An End-to-End Dynamic Trust Framework for Service-Oriented Architecture

被引:1
|
作者
Azarmi, Mehdi [1 ]
Bhargava, Bharat [1 ]
机构
[1] Purdue Univ, Dept Comp Sci, W Lafayette, IN 47907 USA
关键词
Trust Management; Service-Oriented Architecture; Security; ALGORITHMS;
D O I
10.1109/CLOUD.2017.78
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Service-oriented architecture (SOA) is an architectural paradigm that advocates composition of loosely-coupled services in order to construct more complex applications. The agility and complexity of modern web services on one hand and the arbitrary interconnections among them on the other hand, make it difficult to maintain a sustainable trustworthiness in long-running SOA-based applications. Moreover, the chain of participating services in a specific SOA invocation may not be visible to the service consumers, which leads to a lack of accountability. To address these challenges in SOA, we propose the following contributions. First, we design a new dynamic and flexible trust model based on graph abstraction that uses multiple trust strategies to calculate trust across SOA. This trust model keeps track of three trust metrics: individual service trust, session trust, and composite trust. We further design a trust engine component that implements the proposed trust model and that continuously maintains the quantitative end-to-end trust based on processing actual execution of services. Second, to prove the practicality and usefulness of the proposed framework, we have implemented an adaptive and secure service composition engine (ASSC) which takes advantage of an efficient algorithm to generate service compositions with near-optimal trustworthiness under predefined QoS constraints. Finally, we have developed a tool that is able to automatically deploy SOA testbeds from arbitrary directed acyclic graphs (created in the GUI). This tool enables the researcher to study the dynamics of new trust algorithms and strategies under different scenarios (e.g., arbitrary SOA topologies and attacks). We have extensively studied the effectiveness and performance of the proposed solutions using testbeds in the Amazon EC2 cloud.
引用
收藏
页码:568 / 575
页数:8
相关论文
共 50 条
  • [1] End-to-End Policy Monitoring and Enforcement for Service-Oriented Architecture
    Azarmi, Mehdi
    Bhargava, Bharat
    [J]. 2017 IEEE 10TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD), 2017, : 58 - 65
  • [2] An End-to-End Implementation of a Service-Oriented Architecture for Data-Driven Smart Buildings
    Chamari, Lasitha
    Petrova, Ekaterina
    Pauwels, Pieter
    [J]. IEEE ACCESS, 2023, 11 : 117261 - 117281
  • [3] An End-to-End Security Model for Adaptive Service-Oriented Applications
    Abdellatif, Takoua
    Bozga, Marius
    [J]. SERVICE-ORIENTED COMPUTING - ICSOC 2017 WORKSHOPS, 2018, 10797 : 43 - 54
  • [4] Service-oriented 5G network architecture: an end-to-end software defining approach
    Yang, Mao
    Li, Yong
    Li, Bo
    Jin, Depeng
    Chen, Sheng
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2016, 29 (10) : 1645 - 1657
  • [5] An End to End Security Framework for Service Oriented Architecture
    Shashwat, Anurag
    Kumar, Deepak
    Chanana, Lovneesh
    [J]. 2017 INTERNATIONAL CONFERENCE ON INFOCOM TECHNOLOGIES AND UNMANNED SYSTEMS (TRENDS AND FUTURE DIRECTIONS) (ICTUS), 2017, : 475 - 480
  • [6] Intelligent end-to-end resource virtualization using Service Oriented Architecture
    Onur, E.
    Sfakianakis, E.
    Papagianni, C.
    Karagiannis, G.
    Kontos, T.
    Niemegeers, I.
    Chochliouros, I. P.
    de Groot, S. Heemstra
    Sjodin, P.
    Hidell, M.
    Cinkler, T.
    Maliosz, M.
    Kaklamani, D. I.
    Carapinha, J.
    Belesioti, M.
    Fytros, E.
    [J]. 2009 IEEE GLOBECOM WORKSHOPS, 2009, : 345 - +
  • [7] A Semantic End-to-End QoS Model for Dynamic Service Oriented Environments
    Ben Mabrouk, Nebil
    Georgantas, Nikolaos
    Issarny, Valerie
    [J]. PESOS: 2009 ICSE WORKSHOP ON PRINCIPLES OF ENGINEERING SERVICE ORIENTED SYSTEMS, 2009, : 34 - 41
  • [8] A service-oriented trust management framework
    Dimitrakos, T
    [J]. TRUST, REPUTATION, AND SECURITY: THEORIES AND PRACTICE, 2003, 2631 : 53 - 72
  • [9] End-to-end reliability of service oriented applications
    Hangjung Zo
    Derek L. Nazareth
    Hemant K. Jain
    [J]. Information Systems Frontiers, 2012, 14 : 971 - 986
  • [10] End-to-end reliability of service oriented applications
    Zo, Hangjung
    Nazareth, Derek L.
    Jain, Hemant K.
    [J]. INFORMATION SYSTEMS FRONTIERS, 2012, 14 (05) : 971 - 986