Specification modeling and validation applied to network security gateways

Robert J. Hall · 2001

A network security gateway protects the computers of a home or small office from Internet-based attacks by remote adversaries. It allows all the protected machines to share a single connection to the Internet and may allow secure access, via a VPN tunnel, into a remote corporate network. It may provide other services as well. In this presentation, I will demonstrate how I use executable specification modeling and lightweight formal methods tools to help discover, validate, and refine requirements models. This process iteratively constructs a formal, executable model of (an abstraction of) the implementation and validates behaviors and properties, while suggesting experiments to perform on the implementation to reduce ignorance. The tool suite used is the Interactive Specification Acquisition Tools (ISAT) reactive system design suite.

Read the paper · More papers on PaperTik