This activity will develop one main innovation element of SERENITY, namely Integration Schemes incorporating S&D patterns developed in the focus activities A1, A2 and A3.
It will provide:
- founding research results for the development of the framework in activity 6
- supporting results for the specification and reasoning about security properties, for expression of requirements coming from system owners, end-users and AmI ecosystems, and for the establishment of trust in the security mechanisms.
Integration schemes provide the framework with information on requirements and context conditions for combinations of different S&D mechanisms described as S&D patterns. While S&D patterns describe independent security mechanisms, integration schemes describe solutions for complex S&D requirements achieved by the combination of some S&D mechanisms. This enables the SERENITY framework to automatically react to context changes within the particular scope of context parameters defined by the integration scheme.
Further, this activity will focus on the development of languages and mechanisms to support the specification and evolution of S&D Patterns and Integration Schemes. This specification includes references to the properties provided by the Pattern or Integration Scheme as well as to context conditions imposed by the patterns. Therefore, this activity will also address the specification of S&D properties and context conditions.
It also deals with the design and implementation of trust mechanisms for the Patterns and Integration Schemes. These trust mechanisms will be used by system owners when choosing Patterns and Integration Schemes. On the other hand trust mechanisms will be used to dynamically establish trust among collaborating systems. A special requirements specification language will be provided to end-users such that they will be able to express their security requirements in terms of real-world entities and assets.