A Policy-Based Architecture for Web Services Security Processing

被引:0
|
作者
Zeng, Hao [1 ]
Ma, Dianfu [1 ]
Li, Zhuqing [1 ]
Zhao, Yongwang [1 ]
机构
[1] Beihang Univ, Natl Lab Software Dev Environm, Beijing, Peoples R China
关键词
Web Services; Security; Security Policy; PBA4WSSP;
D O I
10.1109/ICEBE.2012.35
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
With the development of the Internet, Web Services technology has gradually become the development direction of the e-business, e-government and other fields, and the corresponding security mechanism has received unprecedented attention, while how to design an integrated architecture to enhance web services security remains a problem very difficult to tackle with, and there are no good solutions to support individualized security requirements. As a result of our study we present in this paper a policy-based architecture termed PBA4WSSP for web services security processing. In PBA4WSSP, the processes of all security problems are based on security policy in service stage to enable system security and flexibility. Moreover, this architecture provides the five security services including as integrity, confidentiality, non-repudiation, authentication and authorization. In PBA4WSSP, a web service security module have been designed and implemented.
引用
收藏
页码:163 / 169
页数:7
相关论文
共 50 条
  • [1] PBA4WSSP: a policy-based architecture for web services security processing
    Zeng, Hao
    Ma, Dianfu
    Zhao, Yongwang
    Li, Zhuqing
    SERVICE ORIENTED COMPUTING AND APPLICATIONS, 2014, 8 (01) : 55 - 72
  • [2] Design of policy-based security mechanisms in a distributed web services architecture
    Casola, Valentina
    Mazzeo, Antonino
    Mazzocca, Nicola
    Venticinque, Salvatore
    APPLIED PARALLEL COMPUTING: STATE OF THE ART IN SCIENTIFIC COMPUTING, 2006, 3732 : 454 - 463
  • [3] Verifying Policy-Based Web Services Security
    Bhargavan, Karthikeyan
    Fournet, Cedric
    Gordon, Andrew D.
    ACM TRANSACTIONS ON PROGRAMMING LANGUAGES AND SYSTEMS, 2008, 30 (06):
  • [4] A Policy-Based Architecture for Web Services Authentication
    Zeng, Hao
    Ma, Dianfu
    Zhao, Yongwang
    Li, Zhuqing
    2013 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2013,
  • [5] Security and differentiated hotspot services through policy-based management architecture
    Fodil, I
    Jardin, V
    SECURITY AND PROTECTION IN INFORMATION PROCESSING SYSTEMS, 2004, 147 : 517 - 532
  • [6] Security checker architecture for policy-based security management
    Tishkov, A
    Kotenko, I
    Sidelnikova, E
    COMPUTER NETWORK SECURITY, PROCEEDINGS, 2005, 3685 : 460 - 465
  • [7] SmartSSL: Efficient policy-based web security
    Gaspard, Camille
    Haidar, Batoul
    Kayssi, Ayman
    Chehab, Ali
    2007 IEEE/ACS INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS, VOLS 1 AND 2, 2007, : 833 - +
  • [8] A policy-based security model for web system
    Xie, WX
    Ma, HD
    2003 INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY, VOL 1 AND 2, PROCEEDINGS, 2003, : 187 - 191
  • [9] A Policy-based Middleware for Web Services SLA Negotiation
    Zulkernine, Farhana
    Martin, Patrick
    Craddock, Chris
    Wilson, Kirk
    2009 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, VOLS 1 AND 2, 2009, : 1043 - +
  • [10] Security and resource policy-based management architecture for ALAN servers
    Olukemi, T
    Liabotis, I
    Prnjat, O
    Sacks, L
    NETWORK CONTROL AND ENGINEERING FOR QOS, SECURITY AND MOBILITY, 2003, 107 : 91 - 102