loading...
ACIR: An Aspect-Connector for Intrusion Response
Beijing, China July 24-July 27
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/COMPSAC.2007.492007 31st Annual International Comput ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Mohammad Gias Uddin, Queen?s University, Kingston, Ontario, Canada
Hossain Shahriar, Queen?s University, Kingston, Ontario, Canada
Mohammad Zulkernine, Queen?s University, Kingston, Ontario, Canada
The modularization concept behind component-based software (CBS) cannot be applied effectively for cross-cutting concerns such as security. Aspect-oriented programming (AOP) helps in better modularization by identifying crosscutting concerns and providing a suitable way to separate those concerns. In this paper, we provide an aspectconnector based intrusion response (detection and prevention) architecture for CBS by bringing the concepts of aspects into components. The aspect-connector is named as ACIR (Aspect Connector for Intrusion Response). Component interfaces act as join points, and aspects containing pointcuts and advices are defined in ACIR configuration file. Advices applicable to particular pointcuts are two types. Signature advices are used to detect intrusions, and action advices are executed to prevent intrusions. A prototype of this architecture is implemented and evaluated using some intrusions included in the Web Application Security Consortium (WASC) intrusion list. This approach detects and prevents intrusions in CBS while maintaining encapsulation, reusability, and modularity.
Citation:
Mohammad Gias Uddin, Hossain Shahriar, Mohammad Zulkernine, "ACIR: An Aspect-Connector for Intrusion Response," compsac, vol. 2, pp.249-254, 2007 31st Annual International Computer Software and Applications Conference, 2007
Usage of this product signifies your acceptance of the Terms of Use.