Managing security policy in a large distributed Web Services environment

被引:1
|
作者
Chang, SM
Chen, QM
Hsu, MC
机构
关键词
D O I
10.1109/CMPSAC.2003.1245404
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Effectively managing security policies in a large distributed Web Services environment is the key to secure e-business transactions. Security, policy must ensure the end-to-end agreement for many-to-many interoperation; ensure the versioning interoperability and privacy of collaborating partners; and ensure the dynamic establishment of security policies because any statically defined security policy tends to be unsecured after a certain period of time. The traditional security policy configuration mechanisms, either the local configuration mechanism or the centralized configuration mechanism, cannot fully meet the above requirements. In this paper we describe a solution for managing security policies in a collaborative Web Services environment. This solution is based on ebXML CPP/CPA model and uses Interoperability Contract Document (ICD). It allows the collaboration parties to establish security policy dynamically for each individual interoperation; makes the selected policy confidential; and addresses the software, message, and policy versioning and interoperability issues. Our experience reveals the advantages of this approach over others.
引用
收藏
页码:610 / 615
页数:6
相关论文
共 50 条
  • [1] Design of policy-based security mechanisms in a distributed web services architecture
    Casola, Valentina
    Mazzeo, Antonino
    Mazzocca, Nicola
    Venticinque, Salvatore
    [J]. APPLIED PARALLEL COMPUTING: STATE OF THE ART IN SCIENTIFIC COMPUTING, 2006, 3732 : 454 - 463
  • [2] Security development in Web Services environment
    Chou, DC
    Yurov, K
    [J]. COMPUTER STANDARDS & INTERFACES, 2005, 27 (03) : 233 - 240
  • [3] Security Policy Composition for Composite Web Services
    Satoh, Fumiko
    Tokuda, Takehiro
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2011, 4 (04) : 314 - 327
  • [4] Maintaining consistency of the security policy in distributed environment
    Ngamsuriyaroj, S
    Keefe, TF
    Hurson, AR
    [J]. CONFERENCE PROCEEDINGS OF THE 2002 IEEE INTERNATIONAL PERFORMANCE, COMPUTING, AND COMMUNICATIONS CONFERENCE, 2002, : 179 - 186
  • [5] Managing contracted services in a large corporate environment
    Richerson, ME
    [J]. IEMC 96 PROCEEDINGS - MANAGING VIRTUAL ENTERPRISES: A CONVERGENCE OF COMMUNICATIONS, COMPUTING, AND ENERGY TECHNOLOGIES, 1996, : 538 - 541
  • [6] Enforcing distributed data security via web services
    Weaver, AC
    [J]. WFCS 2004: IEEE INTERNATIONAL WORKSHOP ON FACTORY COMMUNICATION SYSTEMS, PROCEEDINGS, 2004, : 397 - 402
  • [7] CDS GLU, a tool for managing heterogeneous distributed Web services
    Fernique, P
    Ochsenbein, F
    Wenger, M
    [J]. ASTRONOMICAL DATA ANALYSIS SOFTWARE AND SYSTEMS VII (ADASS), 1998, 145 : 466 - 469
  • [8] Verifying Policy-Based Web Services Security
    Bhargavan, Karthikeyan
    Fournet, Cedric
    Gordon, Andrew D.
    [J]. ACM TRANSACTIONS ON PROGRAMMING LANGUAGES AND SYSTEMS, 2008, 30 (06):
  • [9] A policy language for adaptive web services security framework
    Li, Jian-Xin
    Bin Li
    Li, Liang
    Che, Tong-Sheng
    [J]. SNPD 2007: EIGHTH ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING, AND PARALLEL/DISTRIBUTED COMPUTING, VOL 1, PROCEEDINGS, 2007, : 261 - +
  • [10] Distributed Systems Management for Enterprise Web Services Environment
    Lin, Chia-Feng
    Wu, Ruey-Shyang
    Yuan, Shyan-Ming
    Chen, Kuan-Yu
    [J]. 2009 INTERNATIONAL CONFERENCE ON NEW TRENDS IN INFORMATION AND SERVICE SCIENCE (NISS 2009), VOLS 1 AND 2, 2009, : 384 - +