A Guidance Model for Architecting Secure Mobile Applications

作者: Widura Schwittek , André Diermann , Stefan Eicker

DOI: 10.1007/978-3-642-33392-7_2

关键词: Context (language use)Mobile devicePoint (typography)ElectronicsSoftware systemComputer scienceProcess (engineering)Set (psychology)Computer securitySoftware engineering

摘要: In addition to fast technological advances in the area of mobile devices and its broad adoption todays developed societies, applications do not only address consumer electronics market but are also increasingly being used a business industry context. Thus, we see demand for research developing software systems comprising with special respect security concerns. this paper want from an architectural point view make use concept decisions. We present guidance model that supports on one hand decision-making process during architecting applications. On other presented serves as tool evaluate existing architectures. The has been created based adapted version Zimmermann’s SOAD framework, which is context service-oriented itself consists set interrelated decisions recurring design situations. application demonstrated along real-world scenario. takes into account concerns changing therefore provides extension mechanism paper.

参考文章(25)
Markus Schumacher, Security Engineering with Patterns ,(2003)
Olaf Zimmermann, Petra Kopp, Stefan Pappe, Architectural Knowledge in an SOA Infrastructure Reference Architecture Software Architecture Knowledge Management. pp. 217- 241 ,(2009) , 10.1007/978-3-642-02374-3_12
Jan Bosch, Software Architecture: The Next Step Lecture Notes in Computer Science. pp. 194- 199 ,(2004) , 10.1007/978-3-540-24769-2_14
S. Lipner, The trustworthy computing security development lifecycle annual computer security applications conference. pp. 2- 13 ,(2004) , 10.1109/CSAC.2004.41
Mojtaba Shahin, Peng Liang, Mohammad Reza Khayyambashi, Architectural design decision: Existing models and tools ieee/ifip international conference on software architecture. pp. 293- 296 ,(2009) , 10.1109/WICSA.2009.5290823
Ken Frazer, Building secure software: how to avoid security problems the right way ACM Sigsoft Software Engineering Notes. ,vol. 27, pp. 71- 72 ,(2002) , 10.1145/511152.511169
Abdulaziz Alkussayer, William H. Allen, A scenario-based framework for the security evaluation of software architecture international conference on computer science and information technology. ,vol. 5, pp. 687- 695 ,(2010) , 10.1109/ICCSIT.2010.5564015
Alireza Hashemi Nekoo, Kaveh Vakili, A Practical Course on Mobile-Software Engineering: Mobile Solutions Laboratory international conference on software engineering advances. pp. 389- 393 ,(2009) , 10.1109/ICSEA.2009.95