures arise from inadequate technical management actions, we aim at a method supporting the formal analysis of those implications which administration activities rnay have towards system security. We apply the specification language cTLA which supports the modular description ofprocess systems and facilitates the construction of a modeling framework. The framework defines a generic modeling structure and provides re-usable model elements. … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1

Citation Types

0
4
0

Year Published

2005
2005
2011
2011

Publication Types

Select...
3

Relationship

1
2

Authors

Journals

citations
Cited by 3 publications
(4 citation statements)
references
References 16 publications
0
4
0
Order By: Relevance
“…We therefore plan to also formalize our semantics in Promela, so we can use the Spin [8] model checker, which implements partial order reduction. The formalisms are compatible, as there is already work for transforming another TLA derivative, cTLA, into Promela automatically [20]. For relatively simple blocks, where the contract must be verified for any number of instances, the TLA formalism allows for writing manual refinement proofs as well [16].…”
Section: Discussionmentioning
confidence: 99%
“…We therefore plan to also formalize our semantics in Promela, so we can use the Spin [8] model checker, which implements partial order reduction. The formalisms are compatible, as there is already work for transforming another TLA derivative, cTLA, into Promela automatically [20]. For relatively simple blocks, where the contract must be verified for any number of instances, the TLA formalism allows for writing manual refinement proofs as well [16].…”
Section: Discussionmentioning
confidence: 99%
“…Explicit notions of modules, process types and composition of process types [HK00] are added, however. The following section gives a short overview of the cTLA 2003 process types, a more detailed description is contained in [RK03].…”
Section: Ctlamentioning
confidence: 99%
“…If a process does not contribute to a system action, it performs a stuttering step. In cTLA 2003 [RK03] process stuttering steps do not have to be explicitly listed on the right hand side of system actions.…”
Section: Ctlamentioning
confidence: 99%
See 1 more Smart Citation