期刊文献+

数据库安全功能测试自动化框架设计与实现 被引量:1

DBMS Security Independence Test Framework Design and Implementation
下载PDF
导出
摘要 数据库安全功能独立性测试是评估者使用代表性测试用例在被测数据库管理系统(DBMS)上执行,并将DBMS内部数据修改和系统输出同预期结果作比较,完成DBMS安全功能实现的评估。给出一种DBMS安全测试自动化模型及基于STAF/STAX开源框架的实现方法。最后以安全审计组件的实现为例,在Oracle和国产DBMS上给出了其用例测试及实验方法,证明了该框架的可用性。 Security function independent testing for DBMS is an security function evaluation process during which an evaluator runs typical test cases against the DBMS under test and compares DBMS internal metadata and actual outputs with expected outputs to accomplish the evaluation on DBMS security function implementation.This paper presented a DBMS security test automation framework and its implementation which is based on an open-source framework called STAF/STAX.We practiced the audit component security test case implementation against Oracle and a domestic-produced DBMS which well proves the usability of this framework.
出处 《计算机科学》 CSCD 北大核心 2012年第2期183-186,共4页 Computer Science
基金 国家"核高基"科技重大专项(2009ZX01045-004-001-03)资助
关键词 数据库管理系统 通用准则(CC) 独立性测试 测试自动化框架 DBMS Common criteria(CC) Independent test Test automation framework
  • 相关文献

参考文献12

  • 1Zhu X C,Zhou B,Li J F,et al.A test automation solution on guifunctional test[C]∥6th IEEE International Conference on In-dustrial Informatics(INDIN).July 2008:1413-1418.
  • 2Kim E H,Na J C,Ryoo S M.Test automation framework forimplementing continuous integration[C]∥6th InternationalConference on Information Technology:New Generations.April2009:784-789.
  • 3Mathew R,Spraetz R.Test automation on a SaaS platform[C]∥2nd International Conference on Software Testing,Verification,and Validation(ICST).April 2009:317-325.
  • 4Lo E,Binnig C,Kossmann D,et al.A framework for testingDBMS features[J].VLDB Journal,2010,19(2):203-230.
  • 5Chandramouli R,Blackburn M.Automated testing of securityfunctions using a combined model&interface driven approach[C]∥37th International Conference on System Sciences.Janua-ry2004:4779-4788.
  • 6Laurie W.Testing Overview and Black-box Testing Techniques[EB/OL].http://agile.csc.ncsu.edu/SEMaterials/BlackBox.pdf,2006.
  • 7IBM Inc.Getting Started With STAF[EB/OL].http://staf.sourceforge.net/current/STAFGS.pdf,2009.
  • 8ISO/IEC 15408-2-2009.Common Criteria for Information Tech-nology Security Evaluation[S].2009.
  • 9NIST.US Government Protection Profile for Database Manage-ment Systems Version 1.3[EB/OL].http://www.niap-ccevs.org/pp/pp_dbms_v1.3.pdf,2010.
  • 10ISO/IEC 18045-2009.Common Methodology for InformationTechnology Security Evaluation[S].2009.

同被引文献7

引证文献1

二级引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部