A View-based Approach for Service-Oriented Security Architecture Specification

被引:0
|
作者
Dikanski, Aleksander [1 ]
Abeck, Sebastian [1 ]
机构
[1] Karlsruhe Inst Technol, Res Grp Cooperat & Management C&M, Karlsruhe, Germany
关键词
security architecture; security engineering; service-orientation; web service; security services; REQUIREMENTS;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Developing secure software is still a software engineering challenge because of the complexity of software security. Yet integrating security engineering and software engineering is increasingly important, especially for service-oriented applications, as they are exposed to new security challenges due to their open nature. Current security engineering approaches do not consider existing security architectures, leading to redundant development of security artifacts. Further, present security architecture approaches do not provide relevant information to a security engineering process. Using a service-oriented and security architecture-centric approach for security engineering supports the development of secure service-oriented applications, as existing security solutions can be reused. In this paper, a model for service-oriented security architectures is presented, which provides apt information to different consumers, such as security engineering processes and business services, in the form of views to assist the consumers security goals. The architecture model is exemplified by specifying different views of a web service-based security architecture.
引用
收藏
页码:207 / 213
页数:7
相关论文
共 50 条
  • [31] A view-based approach for semantic service descriptions
    Jacob, Carsten
    Pfeffer, Heiko
    Steglich, Stephan
    Li Yan
    Ma Qifeng
    [J]. NGMAST 2008: SECOND INTERNATIONAL CONFERENCE ON NEXT GENERATION MOBILE APPLICATIONS, SERVICES, AND TECHNOLOGIES, PROCEEDINGS, 2008, : 213 - +
  • [32] Intelligent security and access control framework for service-oriented architecture
    El Yamany, Hany F.
    Capretz, Miriam A. M.
    Allison, David S.
    [J]. INFORMATION AND SOFTWARE TECHNOLOGY, 2010, 52 (02) : 220 - 236
  • [33] Governance of Information Security Elements in Service-Oriented Enterprise Architecture
    Korhonen, Janne J.
    Yildiz, Mehmet
    Mykkanen, Atha
    [J]. 2009 10TH INTERNATIONAL SYMPOSIUM ON PERVASIVE SYSTEMS, ALGORITHMS, AND NETWORKS (ISPAN 2009), 2009, : 768 - +
  • [34] Commitment-Based Service-Oriented Architecture
    Singh, Munindar P.
    Chopra, Amit K.
    Desai, Nirmit
    [J]. COMPUTER, 2009, 42 (11) : 72 - 79
  • [35] Service-oriented architecture based on knowledge base
    Cong, Kai
    Zhang, Lin
    Luo, Yong-Liang
    Tao, Fei
    [J]. Jisuanji Jicheng Zhizao Xitong/Computer Integrated Manufacturing Systems, CIMS, 2010, 16 (08): : 1768 - 1777
  • [36] On Workflow Engine Based on Service-Oriented Architecture
    Guo Xiaofeng
    Shen Jianjing
    Wu Shanming
    [J]. ISISE 2008: INTERNATIONAL SYMPOSIUM ON INFORMATION SCIENCE AND ENGINEERING, VOL 2, 2008, : 129 - 132
  • [37] Trust-based Service-Oriented Architecture
    Aljazzaf, Zainab M.
    Capretz, Miriam A. M.
    Perry, Mark
    [J]. JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2016, 28 (04) : 470 - 480
  • [38] Service-oriented approach to visualize IT security performance metrics
    Martin, Clemens
    Refai, Mustapha
    [J]. TRUST MANAGEMENT, 2007, 238 : 403 - +
  • [39] Realizing Overlay Xcast in a Tactical Service Infrastructure An Approach Based on a Service-Oriented Architecture
    Diefenbach, Anne
    Lopes, Roberto Rigolin F.
    Lampe, Thorsten A.
    Prasse, Christoph
    Sliwa, Joanna
    Goniacz, Robert
    Viidanoja, Antti
    [J]. 2018 INTERNATIONAL CONFERENCE ON MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS (ICMCIS), 2018,
  • [40] An Enterprise Architecture Approach to Building a Service-Oriented Enterprise
    Chen, Minder
    Chi, Yan-Ping Jeffery
    Li, Hsing-Chiu
    [J]. 2009 6TH INTERNATIONAL CONFERENCE ON SERVICE SYSTEMS AND SERVICE MANAGEMENT, VOLS 1 AND 2, 2009, : 60 - +