We found a match
Your institution may have access to this item. Find your institution then sign in to continue.
- Title
Formal modeling and verification of security controls for multimedia systems in the cloud.
- Authors
Alam, Masoom; Malik, Saif-ur-Rehman; Javed, Qaisar; Khan, Abid; Khan, Shamaila; Anjum, Adeel; Javed, Nadeem; Akhunzada, Adnan; Khan, Muhammad
- Abstract
Organizations deploy the Security Information and Event Management (SIEM) systems for centralized management of security alerts for securing their multimedia content. The SIEM system not only preserves events data, generated by devices and applications, in the form of logs but also performs real-time analysis of the event data. The SIEM works as the Security Operation Centre (SOC) in an organization, therefore, errors in the SIEM may compromise the security of the organization. In addition to focusing on the architecture, features, and the performance of the SIEM, it is imperative to carry out a formal analysis to verify that the system is impeccable. The ensuing research focuses mainly on the formal verification of the OSTORM a SIEM system. We have used High-Level Petri Nets (HLPN) and Z language to model and analyze the system. Moreover, Satisfiability Modulo Theories Library (SMT-Lib) and Z3 solver are used in this research to prove the correctness of the overall working of the OSTORM system. We demonstrate the correctness of the underlying system based on four security properties, namely: a) event data confidentiality, b) authentication, c) event data integrity, and d) alarm integrity. The results reveal that the OSTORM system functions correctly.
- Subjects
COMPUTER network monitoring; SIMS (Information retrieval system); CLOUD computing; VERIFICATION (Empiricism); MULTIMEDIA systems
- Publication
Multimedia Tools & Applications, 2017, Vol 76, Issue 21, p22845
- ISSN
1380-7501
- Publication type
Article
- DOI
10.1007/s11042-017-4853-0