From: Majordomo (owner-re-online@it.uts.edu.au)
Date: Tue Aug 03 2004 - 22:39:43 EST
=09by marcie.it.uts.edu.au (PostfixFiltered) with ESMTP id 79FE62621C
=09for <re-online@it.uts.edu.au>; Sun, 1 Aug 2004 00:24:31 +1000 (EST)
Received: from hotmail.com (bay12-f33.bay12.hotmail.com [64.4.35.33])
=09by filter.it.uts.edu.au (Postfix) with ESMTP id 045811D6394
=09for <re-online@it.uts.edu.au>; Sun, 1 Aug 2004 00:24:22 +1000 (EST)
Received: from mail pickup service by hotmail.com with Microsoft SMTPSVC;
=09 Sat, 31 Jul 2004 07:24:16 -0700
Received: from 141.158.72.194 by by12fd.bay12.hotmail.msn.com with HTTP;
=09Sat, 31 Jul 2004 14:24:16 GMT
X-Originating-IP: [141.158.72.194] X-Originating-Email: [donald_firesmith@hotmail.com] X-Sender: donald_firesmith@hotmail.com
Bashar,
You mention that many papers do not provide examples of what security
requirements are. Take a look at the numerous pages on security requiremen=
t
on my website: www.donald-firesmith.com. They provide quite a few specific
examples as well as guidelines for parameterized generic security
requirements. I also have written a couple of columns on the topic in the
Journal of Object Technology available at www.jot.fm.
Don
Donald Firesmith
Senior Member of the Technical Staff
Acquisition Support Program
Software Engineering Institute (SEI)
Carnegie Mellon University (CMU)
Pittsburgh, PA 15213-3890
(412) 268-6874
dgf@sei.cmu.edu
http://www.donald-firesmith.com
>From: Bashar Nuseibeh <B.Nuseibeh@open.ac.uk>
>Reply-To: re-online@it.uts.edu.au
>To: re-online@it.uts.edu.au
>CC: Charles Haley <C.B.Haley@open.ac.uk>, jdm@ieee.org
>Subject: RE: [re-online] How should you specify Security Requirements (fwd=
)
>Date: Fri, 30 Jul 2004 10:36:37 +0100
>
>Dear Colleagues,
>
>You may be interested to know that we have recently updated our technical
>report describing our framework for talking about security requirements.
>You can download it from the URL below:
>
>Jonathan D. Moffett, Charles B. Haley, Bashar Nuseibeh, "Core Security
>Requirements Artefacts", Technical Report number 2004/23, Department of
>Computing, The Open University, UK, ISSN 1744-1986.
>http://computing-reports.open.ac.uk/index.php/2004/200423
>
>Comments and feedback would be VERY welcome.
>
>Regards,
>Bashar
>
>
>
>------------------------------------------------------------------
>Prof. Bashar Nuseibeh
>
>Computing Department, Faculty of Maths & Computing
>The Open University, Walton Hall, Milton Keynes MK7 6AA, UK
>
>Tel: +44-1908-655185; PA: +44-1908-858462
>Fax: +44-1908-652140; Email: B.Nuseibeh@open.ac.uk
>URL: http://mcs.open.ac.uk/ban25
>------------------------------------------------------------------
This archive was generated by hypermail 2.1.6 : Mon Aug 09 2004 - 09:00:25 EST