Modeling and enforcing secure object flows in process-driven SOAs: an integrated model-driven approach

被引:16
|
作者
Hoisl, Bernhard [1 ,2 ]
Sobernig, Stefan [1 ]
Strembeck, Mark [1 ,2 ]
机构
[1] Vienna Univ Econ & Business WU Vienna, New Media Lab, Inst Informat Syst, Vienna, Austria
[2] Secure Business Austria Res SBA Res, Vienna, Austria
来源
SOFTWARE AND SYSTEMS MODELING | 2014年 / 13卷 / 02期
关键词
Process modeling; Secure object flows; Security engineering; Service-oriented architecture; Model-driven development; UML; SoaML; Web services; MDA APPROACH; ARCHITECTURE; FRAMEWORK; SYSTEMS;
D O I
10.1007/s10270-012-0263-y
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
In this paper, we present an integrated model-driven approach for the specification and the enforcement of secure object flows in process-driven service-oriented architectures (SOA). In this context, a secure object flow ensures the confidentiality and the integrity of important objects (such as business contracts or electronic patient records) that are passed between different participants in SOA-based business processes. We specify a formal and generic metamodel for secure object flows that can be used to extend arbitrary process modeling languages. To demonstrate our approach, we present a UML extension for secure object flows. Moreover, we describe how platform-independent models are mapped to platform-specific software artifacts via automated model transformations. In addition, we give a detailed description of how we integrated our approach with the Eclipse modeling tools.
引用
收藏
页码:513 / 548
页数:36
相关论文
共 50 条
  • [31] A Process-Driven and Ontology Based Software Product Line Variability Modeling Approach
    Cao Bu-Qing
    Li Bing
    Xia Qi-Ming
    2009 EIGHTH INTERNATIONAL CONFERENCE ON GRID AND COOPERATIVE COMPUTING, PROCEEDINGS, 2009, : 385 - 390
  • [32] Process-Driven Model for Service Recovery Planning
    He, Lei
    Ren, Jiangchun
    Wang, Zhiying
    PROCEEDINGS OF 2008 INTERNATIONAL PRE-OLYMPIC CONGRESS ON COMPUTER SCIENCE, VOL II: INFORMATION SCIENCE AND ENGINEERING, 2008, : 117 - 123
  • [33] Aligning business and IT: The process-driven architecture model
    Strnadl, Christoph F.
    INFORMATION SYSTEMS MANAGEMENT, 2006, 23 (04) : 67 - 77
  • [34] Smart Grid Reference Architecture, an Approach on a Secure and Model-Driven Implementation
    Wilker, Stefan
    Meisel, Marcus
    Piatkowska, Ewa
    Sauter, Thilo
    Jung, Oliver
    2018 IEEE 27TH INTERNATIONAL SYMPOSIUM ON INDUSTRIAL ELECTRONICS (ISIE), 2018, : 74 - 79
  • [35] An Integrated Framework for Process-Driven Model Construction in Disease Ecology and Animal Health
    Mancy, Rebecca
    Brock, Patrick M.
    Kao, Rowland R.
    FRONTIERS IN VETERINARY SCIENCE, 2017, 4
  • [36] Model-Driven Development of a Secure Ehealth Application
    De Dios, Miguel A. García
    Dania, Carolina
    Basin, David
    Clavel, Manuel
    Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 2014, 8431 : 97 - 118
  • [37] Model-driven development of a secure ehealth application
    De García Dios, Miguel A. (miguelangel.garcia@imdea.org), 1600, Springer Verlag (8431):
  • [38] An integrated approach to model-driven design, execution, analysis and monitoring
    Jonkers, H.
    Iacob, M. -E.
    Koellmann, C.
    Goedicke, M.
    ENTERPRISE INTEROPERABILITY II: NEW CHALLENGES AND APPROACHES, 2007, : 463 - 466
  • [39] Model-Driven Development of Secure Service Applications
    Borek, Marian
    Moebius, Nina
    Stenzel, Kurt
    Reif, Wolfgang
    PROCEEDINGS OF THE 2012 IEEE 35TH SOFTWARE ENGINEERING WORKSHOP (SEW 2012), 2012, : 62 - 71
  • [40] A Model-Driven Measurement Approach
    Monperrus, Martin
    Jezequel, Jean-Marc
    Champeau, Joel
    Hoeltzener, Brigitte
    MODEL DRIVEN ENGINEERING LANGUAGES AND SYSTEMS, PROCEEDINGS, 2008, 5301 : 505 - +