Security and Dependability - A Comparison of Concepts

Tomas Olovsson (Institutionen för datorteknik)
IASTED International Conference on Reliability, Quality Control and Risk Assessment, Cambridge, MA, USA. p. 167-172. (1993)
[Konferensbidrag, refereegranskat]

This paper describes the relations between security and dependability, and shows that existing dependability terminology and concepts correspond very well with those found in security. We will show that especially the "fault --> error --> failure" model in dependability is very suitable for use in security and, if used correctly, enables us to group existing security mechanisms into different categories depending on whether they deal with faults, errors or failures. The nature of dependability problems is also investigated and compared with that of security problems, and many resemblances and differences between the two areas arehighlighted. We believe that a mutual understanding of concepts and terminology, as well as an insight into the nature of problems in both areas, can ease the development of new solutions to problems common to both areas.

Nyckelord: Computer systems, security, dependability, concepts, faults, failures

