<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xml:lang="ru"><front><journal-meta><journal-id journal-id-type="publisher-id">inform</journal-id><journal-title-group><journal-title xml:lang="ru">Информатика</journal-title><trans-title-group xml:lang="en"><trans-title>Informatics</trans-title></trans-title-group></journal-title-group><issn pub-type="ppub">1816-0301</issn><issn pub-type="epub">2617-6963</issn><publisher><publisher-name>UIIP NASB</publisher-name></publisher></journal-meta><article-meta><article-id pub-id-type="doi">10.37661/1816-0301-2024-21-4-85-98</article-id><article-id custom-type="elpub" pub-id-type="custom">inform-1307</article-id><article-categories><subj-group subj-group-type="heading"><subject>Research Article</subject></subj-group><subj-group subj-group-type="section-heading" xml:lang="ru"><subject>ИНФОРМАЦИОННЫЕ ТЕХНОЛОГИИ</subject></subj-group><subj-group subj-group-type="section-heading" xml:lang="en"><subject>INFORMATION TECHNOLOGY</subject></subj-group></article-categories><title-group><article-title>К вопросу проектирования компьютерных систем на основе архитектуры нулевого доверия</article-title><trans-title-group xml:lang="en"><trans-title>Towards the computer systems design based on Zero Trust Architecture</trans-title></trans-title-group></title-group><contrib-group><contrib contrib-type="author" corresp="yes"><name-alternatives><name name-style="eastern" xml:lang="ru"><surname>Бражук</surname><given-names>А. И.</given-names></name><name name-style="western" xml:lang="en"><surname>Brazhuk</surname><given-names>A. I.</given-names></name></name-alternatives><bio xml:lang="ru"><p>Бражук Андрей Иосифович, магистр естественных наук, ведущий инженер-программист Информационно-аналитического центра</p><p>ул. Ожешко, 22, Гродно, 230023</p></bio><bio xml:lang="en"><p>Andrei I. Brazhuk, M. Sc., Lead Software Engineer at the Information and Analytical Center</p><p>st. Ozheshko, 22, Grodno, 230023</p></bio><email xlink:type="simple">brazhuk@grsu.by</email><xref ref-type="aff" rid="aff-1"/></contrib><contrib contrib-type="author" corresp="yes"><name-alternatives><name name-style="eastern" xml:lang="ru"><surname>Олизарович</surname><given-names>Е. В.</given-names></name><name name-style="western" xml:lang="en"><surname>Olizarovich</surname><given-names>E. V.</given-names></name></name-alternatives><bio xml:lang="ru"><p>Олизарович Евгений Владимирович, кандидат технических наук, доцент, начальник Информационно-аналитического центра</p><p>ул. Ожешко, 22, Гродно, 230023</p></bio><bio xml:lang="en"><p>Evgeny V. Olizarovich, Ph. D. (Eng.), Assoc. Prof., Head of the Information and Analytical Center</p><p>st. Ozheshko, 22, Grodno, 230023</p></bio><email xlink:type="simple">e.olizarovich@grsu.by</email><xref ref-type="aff" rid="aff-1"/></contrib></contrib-group><aff-alternatives id="aff-1"><aff xml:lang="ru"><institution>Гродненский государственный университет имени Янки Купалы</institution></aff><aff xml:lang="en"><institution>Yanka Kupala State University of Grodno</institution></aff></aff-alternatives><pub-date pub-type="collection"><year>2024</year></pub-date><pub-date pub-type="epub"><day>30</day><month>12</month><year>2024</year></pub-date><volume>21</volume><issue>4</issue><fpage>85</fpage><lpage>98</lpage><permissions><copyright-statement>Copyright &amp;#x00A9; Бражук А.И., Олизарович Е.В., 2024</copyright-statement><copyright-year>2024</copyright-year><copyright-holder xml:lang="ru">Бражук А.И., Олизарович Е.В.</copyright-holder><copyright-holder xml:lang="en">Brazhuk A.I., Olizarovich E.V.</copyright-holder><license xml:lang="ru" license-type="creative-commons-attribution" xlink:href="https://creativecommons.org/licenses/by/4.0/" xlink:type="simple"><license-p>Данная работа распространяется под лицензией Creative Commons Attribution 4.0.</license-p></license><license xml:lang="en" license-type="creative-commons-attribution" xlink:href="https://creativecommons.org/licenses/by/4.0/" xlink:type="simple"><license-p>This work is licensed under a Creative Commons Attribution 4.0 License.</license-p></license></permissions><self-uri xlink:href="https://inf.grid.by/jour/article/view/1307">https://inf.grid.by/jour/article/view/1307</self-uri><abstract><p>Работа посвящена теоретическим и практическим аспектам проектирования компьютерных систем, базирующихся на концепции нулевого доверия. На основе системного подхода к анализу существующих систем нулевого доверия и теоретических моделей, используемых при их проектировании, в работе сформулированы ключевые проблемы реализации систем нулевого доверия. Также в рамках дисциплины шаблонов проектирования и безопасности рассмотрены принципиальное представление концепции нулевого доверия и абстрактная модель (шаблон) контроля доступа архитектуры нулевого доверия. Принципиальное представление может быть использовано для формализации абстрактных шаблонов проектирования и безопасности, а шаблон контроля доступа – для создания производных шаблонов и архитектур компьютерных систем на основе концепции нулевого доверия. Важная особенность шаблона контроля доступа заключается в возможности полнее формулировать функциональные требования и представлять архитектуры проектируемых систем за счет описания уровней контроля доступа (сетевой путь, сессия, транзакция).</p></abstract><trans-abstract xml:lang="en"><p>The work is devoted to theoretical and practical aspects of computer systems design based on the zero trust concept. Based on the system thinking of analyzing existing zero trust systems and theoretical models used in their design, the work describes key problems of implementing zero trust systems. Also, based on design and security patterns, the principles representation of the zero trust concept and the abstract access control model (pattern) of the Zero Trust Architecture are considered.</p><p>The principles representation can be used to mine abstract design and security patterns, and the access control pattern – to create derivative patterns and architectures of computer systems based on zero trust. An advance of the access control pattern is the capacity to more fully formulate functional requirements and represent the architectures of the designed systems due to the description of access control levels (network path, session, transaction).</p></trans-abstract><kwd-group xml:lang="ru"><kwd>компьютерные системы</kwd><kwd>шаблоны проектирования</kwd><kwd>шаблоны безопасности</kwd><kwd>нулевое доверие</kwd><kwd>архитектура нулевого доверия</kwd><kwd>информационная безопасность</kwd></kwd-group><kwd-group xml:lang="en"><kwd>computer systems</kwd><kwd>design patterns</kwd><kwd>security patterns</kwd><kwd>zero trust</kwd><kwd>Zero Trust Architecture</kwd><kwd>information security</kwd></kwd-group></article-meta></front><back><ref-list><title>References</title><ref id="cit1"><label>1</label><citation-alternatives><mixed-citation xml:lang="ru">Zero Trust Architecture. Special Publication (NIST SP-800-207) / S. Rose, O. Borchert, S. Mitchell, S. Connelly. – Gaithersburg : National Institute of Standards and Technology, 2020. – 59 р.</mixed-citation><mixed-citation xml:lang="en">Rose S., Borchert O., Mitchell S., Connelly S. Zero Trust Architecture. Special Publication (NIST SP-800-207). Gaithersburg, National Institute of Standards and Technology, 2020, 59 р.</mixed-citation></citation-alternatives></ref><ref id="cit2"><label>2</label><citation-alternatives><mixed-citation xml:lang="ru">Kindervag, J. Build security into your network’s DNA: The zero trust network architecture / J. Kindervag // Forrester Research Inc. – 2010. – 27 р. – URL: https://www.virtualstarmedia.com/downloads/Forrester_zero_trust_DNA.pdf (date of access: 14.05.2024).</mixed-citation><mixed-citation xml:lang="en">Kindervag J. Build security into your network’s DNA: The zero trust network architecture. Forrester Research Inc., 2010, 27 р. Available at: chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/ https://www.virtualstarmedia.com/downloads/Forrester_zero_trust_DNA.pdf (accessed 14.05.2024).</mixed-citation></citation-alternatives></ref><ref id="cit3"><label>3</label><citation-alternatives><mixed-citation xml:lang="ru">Riley, S. Market guide for ZTNA / S. Riley, N. MacDonald // Gartner. – 2020. – URL: https://www.gartner.com/en/documents/3986053 (date of access: 14.05.2024).</mixed-citation><mixed-citation xml:lang="en">Riley S., MacDonald N. Market guide for ZTNA. Gartner, 2020. Available at: https://www.gartner.com/en/documents/3986053 (accessed 14.05.2024).</mixed-citation></citation-alternatives></ref><ref id="cit4"><label>4</label><citation-alternatives><mixed-citation xml:lang="ru">Cunningham, C. The zero trust eXtended (ZTX) ecosystem / C. Cunningham // Forrester. – Cambridge, MA, 2018. – 15 р. – URL: https://www.cisco.com/c/dam/m/en_sg/solutions/security/pdfs/forrester-ztx.pdf (date of access: 14.05.2024).</mixed-citation><mixed-citation xml:lang="en">Cunningham C. The zero trust eXtended (ZTX) ecosystem. Forrester, Cambridge, MA, 2018, 15 р. Available at: chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/ https://www.cisco.com/c/dam/m/en_sg/solutions/security/pdfs/forrester-ztx.pdf (accessed 14.05.2024).</mixed-citation></citation-alternatives></ref><ref id="cit5"><label>5</label><citation-alternatives><mixed-citation xml:lang="ru">Кучер, В. А. Микросегментация в информационной безопасности / В. А. Кучер // Молодой исследователь Дона. – 2021. – № 3. – С. 54–56.</mixed-citation><mixed-citation xml:lang="en">Kucher V. A. Microsegmentation in information security. Molodoj issledovatel' Dona [Young Explorer of the Don], 2021, no. 3, pp. 54–56 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit6"><label>6</label><citation-alternatives><mixed-citation xml:lang="ru">Мурадова, А. А. Надежность и безопасность интернета вещей / А. А. Мурадова // SCHOLAR. – 2023. – Т. 1, № 27. – С. 109–117.</mixed-citation><mixed-citation xml:lang="en">Muradova A. A. Reliability and security of the internet of things. SCHOLAR, 2023, vol. 1, no. 27, рр. 109–117 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit7"><label>7</label><citation-alternatives><mixed-citation xml:lang="ru">Использование методов искусственного интеллекта для обеспечения кибербезопасности сотовых сетей связи / Е. Сейткулов, Д. Сатыбалдина, Н. Бисенбаева [и др.] // Вестник КазАТК. – 2024. – Т. 132, № 3. – С. 319–328.</mixed-citation><mixed-citation xml:lang="en">Sejtkulov E., Satybaldina D., Bisenbaeva N., Kasenova M., Zhүzbaev S. Using artificial intelligence methods to ensure cybersecurity of cellular networks. Vestnik KazATK [Bulletin of KazATC], 2024, vol. 132, no. 3, рр. 319–328 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit8"><label>8</label><citation-alternatives><mixed-citation xml:lang="ru">Набиев, Б. Р. Интеллектуальный анализ киберугроз: проблемы и перспективы / Б. Р. Набиев, К. Г. Дашдамирова // Оптико-электронные приборы и устройства в системах распознавания образов и обработки изображений : сб. материалов XVII Междунар. науч.-техн. конф., Курск, 12–15 сент. 2023 г. – Курск, 2023. – С. 166–168.</mixed-citation><mixed-citation xml:lang="en">Nabiev B. R., Dashdamirova K. G. Intelligent analysis of cyber threats: problems and prospects. Optikojelektronnye pribory i ustrojstva v sistemah raspoznavanija obrazov i obrabotki izobrazhenij : sbornik materialov XVII Mezhdunarodnoj nauchno-tehnicheskoj konferencii, Kursk, 12–15 sentjabrja 2023 g. [Optical-electronic Devices and Apparatuses in Pattern Recognition and Image Processing Systems : Collection of Materials of the XVII International Scientific and Technical Conference, Kursk, 12–15 September 2023]. Kursk, 2023, рр. 166–168 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit9"><label>9</label><citation-alternatives><mixed-citation xml:lang="ru">Assunção, P. A zero trust approach to network security / P. Assunção // Proc. of the Digital Privacy and Security Conf., Porto, Protugal, 16 Jan. 2019. – Porto, Protugal, 2019. – P. 65–72.</mixed-citation><mixed-citation xml:lang="en">Assunção P. A zero trust approach to network security. Proceedings of the Digital Privacy and Security Conference, Porto, Protugal, 16 January 2019. Porto Protugal, 2019, pp. 65–72.</mixed-citation></citation-alternatives></ref><ref id="cit10"><label>10</label><citation-alternatives><mixed-citation xml:lang="ru">Карелова, О. Л. Сравнительный анализ межсетевых экранов нового поколения / О. Л. Карелова, Г. А. Лисин // Вестник УрФО. Безопасность в информационной сфере. – 2024. – Т. 1, № 51. – С. 22–29.</mixed-citation><mixed-citation xml:lang="en">Karelova O. L., Lisin G. A. Comparative analysis of new generation firewalls. Vestnik UrFO. Bezopasnost' v informacionnoj sfere [Bulletin of the Ural Federal District. Security in the Information Sphere], 2024, vol. 1, no. 51, рр. 22–29 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit11"><label>11</label><citation-alternatives><mixed-citation xml:lang="ru">Глухова, Т. В. Актуальность использования SECURITY AS A SERVICE в современных реалиях / Т. В. Глухова, Е. В. Горина, О. М. Ручина // Инновации в науке. – 2015. – № 11(48). – С. 115–120.</mixed-citation><mixed-citation xml:lang="en">Gluhova T. V., Gorina E. V., Ruchina O. M. The relevance of using SECURITY AS A SERVICE in modern realities. Innovacii v nauke [Innovations in Science], 2015, no. 11(48), рр. 115–120 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit12"><label>12</label><citation-alternatives><mixed-citation xml:lang="ru">Transparent microsegmentation in smart home {IoT} networks / A. Osman, A. Wasicek, S. Köpsell, T. Strufe // 3rd USENIX Workshop on Hot Topics in Edge Computing (HotEdge 20), Online, 25–26 June 2020. – USENIX Association, 2020. – URL: https://www.usenix.org/conference/hotedge20/presentation/osman (date of access: 14.05.2024).</mixed-citation><mixed-citation xml:lang="en">Osman A., Wasicek A., Köpsell S., Strufe T. Transparent microsegmentation in smart home {IoT} networks. 3rd USENIX Workshop on Hot Topics in Edge Computing (HotEdge 20), Online, 25–26 June 2020. USENIX Association, 2020. Available at: https://www.usenix.org/conference/hotedge20/presentation/osman (accessed 14.05.2024).</mixed-citation></citation-alternatives></ref><ref id="cit13"><label>13</label><citation-alternatives><mixed-citation xml:lang="ru">Урбанович, П. П. Элементы современных компьютерных сетей и сетевых технологий / П. П. Урбанович, М. Д. Плонковски // Передовые технологии и материалы будущего : сб. ст. IV Междунар. науч.-техн. конф. «Минские научные чтения-2021», Минск, 9 дек. 2021 г. : в 3 т. – Минск : БГТУ, 2021. – Т. 3. – С. 240–246.</mixed-citation><mixed-citation xml:lang="en">Urbanovich P. P., Plonkovski M. D. Elements of modern computer networks and network technologies. Peredovye tehnologii i materialy budushhego : sbornik statej IV Mezhdunarodnoj nauchno-tehnicheskoj konferencii «Minskie nauchnye chtenija-2021», Minsk, 9 dekabrja 2021 g. : v 3 tomah [Advanced Technologies and Materials of the Future : Collection of Articles of the IV International Scientific and Technical Conference "Minsk Scientific Readings-2021", Minsk, 9 December 2021 : in 3 Volumes]. Minsk, Belorusskij gosudarstvennyj tehnologicheskij universitet, 2021, vol. 3, рр. 240–246 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit14"><label>14</label><citation-alternatives><mixed-citation xml:lang="ru">Нурудинов, Г. М. Адаптивное управление трафиком в SDN-сетях с применением машинного обучения / Г. М. Нурудинов // Экономика и качество систем связи. – 2024. – № 1(31). – С. 114–122.</mixed-citation><mixed-citation xml:lang="en">Nurudinov G. M. Adaptive traffic management in sdn networks using machine learning. Ekonomika i kachestvo sistem svyazi [Economy and Quality of Communication Systems], 2024, no. 1(31), рр. 114–122 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit15"><label>15</label><citation-alternatives><mixed-citation xml:lang="ru">Предложение стратегии новой реальности: методология нулевого доверия / А. Нурушева, Р. Сафин, А. Амренов, Д. Сатыбалдина // Вестник КазАТК. – 2023. – Т. 127, № 4. – С. 140–147.</mixed-citation><mixed-citation xml:lang="en">Nurusheva A., Safin R., Amrenov A., Satybaldina D. Proposing a strategy for a new reality: zero trust methodology. Vestnik KazATK [Bulletin of KazATC], 2023, vol. 127, no. 4, рр. 140–147 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit16"><label>16</label><citation-alternatives><mixed-citation xml:lang="ru">Ward, R. Beyondcorp: A new approach to enterprise security / R. Ward, B. Beyer // Login: the Magazine of USENIX &amp; SAGE. – 2014. – Vol. 39, no. 6. – P. 6–11.</mixed-citation><mixed-citation xml:lang="en">Ward R., Beyer B. Beyondcorp: A new approach to enterprise security. Login: the magazine of USENIX &amp; SAGE, 2014, vol. 39, no. 6, рр. 6–11.</mixed-citation></citation-alternatives></ref><ref id="cit17"><label>17</label><citation-alternatives><mixed-citation xml:lang="ru">Sallam, A. On the security of SDN: A completed secure and scalable framework using the softwaredefined perimeter / A. Sallam, A. Refaey, A. Shami // IEEE Access. – 2019. – Vol. 7. – Р. 146577–146587.</mixed-citation><mixed-citation xml:lang="en">Sallam A., Refaey A., Shami A. On the security of SDN: A completed secure and scalable framework using the software-defined perimeter. IEEE Access, 2019, vol. 7, рр. 146577–146587.</mixed-citation></citation-alternatives></ref><ref id="cit18"><label>18</label><citation-alternatives><mixed-citation xml:lang="ru">Fernandez, E. B. A critical analysis of Zero Trust Architecture (ZTA) / E. B. Fernandez, A. Brazhuk // Computer Standards &amp; Interfaces. – 2024. – Vol. 89. – Р. 103832.</mixed-citation><mixed-citation xml:lang="en">Fernandez E. B., Brazhuk A. A critical analysis of Zero Trust Architecture (ZTA). Computer Standards &amp; Interfaces, 2024, vol. 89, р. 103832</mixed-citation></citation-alternatives></ref><ref id="cit19"><label>19</label><citation-alternatives><mixed-citation xml:lang="ru">Shitov, A. Software complex for risk-oriented attribute-based access control mechanism / A. Shitov, N. Stelmakh, S. Magomedov // International Journal of Open Information Technologies. – 2024. – Vol. 12, no. 6. – Р. 133–142.</mixed-citation><mixed-citation xml:lang="en">Shitov A., Stelmakh N., Magomedov S. Software complex for risk-oriented attribute-based access control mechanism. International Journal of Open Information Technologies, 2024, vol. 12, no. 6, рр. 133–142.</mixed-citation></citation-alternatives></ref><ref id="cit20"><label>20</label><citation-alternatives><mixed-citation xml:lang="ru">Park, J. The UCONABC usage control model / J. Park, R. Sandhu // ACM Transactions on Information and System Security (TISSEC). – 2004. – Vol. 7, no. 1. – Р. 128–174.</mixed-citation><mixed-citation xml:lang="en">Park J., Sandhu R. The UCONABC usage control model. ACM Transactions on Information and System Security (TISSEC), 2004, vol. 7, no. 1, рр. 128–174.</mixed-citation></citation-alternatives></ref><ref id="cit21"><label>21</label><citation-alternatives><mixed-citation xml:lang="ru">Fernandez-Buglioni, E. Security Patterns in Practice: Designing Secure Architectures Using Software Patterns / E. Fernandez-Buglioni. – John Wiley &amp; Sons, 2013. – 582 р.</mixed-citation><mixed-citation xml:lang="en">Fernandez-Buglioni E. Security Patterns in Practice: Designing Secure Architectures Using Software Patterns. John Wiley &amp; Sons, 2013, 582 р.</mixed-citation></citation-alternatives></ref><ref id="cit22"><label>22</label><citation-alternatives><mixed-citation xml:lang="ru">Иванов, П. А. Модель реализации управления доступом к информационным активам в концепции нулевого доверия / П. А. Иванов, И. В. Капгер, А. С. Шабуров // Вестник Пермского национального исследовательского политехнического университета. Электротехника, информационные технологии, системы управления. – 2023. – № 45. – С. 147–163.</mixed-citation><mixed-citation xml:lang="en">Ivanov P. A., Kapger I. V., Shaburov A. S. Model for implementing access control to information assets in the zero trust concept. Vestnik Permskogo nacional'nogo issledovatel'skogo politekhnicheskogo universiteta. Elektrotekhnika, informacionnye tekhnologii, sistemy upravleniya [Perm National Research Polytechnic University Bulletin. Electrotechnics, Information Technologies, Control Systems], 2023, no. 45, рр. 147–163 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit23"><label>23</label><citation-alternatives><mixed-citation xml:lang="ru">Михневич, С. Ю. Эволюция понятия интероперабельности открытых информационных систем / С. Ю. Михневич, А. А. Тежар // Цифровая трансформация. – 2023. – Т. 29, № 2. – С. 60–66.</mixed-citation><mixed-citation xml:lang="en">Mihnevich S. Yu., Tezhar A. A. Evolution of the concept of interoperability of open information systems. Cifrovaya transformaciya [Digital Transformation], 2023, vol. 29, no. 2, рр. 60–66 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit24"><label>24</label><citation-alternatives><mixed-citation xml:lang="ru">Дулин, С. К. Алгоритм улучшения согласованности структурной интероперабельности / С. К. Дулин, А. Б. Рябцев // Надежность. – 2024. – Т. 24, № 2. – С. 8–15.</mixed-citation><mixed-citation xml:lang="en">Dulin S. K., Ryabcev A. B. Algorithm for improving structural interoperability consistency. Nadezhnost' [Reliability], 2024, vol. 24, no. 2, рр. 8–15 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit25"><label>25</label><citation-alternatives><mixed-citation xml:lang="ru">Dang, T. K. XACs-DyPol: Towards an XACML-based Access Control Model for Dynamic Security Policy / T. K. Dang, X. S. Ha, L. K. Tran. – 2020. – URL: https://arxiv.org/abs/2005.07160 (date of access: 14.05.2024).</mixed-citation><mixed-citation xml:lang="en">Dang T. K., Ha X. S., Tran L. K. XACs-DyPol: Towards an XACML-based Access Control Model for Dynamic Security Policy, 2020. Available at: https://arxiv.org/abs/2005.07160 (accessed 14.05.2024).</mixed-citation></citation-alternatives></ref><ref id="cit26"><label>26</label><citation-alternatives><mixed-citation xml:lang="ru">Артамонов, В. А. Искусственный интеллект и безопасность: проблемы, заблуждения, реальность и будущее / В. А. Артамонов, Е. В. Артамонова // Россия: тенденции и перспективы развития. – 2022. – Вып. 17, ч. 1. – С. 585–594.</mixed-citation><mixed-citation xml:lang="en">Artamonov V. A., Artamonova E. V. Artificial intelligence and security: problems, misconceptions, reality and future. Rossiya: tendencii i perspektivy razvitiya [Russia: Development Trends and Prospects], 2022, iss. 17, part 1, рр. 585–594 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit27"><label>27</label><citation-alternatives><mixed-citation xml:lang="ru">Saltzer, J. H. The protection of information in computer systems / J. H. Saltzer, M. D. Schroeder // Proceedings of the IEEE. – 1975. – Vol. 63, no. 9. – P. 1278–1308.</mixed-citation><mixed-citation xml:lang="en">Saltzer J. H., Schroeder M. D. The protection of information in computer systems. Proceedings of the IEEE, 1975, vol. 63, no. 9, рр. 1278–1308.</mixed-citation></citation-alternatives></ref><ref id="cit28"><label>28</label><citation-alternatives><mixed-citation xml:lang="ru">Добрышин, М. М. Тенденции развития теории информационной безопасности в условиях динамического изменения парадигмы применения информационно-технических воздействий / М. М. Добрышин // Экономика и качество систем связи. – 2022. – № 1(23). – С. 37–43.</mixed-citation><mixed-citation xml:lang="en">Dobryshin M. M. Trends in the development of information security theory in the context of dynamic change in the paradigm of the use of information technology impacts. Ekonomika i kachestvo sistem svyazi [Economy and Quality of Communication Systems], 2022, no. 1(23), рр. 37–43 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit29"><label>29</label><citation-alternatives><mixed-citation xml:lang="ru">Способ создания доверенной аппаратно-программной платформы для применения в информационных системах специального назначения / А. Ю. Боровиков, О. А. Маслов, С. А. Мордвинов, А. А. Есафьев // Безопасность информационных технологий. – 2021. – Т. 28, № 4. – С. 104–117.</mixed-citation><mixed-citation xml:lang="en">Borovikov A. Yu., Maslov O. A., Mordvinov S. A., Esaf'ev A. A. Method for creating a trusted hardware and software platform for use in special-purpose information systems. Bezopasnost' informacionnyh tekhnologij [Information Technology Security], 2021, vol. 28, no. 4, рр. 104–117 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit30"><label>30</label><citation-alternatives><mixed-citation xml:lang="ru">Design Patterns: Elements of Reusable Object-Oriented Software / E. Gamma, R. Helm, R. Johnson, J. Vlissides. – Addison-Wesley Professional, 1994. – 416 р.</mixed-citation><mixed-citation xml:lang="en">Gamma E., Helm R., Johnson R., Vlissides J. Design Patterns: Elements of Reusable Object-Oriented Software. Addison-Wesley Professional, 1994, 416 р.</mixed-citation></citation-alternatives></ref><ref id="cit31"><label>31</label><citation-alternatives><mixed-citation xml:lang="ru">Валеев, С. С. Паттерны проектирования архитектуры нулевого доверия / С. С. Валеев, Н. В. Конд ратьева // Инженерный вестник Дона. – 2023. – № 9. – С. 105.</mixed-citation><mixed-citation xml:lang="en">Valeev S. S., Kondrat'eva N. V. Zero trust architecture design patterns. Inzhenernyj vestnik Dona [Engineering Bulletin of the Don], 2023, no. 9, р. 105 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit32"><label>32</label><citation-alternatives><mixed-citation xml:lang="ru">Чернышев, С. А. Классификация общих шаблонов проектирования мультиагентных систем / С. А. Чернышев // Программные продукты и системы. – 2022. – Т. 35, № 4. – С. 670–679.</mixed-citation><mixed-citation xml:lang="en">Chernyshev S. A. Classification of common design patterns for multi-agent systems. Programmnye produkty i sistemy [Software Products and Systems], 2022, vol. 35, no. 4, рр. 670–679 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit33"><label>33</label><citation-alternatives><mixed-citation xml:lang="ru">Ермоченко, С. А. Проектирование программного обеспечения / С. А. Ермоченко, Е. А. Корчевская. – Витебск : ВГУ имени П. М. Машерова, 2023. – 51 с.</mixed-citation><mixed-citation xml:lang="en">Ermochenko S. A., Korchevskaya E. A. Proektirovanie programmnogo obespecheniya. Software Design. Vitebsk, Vitebskij gosudarstvennyj universitet imeni P. M. Masherova, 2023, 51 р. (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit34"><label>34</label><citation-alternatives><mixed-citation xml:lang="ru">Бражук, А. И. Онтологический анализ в задачах моделирования угроз системам на основе контейнерных приложений / А. И. Бражук, Е. В. Олизарович // Информатика. – 2023. – Т. 20, № 4. – С. 69–86.</mixed-citation><mixed-citation xml:lang="en">Brazhuk A. I., Olizarovich E. V. Ontological analysis in the problems of container applications threat modelling. Informatika [Informatics], 2023, vol. 20, no. 4, pp. 69−86 (In Russ.).</mixed-citation></citation-alternatives></ref><ref id="cit35"><label>35</label><citation-alternatives><mixed-citation xml:lang="ru">Пасынкова, А. А. Проектирование архитектуры системы мониторинга на основе паттернов проектирования / А. А. Пасынкова, О. Л. Викентьева // Труды Института системного программирования РАН. – 2023. – Т. 35, № 3. – С. 137–150.</mixed-citation><mixed-citation xml:lang="en">Pasynkova A. A., Vikent'eva O. L. Designing a monitoring system architecture based on design patterns. Trudy Instituta sistemnogo programmirovaniya RAN [Proceedings of the Institute of System Programming of the Russian Academy of Sciences], 2023, vol. 35, no. 3, рр. 137–150 (In Russ).</mixed-citation></citation-alternatives></ref><ref id="cit36"><label>36</label><citation-alternatives><mixed-citation xml:lang="ru">Brazhuk, A. An abstract security pattern for Zero Trust Access Control / A. Brazhuk, E. B. Fernandez // Proc. of the 29th Intern. Conf. on Pattern Languages of Programs (PLoP '22), Virtual Event, 17–24 Oct. 2022. – The Hillside Group, United States, 2022. – Article 2. – Р. 1–5.</mixed-citation><mixed-citation xml:lang="en">Brazhuk A., Fernandez E. B. An abstract security pattern for Zero Trust Access Control. Proceedings of the 29th International Conference on Pattern Languages of Programs (PLoP '22), Virtual Event, 17–24 October 2022. The Hillside Group, United States, 2022, article 2, рр. 1–5.</mixed-citation></citation-alternatives></ref></ref-list><fn-group><fn fn-type="conflict"><p>The authors declare that there are no conflicts of interest present.</p></fn></fn-group></back></article>
