[Opendnssec-develop] Use Case diagram for OpenDNSSEC

Rick van Rein rick at openfortress.nl
Mon Jan 19 11:05:40 UTC 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello Rickard,

> Is it possible to add a security level to each component of the data flow diagram (DFD)? White/black/grey meaning that the incoming data/resource is trusted/untrusted/somewhat-trusted. Useful when evaluating the source code for any security holes.

I don't think it is possible to point at whole components and rate their
"importantance to security".  I think each component could be open to its
own forms of attack, just like any line of code could contain a buffer
overflow vulnerability.

I am working on a security testing approach from another angle, but this
is currently too premature to be worth any discussion.


Cheers,
 -Rick

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
Comment: New to PGP? http://openfortress.nl/doc/essay/OpenPGP/index.nl.html

iD8DBQFJdF5sFBGpwol1RgYRAsdFAJ9MbObU8qVr9D3YBJ/8O/l7Ep/UAwCgmjkQ
rlL79ldMHmwLNTIdHKhWpoE=
=VdLA
-----END PGP SIGNATURE-----



More information about the Opendnssec-develop mailing list