A View-based Approach for Service-Oriented Security Architecture Specification

被引:0
|
作者
Dikanski, Aleksander [1 ]
Abeck, Sebastian [1 ]
机构
[1] Karlsruhe Inst Technol, Res Grp Cooperat & Management C&M, Karlsruhe, Germany
关键词
security architecture; security engineering; service-orientation; web service; security services; REQUIREMENTS;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Developing secure software is still a software engineering challenge because of the complexity of software security. Yet integrating security engineering and software engineering is increasingly important, especially for service-oriented applications, as they are exposed to new security challenges due to their open nature. Current security engineering approaches do not consider existing security architectures, leading to redundant development of security artifacts. Further, present security architecture approaches do not provide relevant information to a security engineering process. Using a service-oriented and security architecture-centric approach for security engineering supports the development of secure service-oriented applications, as existing security solutions can be reused. In this paper, a model for service-oriented security architectures is presented, which provides apt information to different consumers, such as security engineering processes and business services, in the form of views to assist the consumers security goals. The architecture model is exemplified by specifying different views of a web service-based security architecture.
引用
收藏
页码:207 / 213
页数:7
相关论文
共 50 条
  • [1] Compliance in service-oriented architectures: A model-driven and view-based approach
    Huy Tran
    Zdun, Uwe
    Holmes, Ta'id
    Oberortner, Ernst
    Mulo, Emmanuel
    Dustdar, Schahram
    [J]. INFORMATION AND SOFTWARE TECHNOLOGY, 2012, 54 (06) : 531 - 552
  • [2] A view on service-oriented architecture
    Chung, Jen-Yao
    Chao, Kuo-Ming
    [J]. SERVICE ORIENTED COMPUTING AND APPLICATIONS, 2007, 1 (02) : 93 - 95
  • [3] Internet payment security architecture based on service-oriented architecture
    Lin, Song
    Li, Zhou-Jun
    Zhang, Fan
    [J]. Jisuanji Jicheng Zhizao Xitong/Computer Integrated Manufacturing Systems, CIMS, 2008, 14 (12): : 2468 - 2475
  • [4] A policy-based approach for QoS specification and enforcement in distributed service-oriented architecture
    Wang, CZ
    Wang, GJ
    Chen, A
    Wang, HQ
    Pierce, Y
    Fung, C
    Uczekaj, S
    [J]. 2005 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING, VOL 1, PROCEEDINGS, 2005, : 307 - 310
  • [5] Delivering Specification-Based Learning Processes with Service-Oriented Architecture: A Process Translation Approach
    Chen, Chien-Tsun
    Cheng, Yu Chin
    Hsieh, Chin-Yun
    Hsu, Tien-Song
    [J]. JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2009, 25 (05) : 1373 - 1389
  • [6] Delivering specification-based learning processes with service-oriented architecture: A process translation approach
    Chen, Chien-Tsun
    Cheng, Yu Chin
    Hsieh, Chin-Yun
    Hsu, Tien-Song
    [J]. Journal of Information Science and Engineering, 2009, 25 (5 SPECIAL ISSUE) : 1373 - 1389
  • [7] Security asynchronous web services based on service-oriented architecture
    Li, Yang
    Chen, Guan-Lin
    [J]. Zhejiang Daxue Xuebao (Gongxue Ban)/Journal of Zhejiang University (Engineering Science), 2009, 43 (02): : 338 - 343
  • [8] Service-oriented security architecture for CII based on sensor networks
    Lopez, Javier
    Montenegro, Jose Antonio
    Roman, Rodrigo
    [J]. SECOND INTERNATIONAL WORKSHOP ON SECURITY, PRIVACY AND TRUST IN PERVASIVE AND UBIQUITOUS COMPUTING, PROCEEDINGS, 2006, : 1 - +
  • [9] Applying Security within a Service-Oriented Architecture
    Primost, Stephen
    [J]. INFORMATION SECURITY JOURNAL, 2008, 17 (01): : 26 - 32
  • [10] Integration of a Security Product in Service-oriented Architecture
    Dikanski, Aleksander
    Emig, Christian
    Abeck, Sebastian
    [J]. 2009 THIRD INTERNATIONAL CONFERENCE ON EMERGING SECURITY INFORMATION, SYSTEMS, AND TECHNOLOGIES, 2009, : 1 - 7