Security as a Service - A Reference Architecture for SOA Security

被引:0
|
作者
Memon, Mukhtiar [1 ]
Hafner, Michael [1 ]
Breu, Ruth [1 ]
机构
[1] Univ Innsbruck, A-6020 Innsbruck, Austria
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Securing service-oriented systems is challenging, because like business services the security services are equally distributed in SOA systems. Enforcing security exclusively at the endpoints creates a significant security burden. Also, every endpoint has to implement the entire security infrastructure, which is an expensive approach. Currently, there is very little work done to separate security from service endpoints. We propose a Security As A Service (SAAS) approach, which shifts major security burden from service endpoints to dedicated and shared security services within a security domain. Security services are composed from components, and integrated based on the Service Component Architecture (SCA) model. In this contribution, we apply the SAAS paradigm to implement security for SECTISSIMO, which is a platform-independent framework for security modeling and implementation [9]. (1)
引用
收藏
页码:79 / 89
页数:11
相关论文
共 50 条
  • [1] SeAAS - A Reference Architecture for Security Services in SOA
    Hafner, Michael
    Memon, Mukhtiar
    Breu, Ruth
    [J]. JOURNAL OF UNIVERSAL COMPUTER SCIENCE, 2009, 15 (15) : 2916 - 2936
  • [2] Service oriented architecture (SOA) - Security challenges and mitigation strategies
    Phan, Cecilia
    [J]. 2007 IEEE MILITARY COMMUNICATIONS CONFERENCE, VOLS 1-8, 2007, : 3490 - 3496
  • [3] A Security Reference Architecture for Blockchains
    Homoliak, Ivan
    Venugopalan, Sarad
    Hum, Qingze
    Szalachowski, Pawel
    [J]. 2019 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2019), 2019, : 390 - 397
  • [4] A Proposed Security Service Set for VANET SOA
    Ibrahim, Safi
    Hamdy, Mohamed
    Shaaban, Eman
    [J]. 2015 IEEE SEVENTH INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTING AND INFORMATION SYSTEMS (ICICIS), 2015, : 649 - 653
  • [5] Security Type Comparison In Service Oriented Architecture Security
    Yesiltepe, Mirsat
    Bozkurt, Omer Ozgur
    [J]. WORLD CONFERENCE ON TECHNOLOGY, INNOVATION AND ENTREPRENEURSHIP, 2015, : 1833 - 1839
  • [6] A Security Architecture For Web Service
    Luo Fuqiang
    Xiong Yongfu
    [J]. 2ND INTERNATIONAL SYMPOSIUM ON COMPUTER NETWORK AND MULTIMEDIA TECHNOLOGY (CNMT 2010), VOLS 1 AND 2, 2010, : 499 - 502
  • [7] An Architecture for Differentiated Security Service
    Chen, Jianyong
    Wang, Xiaomin
    He, Liwen
    [J]. PROCEEDINGS OF THE INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, 2008, : 301 - +
  • [8] Service Oriented Security Architecture
    Opincaru, Cristian
    Gheorghe, Gabriela
    [J]. ENTERPRISE MODELLING AND INFORMATION SYSTEMS ARCHITECTURES-AN INTERNATIONAL JOURNAL, 2009, 4 (01): : 39 - 48
  • [9] Towards a Security Reference Architecture for NFV
    Alnaim, Abdulrahman Khalid
    Alwakeel, Ahmed Mahmoud
    Fernandez, Eduardo B.
    [J]. SENSORS, 2022, 22 (10)
  • [10] Quality of Security Service for Web Services within SOA
    El Yamany, Hany F.
    Capretz, Miriam A. M.
    Allison, David S.
    [J]. 2009 IEEE CONGRESS ON SERVICES (SERVICES-1 2009), VOLS 1 AND 2, 2009, : 653 - 660