Modelling and Analysing Zero-Trust-Architectures Regarding Performance and Security

Cholakov, Evgeni

Abstract (englisch):

Integrating a Zero Trust Architecture (ZTA) into a system is a step towards establishing a
good defence against external and internal threats. However, there are different approaches
to integrating a ZTA which vary in the used components, their assembly and allocation. The
earlier in the development process those approaches are evaluated and the right one is selected
the more costs and effort can be reduced.
In this thesis, we analyse the most prominent standards and specifications for integrating
a ZTA and derive a general model by extracting core ZTA tasks and logical components.
We model these using the Palladio Component Model to enable assessing ZTAs at design
time. In our components, we encapsulate different variations of the functionality of these
components to make them reusable and adaptable to the varying ZTA approaches. We make
our components extensible to allow developers to adjust them to their design requirements. We
combine performance and security annotations to create a single model which supports both
performance and security analysis. By doing this we also assess the possibility of combining
performance and security analyses.
DOI: 10.5445/IR/1000171583
Veröffentlicht am 12.06.2024
Cover der Publikation
Zugehörige Institution(en) am KIT Institut für Informationssicherheit und Verlässlichkeit (KASTEL)
Publikationstyp Hochschulschrift
Publikationsjahr 2024
Sprache Englisch
Identifikator KITopen-ID: 1000171583
Verlag Karlsruher Institut für Technologie (KIT)
Art der Arbeit Abschlussarbeit - Master
Prüfungsdaten 02.02.2024
Referent/Betreuer Schmid, Larissa
Boltz, Nicolas
Taghavi, Bahareh
