An Enforcement Architecture for Security and Trust Policies in Federated Web-service-based Systems

被引:0
|
作者
Wu, Zhengping [1 ]
Wang, Lifeng [1 ]
机构
[1] Univ Bridgeport, Dept Comp Sci & Engn, Bridgeport, CT 06604 USA
关键词
policy enforcement; security; trust; web service;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In policy-based management, the gap between policy definition and enforcement mechanisms needs an architectural innovation to rill. Policy-based trust management has this gap too. Enforcement of policies for federation activities, especially trust policies among web-service-based systems, requires a dynamic and flexible architecture to accommodate different trust models and different domains. Meanwhile, the choice of high-level policy languages cannot have an exact match to low-level enforcement mechanisms in network services or operating systems. An intermediate-level semantic translation architecture is proposed in this paper to bridge the gap between high-level policy languages used directly by humans and low-level mechanisms offered by machines. The merits of this architecture include: users can choose their high-level policy languages with the most usability the), want; the system administrator can introduce a new core mathematical or logical model when it is more appropriate for system controls; the semantic translation in the intermediate-level is flexible.
引用
下载
收藏
页码:1002 / 1007
页数:6
相关论文
共 50 条
  • [21] Preference-Based Semantic Matching of Web Service Security Policies
    Alhazbi, Saleh
    Khan, Kahled M.
    Erradi, Abdelkarim
    WORLD CONGRESS ON COMPUTER & INFORMATION TECHNOLOGY (WCCIT 2013), 2013,
  • [22] Decentralized Enforcement of Security Policies for Distributed Computational Systems
    Orlovsky, Arie
    Raz, Danny
    APPLIED COMPUTING 2007, VOL 1 AND 2, 2007, : 241 - 248
  • [23] Web service based architecture for workflow management systems
    Zhao, XH
    Liu, CF
    Yun, Y
    DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2004, 3180 : 34 - 43
  • [24] Using web services to exchange security tokens for federated trust management
    Wu, Zhengping
    Weaver, Alfred C.
    2007 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, PROCEEDINGS, 2007, : 1176 - +
  • [25] Service-level enforcement in web-services-based systems
    Stantchev, Vladimir
    Schroepfer, Christian
    INTERNATIONAL JOURNAL OF WEB AND GRID SERVICES, 2009, 5 (02) : 130 - 154
  • [26] Research on the grid/Web-service-based visualization model and its application
    Duan, Chunmei
    Meng, Xiangxu
    APSCC: 2006 IEEE ASIA-PACIFIC CONFERENCE ON SERVICES COMPUTING, PROCEEDINGS, 2006, : 507 - +
  • [27] Security asynchronous web services based on service-oriented architecture
    Li, Yang
    Chen, Guan-Lin
    Zhejiang Daxue Xuebao (Gongxue Ban)/Journal of Zhejiang University (Engineering Science), 2009, 43 (02): : 338 - 343
  • [28] Enhance Matching Web Service Security Policies with Semantic
    Tuan-Dung Cao
    Nguyen-Ban Tran
    KNOWLEDGE AND SYSTEMS ENGINEERING (KSE 2013), VOL 1, 2014, 244 : 213 - 224
  • [29] A Web Service Architecture for Enforcing Access Control Policies
    Ardagna, Claudio Agostino
    Damiani, Ernesto
    di Vimercati, Sabrina De Capitani
    Samarati, Pierangela
    ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2006, 142 : 47 - 62
  • [30] ARCHITECTURE FOR SECURITY LEVEL EVALUATION IN SERVICE-BASED SYSTEMS
    Kolaczek, Grzegorz
    COMPUTATIONAL INTELLIGENCE: FOUNDATIONS AND APPLICATIONS: PROCEEDINGS OF THE 9TH INTERNATIONAL FLINS CONFERENCE, 2010, 4 : 844 - 850