FIELD: information technology.
SUBSTANCE: invention enables to predict and evaluate security of accessible states of information systems. The method of predicting and evaluating security of accessible states of protected information systems is based on analysis of the system state, security model and safety conditions. A complete set of states accessible from the current system state from security model rules is obtained and subsets of secure and insecure conditions are allocated in it through evaluation of fulfilment of safety conditions in the subsets. This enables to obtain information on security of the system not only in its current state but also predict further fulfilment of security requirements for the system, obtain beforehand and take into account information of security or insecurity of all future states of the system.
EFFECT: guaranteed security of information systems in the current and all possible states relative given safety conditions.
2 cl, 1 dwg
Authors
Dates
2010-07-10—Published
2008-10-23—Filed