|
|
カイヤ ハルヒコ
Kaiya Haruhiko 海谷 治彦 所属 神奈川大学 情報学部 計算機科学科 神奈川大学大学院 理学研究科 理学専攻(情報科学領域) 職種 教授 |
|
言語種別 | 英語 |
発行・発表の年月 | 2016/06 |
形態種別 | 学術雑誌 |
査読 | 査読あり |
標題 | Implementation Support of Security Design Patterns Using Test Templates |
執筆形態 | 共著 |
掲載誌名 | i nformation |
掲載区分 | 国外 |
出版社・発行元 | http://www.mdpi.com/ |
巻・号・頁 | 7(2),pp.34-34 |
担当範囲 | Evaluation |
著者・共著者 | Masatoshi Yoshizawa, Hironori Washizaki, Yoshiaki Fukazawa, Takao Okubo, Haruhiko Kaiya and Nobukazu Yoshioka. |
概要 | Security patterns are intended to support software developers as the patterns encapsulate security expert knowledge. However, these patterns may be inappropriately applied because most developers are not security experts, leading to threats and vulnerabilities. Here we propose a support method for security design patterns in the implementation phase of software development. Our method creates a test template from a security design pattern, consisting of an aspect test template to observe the internal processing and a test case template. Providing design information creates a test from the test template with a tool. Because our test template is reusable, it can easily perform a test to validate a security design pattern. In an experiment involving four students majoring in information sciences, we confirm that our method can realize an effective test, verify pattern applications, and support pattern implementation. |
DOI | http://dx.doi.org/10.3390/info7020034 |