Semantics-aware perimeter protection

被引:0
|
作者
Cremonini, M [1 ]
Damiani, E [1 ]
Samarati, P [1 ]
机构
[1] Univ Milan, Dipartimento Tecnol Informaz, I-26013 Crema, Italy
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Web services security is becoming a critical concern for any organization adopting the XML-based Web services approach to application integration. While many access control techniques for Web services are becoming available, several issues still need to be solved in order to correctly split the burden of securing Web services between the perimetral and the service level. In this paper, a technique is presented able to make perimetral. defences semantics-aware. Application-level semantics-aware firewalls enforce filtering rules directly on SOAP messages based on the nature of the services they request. Our semantics-aware firewalls rules are written using a flexible XML-based syntax that allows sharing metadata concepts with service level access control policies, supporting complex security policies that integrate perimetral defences with access control. Moreover, they can be quickly integrated into organizations' existing infrastructure, deployed rapidly and scaled as needed. Also, they integrate easily with existing infrastructure and can be operated by current staff, potentially achieving a low total cost of ownership with respect to service level solutions.
引用
收藏
页码:229 / 242
页数:14
相关论文
共 50 条
  • [1] Semantics-Aware Autoencoder
    Bellini, Vito
    Di Noia, Tommaso
    Di Sciascio, Eugenio
    Schiavone, Angelo
    IEEE ACCESS, 2019, 7 : 166122 - 166137
  • [2] Semantics-aware malware detection
    Christodorescu, M
    Jha, S
    Seshia, SA
    Song, D
    Bryant, RE
    2005 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2005, : 32 - 46
  • [3] Semantics-Aware Trace Analysis
    Hoffman, Kevin
    Eugster, Patrick
    Jagannathan, Suresh
    PLDI'09 PROCEEDINGS OF THE 2009 ACM SIGPLAN CONFERENCE ON PROGRAMMING LANGUAGE DESIGN AND IMPLEMENTATION, 2009, : 453 - 464
  • [4] Semantics-Aware Trace Analysis
    Hoffman, Kevin
    Eugster, Patrick
    Jagannathan, Suresh
    ACM SIGPLAN NOTICES, 2009, 44 (06) : 453 - 464
  • [5] Semantics-Aware Warehousing of Symbolic Trajectories
    Trajcevski, Goce
    Donevska, Ivana
    Vaisman, Alejandro
    Avci, Besim
    Zhang, Tian
    Tian, Di
    PROCEEDINGS OF THE 6TH ACM SIGSPATIAL INTERNATIONAL WORKSHOP ON GEOSTREAMING (IWGS) 2015, 2015, : 1 - 8
  • [6] An architecture for generating semantics-aware signatures
    Yegneswaran, V
    Giffin, JT
    Barford, P
    Jha, S
    USENIX ASSOCIATION PROCEEDINGS OF THE 14TH USENIX SECURITY SYMPOSIUM, 2005, : 97 - 112
  • [7] TacTok: Semantics-Aware Proof Synthesis
    First, Emily
    Brun, Yuriy
    Guha, Arjun
    PROCEEDINGS OF THE ACM ON PROGRAMMING LANGUAGES-PACMPL, 2020, 4
  • [8] Semantics-Aware BERT for Language Understanding
    Zhang, Zhuosheng
    Wu, Yuwei
    Zhao, Hai
    Li, Zuchao
    Zhang, Shuailiang
    Zhou, Xi
    Zhou, Xiang
    THIRTY-FOURTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THE THIRTY-SECOND INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE AND THE TENTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2020, 34 : 9628 - 9635
  • [9] Semantics-Aware Visual Object Tracking
    Yao, Rui
    Lin, Guosheng
    Shen, Chunhua
    Zhang, Yanning
    Shi, Qinfeng
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2019, 29 (06) : 1687 - 1700
  • [10] Enforcing semantics-aware security in multimedia surveillance
    Kodali, N
    Farkas, C
    Wijesekera, D
    JOURNAL ON DATA SEMANTICS II, 2005, 3360 : 199 - 221