A security framework for developing service-oriented software architectures

被引:6
|
作者
Rafe, Vahid [1 ]
Hosseinpouri, Ramin [1 ]
机构
[1] Arak Univ, Dept Comp Engn, Fac Engn, Arak 3815688349, Iran
关键词
service-oriented architecture; security modeling; formal methods; model-driven development;
D O I
10.1002/sec.1222
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The usually heterogeneous and decentralized nature of entities in the service-oriented architecture has paved the ground for the implementation of approaches distributed according to the constantly changing needs of business. Also, as the distribution of entities and processes increases, the need to provide security over software and hardware sources, which have reached the public thanks to an open space as a result of the service-oriented architecture, is felt. Therefore, security modeling at the level of service-oriented architecture can boost system reliability and enhance its stability once applied and employed. This research provides a secure framework through which to develop software based on the service-oriented architecture. The proposed framework has been modeled using the SoaML profile, which has been introduced for modeling service-oriented environments. The framework's security aspects have been tested by the modeling and specification language Alloy, which is based on the first-order logic. Its accuracy has also been well investigated. Tapping into the model-driven development, this framework can provide an answer to existing security challenges for service-oriented architecture software. Copyright (c) 2015 John Wiley & Sons, Ltd.
引用
收藏
页码:2957 / 2972
页数:16
相关论文
共 50 条
  • [1] A Service-oriented Framework for Quantitative Security Analysis of Software Architectures
    Liu, Yanguo
    Traore, Issa
    Hoole, Alexander M.
    2008 IEEE ASIA-PACIFIC SERVICES COMPUTING CONFERENCE, VOLS 1-3, PROCEEDINGS, 2008, : 1231 - 1238
  • [2] Systematic security analysis for service-oriented software architectures
    Liu, Yanguo
    Traore, Issa
    ICEBE 2007: IEEE INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING, PROCEEDINGS, 2007, : 612 - 621
  • [3] A service-oriented framework for developing cross cloud migratable software
    Guillen, Joaquin
    Miranda, Javier
    Manuel Murillo, Juan
    Canal, Carlos
    JOURNAL OF SYSTEMS AND SOFTWARE, 2013, 86 (09) : 2294 - 2308
  • [4] Service-oriented Software Architectures in Theory and practice
    Flieder, K.
    ELEKTROTECHNIK UND INFORMATIONSTECHNIK, 2009, 126 (12): : A32 - A35
  • [5] Software visualization in the context of service-oriented architectures
    Eicker, Stefan
    Spies, Thorsten
    Kahl, Christian
    4TH IEEE INTERNATIONAL WORKSHOP ON VISUALIZING SOFTWARE FOR UNDERSTANDING AND ANALYSIS, PROCEEDINGS, 2007, : 108 - +
  • [6] A framework for automated service composition in service-oriented architectures
    Majithia, S
    Walker, DW
    Gray, WA
    SEMANTIC WEB: RESEARCH AND APPLICATIONS, 2004, 3053 : 269 - 283
  • [7] Research on service-Oriented software framework
    Li, Y
    Wu, ZH
    Deng, SG
    GRID AND COOPERATIVE COMPUTING GCC 2004 WORKSHOPS, PROCEEDINGS, 2004, 3252 : 27 - 35
  • [8] A Conceptual Framework for the Governance of Service-Oriented Architectures
    Bernhardt, Jan
    Seese, Detlef
    SERVICE-ORIENTED COMPUTING - ICSOC 2008 WORKSHOPS, 2009, 5472 : 327 - +
  • [9] A framework for simulation models of Service-Oriented Architectures
    Bause, Falko
    Buchholz, Peter
    Kriege, Jan
    Vastag, Sebastian
    PERFORMANCE EVALUATION: METRICS, MODELS AND BENCHMARKS, PROCEEDINGS, 2008, 5119 : 208 - 227
  • [10] A security framework for service oriented architectures
    Candolin, Catharina
    2007 IEEE MILITARY COMMUNICATIONS CONFERENCE, VOLS 1-8, 2007, : 1822 - 1827