An Ontology for run-time Verification of Security Certificates for SOA

被引:1
|
作者
D'Agostini, Stefania [1 ]
Di Giacomo, Valentina [1 ]
Pandolfo, Claudia [1 ]
Presenza, Domenico [1 ]
机构
[1] Engn Ingn Informat SpA, Res & Dev Lab, Rome, Italy
关键词
Ontologies for security certification; Service Oriented Architecture (SOA); Service Certification; Service Security; Run-time verification; Semantic Security Certificates;
D O I
10.1109/ARES.2012.49
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Software systems are often certified to guarantee they satisfy particular functional or non-functional requirements, including safety, security or privacy. In this paper, we propose an approach based on the use of ontologies to support the description of the content of security certificates for services. The work frames in the scope of the ASSERT4SOA project, which investigates the way to dynamically search for services satisfying certain security requirements. The ASSERT4SOA Ontology, the main result of this work, supports the interoperability and comparison of heterogeneous certificates and the run-time verification of the compliance of services with the security requirements asserted in their certificates.
引用
收藏
页码:525 / 533
页数:9
相关论文
共 50 条
  • [21] PSL model checking and run-time verification via testers
    Pnueli, A.
    Zaks, A.
    [J]. FM 2006: FORMAL METHODS, PROCEEDINGS, 2006, 4085 : 573 - 586
  • [22] AMOEBA-RT: Run-time verification of adaptive software
    Goldsby, Heather J.
    Cheng, Betty H. C.
    Zhang, Ji
    [J]. MODELS IN SOFTWARE ENGINEERING, 2008, 5002 : 212 - 224
  • [23] Run-time Verification of Behavioural Conformance for Conversational Web Services
    Dranidis, Dimitris
    Ramollari, Ervin
    Kourtesis, Dimitrios
    [J]. ECOWS'09: PROCEEDINGS OF THE 7TH IEEE EUROPEAN CONFERENCE ON WEB SERVICES, 2009, : 139 - +
  • [24] Simulation of Simultaneous Events in Regular Expressions for Run-Time Verification
    Sammapun, Usa
    Easwaran, Arvind
    Lee, Insup
    Sokolsky, Oleg
    [J]. ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2005, 113 : 123 - 143
  • [25] Edit automata: Enforcement mechanisms for run-time security policies
    Ligatti J.
    Bauer L.
    Walker D.
    [J]. International Journal of Information Security, 2005, 4 (1-2) : 2 - 16
  • [26] Integrating Software Testing and Run-Time Checking in an Assertion Verification Framework
    Mera, Edison
    Lopez-Garcia, Pedro
    Hermenegildo, Manuel
    [J]. LOGIC PROGRAMMING, 2009, 5649 : 281 - +
  • [27] Automated Code Synthesis for Run-Time Verification of Distributed Embedded Systems
    Majzik, Istvan
    Horanyi, Gergo
    [J]. 12TH SYMPOSIUM ON PROGRAMMING LANGUAGES AND SOFTWARE TOOLS, SPLST' 11, 2011, : 161 - 172
  • [28] MESSAGE FLOW-ANALYSIS AND RUN-TIME VERIFICATION FOR PARALLEL PROGRAMS
    YANG, SS
    JUANG, JY
    [J]. PROCEEDINGS OF THE 1989 INTERNATIONAL CONFERENCE ON PARALLEL PROCESSING, VOL 2: SOFTWARE, 1989, : 19 - 22
  • [29] PublicCheck: Public Integrity Verification for Services of Run-time Deep Models
    Wang, Shuo
    Abuadbba, Sharif
    Agarwal, Sidharth
    Moore, Kristen
    Sun, Ruoxi
    Xue, Minhui
    Nepal, Surya
    Camtepe, Seyit
    Kanhere, Salil
    [J]. 2023 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP, 2023, : 1348 - 1365
  • [30] Stochastic Verification of Run-time Performance Adaptation with Field Delay Testing
    Hashimoto, Masanori
    [J]. 2014 IEEE ASIA PACIFIC CONFERENCE ON CIRCUITS AND SYSTEMS (APCCAS), 2014, : 751 - 754