A1.D5.1 - Preliminary Version of S&D Metrics
This deliverable provides the description of Security and Dependability metrics in scopes of Serenity project, especially at the A1 level. A1.D5.1 explains the concepts of quality attributes measured by these metrics and Target of Evaluation (ToE) which is assessed by the metrics and acts as the source of data for the assessment. The document contains some general Security and Dependability metrics and the corresponding assessment methods which can be applied in various scenarios. Finally, the proposed metrics are instantiated for particular domain-specific applications (e.g., Air Traffic Management).
This report is intended to address the following issues:
- The definition of terminology and key concepts
- State of the art for S&D metrics
- The definition of SERENITY S&D metrics
Instantiated the proposed metrics for SERENITY case studies
A4.D4.1 - Mechanisms for detecting potential S&D threats
This deliverable presents the mechanisms for detecting threats at run-time in the context of the SERENITY framework. These mechanisms are being implemented and in their final version will constitute an integrated part of the SERENITY framework serving two main functional objectives within it. The first objective is to support the automatic generation of monitoring policies and attack signatures that can be used for the detection of runtime violations of S&D properties security. The second objective is to estimate the likelihood of potential violations of S&D properties (S&D threats).