作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (2): 130-132.

• 安全技术 • 上一篇    下一篇

信息系统安全测试框架

江常青1,2,邹 琪1,林家骏2   

  1. (1. 中国信息安全产品测评认证中心,北京 100089;2. 华东理工大学信息学院,上海 200237)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-01-20 发布日期:2008-01-20

Framework for Information System Security Test

JIANG Chang-qing1,2, ZOU Qi1, LIN Jia-jun2   

  1. (1. China Information Technology Security Certification Center, Beijing 100089;2. College of Information, East China University of Science and Technology, Shanghai 200237)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-01-20 Published:2008-01-20

摘要: 提出一种信息系统安全测试的框架,包括信息系统安全测试的策略、基础理论、方法和工程等,为建立一个标准的、一致性的信息系统安全测试对比基准提供了基础。给出4种信息系统安全测试分析方法和2种测试方式。

关键词: 安全测试, 系统测试, 测试框架, 信息系统安全

Abstract: This paper proposes a framework for information system security test. It covers many aspect of information system security test, includes test policy, basic theory, test method and test engineering. This framework contributes a lot for building a standard and conforms information system security test. The innovation points of the paper proposes four methods to analysis information system security from test view and two ways for security test.

Key words: security test, system test, test framework, information system security

中图分类号: