A Case Study in Requirements for Survivable Systems

نویسندگان

  • Robert J. Ellison
  • Richard C. Linger
  • Thomas Longstaff
  • Nancy R. Mead
چکیده

Increasing societal dependency on critical infrastructure systems is driving emergence of a new category of requirements engineering that addresses survivability objectives. This paper presents a case study in survivability requirements analysis. Survivability is the capability of a system to fulfill its mission, in a timely manner, in the presence of attacks, failures, or accidents. The Survivable Network Analysis (SNA) method permits assessment of survivability strategies at the requirements and architecture levels. Steps in the SNA method include mission requirements and architecture definition, essential capability definition, compromisable capability definition, and survivability analysis. Essential service scenarios and intrusion scenarios play key roles in the method. Survivability requirements must be defined for intrusion resistance, recognition, and recovery. This case study summarizes the application and results of applying the SNA method to a subsystem of a large-scale, distributed healthcare system. The study recommended specific modifications to requirements to support survivability objectives. 1 System Survivability Concepts As part of its Survivable Network Systems Initiative, the CERT* Coordination Center of the Software Engineering Institute (SEI) is developing technology and methods for analyzing and designing survivable network systems [1], [2]. Survivability is defined as the capability of a system to fulfill its mission, in a timely manner, in the presence of attacks, failures, or accidents. Unlike traditional security measures that require central control and administration, survivability addresses highly distributed, unbounded network environments with no central control or unified security policy. Survivability focuses on delivery of essential services and preservation of essential assets, even when systems are penetrated and compromised. As an emerging discipline, survivability builds on existing disciplines, including security, fault tolerance, and reliability, and introduces new concepts and principles. 2 The Survivable Network Analysis Method A primary focus of the SEI effort has been development of the Survivable Network Analysis (SNA) method for assessing and improving the survivability of network architectures, as depicted in Figure 1. ● About the SEI

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Requirements Engineering for Survivable Systems

.............................................................................................................vii 1 Background ..................................................................................................1 1.1 Definition of Requirements Engineering.................................................1 1.2 Typical Requirements Engineering Activities..................................

متن کامل

Requirements Definition for Survivable Network Systems

Pervasive societal dependency on large-scale, unbounded network systems, the substantial risks of such dependency, and the growing sophistication of system intruders, have focused increased attention on how to ensure network system survivability. Survivability is the capacity of a system to provide essential services even after successful intrusion and compromise, and to recover full services i...

متن کامل

A Fast Strategy to Find Solution for Survivable Multicommodity ‎Network‎

This paper proposes an immediately efficient method, based on Benders Decomposition (BD), for solving the survivable capacitated network design problem. This problem involves selecting a set of arcs for building a survivable network at a minimum cost and within a satisfied flow. The system is subject to failure and capacity restriction. To solve this problem, the BD was initially proposed with ...

متن کامل

Designing a local Flexible Model for Electronic Systems Acquisition Based on Systems Engineering, Case Study: Electronic high-tech Industrial

In this research we have presented a local model for implementing systems engineering activities in optimized acquisition of electronic systems in Electronic High-Tech Industrial. In this regard, after reviewing the literature and the use of documents, articles and Latin books, we have collected system acquisition life cycle models from different resources. after considering the criteria of the...

متن کامل

A directed cycle-based column-and-cut generation method for capacitated survivable network design

A network is said to be survivable if it has sufficient capacity for rerouting all of its flow under the failure of any one of its edges. Here we present a polyhedral approach for designing survivable networks. We describe a mixed–integer programming model, in which sufficient slack is explicitly introduced on the directed cycles of the network while flow routing decisions are made. In case of ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1996