Trust-based security model and enforcement mechanism for Web service technology

被引:0
|
作者
Yang, SK [1 ]
Lam, H [1 ]
Su, SYW [1 ]
机构
[1] Univ Florida, Database Syst Res & Dev Ctr, Gainesville, FL 32611 USA
来源
关键词
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
The emerging Web service technology has enabled the development of Internet-based applications that integrate distributed and heterogeneous systems and processes which are owned by different organizations. Compared to centralized systems and client-server environments, the Web service environment is much more dynamic and security for such an environment poses unique challenges. For example, an organization (e.g., a service provider or a service broker) cannot predetermine the users of its resources and fix their access privileges. Also, service providers come and go. The users of services must have some assurances about the services and the organizations that provide the services. Thus, the enforcement of security constraints cannot be static and tightly coupled. The notion of trust agreement must be established to delegate the responsibility of certification of unknown users, services, and organizations. In this paper, we describe a Trust-based Security Model (TSM) that incorporate the traditional security concepts (e.g., roles, resources, operations) with new security concepts that are specific to the Web service environment. The security concepts of TSM are then applied to the general Web service model to include security considerations. Finally, an event-driven, rule-based approach to the enforcement of security in a Web service environment is described.
引用
收藏
页码:151 / 160
页数:10
相关论文
共 50 条
  • [21] Trust-based security for the OLSR routing protocol
    Adnane, Asma
    Bidan, Christophe
    de Sousa Junior, Rafael Timoteo
    [J]. COMPUTER COMMUNICATIONS, 2013, 36 (10-11) : 1159 - 1171
  • [22] Trust-based Security for the Spanning Tree Protocol
    Lai, Yingxu
    Liu, Zenghui
    Pan, Qiuyue
    Chen, Yinong
    Zhou, Zhizheng
    [J]. PROCEEDINGS OF 2014 IEEE INTERNATIONAL PARALLEL & DISTRIBUTED PROCESSING SYMPOSIUM WORKSHOPS (IPDPSW), 2014, : 1339 - 1344
  • [23] Trust-based security in pervasive computing environments
    Kagal, L
    Finin, T
    Joshi, A
    [J]. COMPUTER, 2001, 34 (12) : 154 - 157
  • [24] Trust-based resource allocation in Web services
    Xiong, Kaiqi
    Perros, Harry
    [J]. ICWS 2006: IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, PROCEEDINGS, 2006, : 663 - +
  • [25] A trust-based secure service discovery (TSSD) model for pervasive computing
    Ahamed, Sheikh I.
    Sharmin, Moushumi
    [J]. COMPUTER COMMUNICATIONS, 2008, 31 (18) : 4281 - 4293
  • [26] Trust-based group services selection in web-based service-oriented environments
    Su, Xing
    Zhang, Minjie
    Mu, Yi
    [J]. WORLD WIDE WEB-INTERNET AND WEB INFORMATION SYSTEMS, 2016, 19 (05): : 807 - 832
  • [27] A trust-based service evaluation and selection model in pervasive computing environment
    Chen, Zhenxiang
    Ge, Liansheng
    Wang, Haiyang
    Huang, Xianzhi
    Lin, Jinjiao
    [J]. 2006 1ST INTERNATIONAL SYMPOSIUM ON PERVASIVE COMPUTING AND APPLICATIONS, PROCEEDINGS, 2006, : 641 - +
  • [28] Trust-based Revision for Expressive Web Syndication
    Golbeck, Jennifer
    Halaschek-Wiener, Christian
    [J]. JOURNAL OF LOGIC AND COMPUTATION, 2009, 19 (05) : 771 - 790
  • [29] Trust-based group services selection in web-based service-oriented environments
    Xing Su
    Minjie Zhang
    Yi Mu
    [J]. World Wide Web, 2016, 19 : 807 - 832
  • [30] Trust-based Service-Oriented Architecture
    Aljazzaf, Zainab M.
    Capretz, Miriam A. M.
    Perry, Mark
    [J]. JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2016, 28 (04) : 470 - 480