Modular plans for secure service composition

被引:1
|
作者
Costa, Gabriele [1 ,2 ]
Degano, Pierpaolo [2 ]
Martinelli, Fabio [1 ]
机构
[1] CNR, Ist Informat & Telemat, Pisa, Italy
[2] Univ Pisa, Dipartimento Informat, Pisa, Italy
关键词
Secure service composition; language-based security; open networks;
D O I
10.3233/JCS-2011-0430
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Service Oriented Computing (SOC) is a programming paradigm aiming at characterising Service Networks. Services are entities waiting for requests from clients and they often result from the composition of many (sub-) services. We address here the problem of statically guaranteeing security of open services, i.e., services with unknown components. Security constraints are expressed by policies that service components must obey. e present here a type and effect system that safely over-approximates the possible run-time behaviour of open services, collecting partial information on the behaviour of their components. From such an approximation, we then extract a (partial) plan that drives executions of an open system that raises no security violations when plugged in any context.
引用
收藏
页码:81 / 117
页数:37
相关论文
共 50 条