Smart Security Assessment of Composed Web Services

被引:10
|
作者
Kolaczek, Grzegorz [1 ]
Juszczyszyn, Krzysztof [1 ]
机构
[1] Wroclaw Univ Technol, Inst Comp Sci, PL-50370 Wroclaw, Poland
关键词
multi-agent systems; security; web services;
D O I
10.1080/01969720903408797
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
As more and more organizations use Service-Oriented Architecture (SOA) to design and implement their information systems the systems' architects also need more intelligent and reliable tools. The complexity, modularity, and heterogeneity of the information systems make the security evaluation a difficult process. In this work, we propose a method for the assesment and optimization of a security level of composed web services, assuming layered security architecture and the multi-agent approach. As the security evaluation requires the precise definition of the set of evaluation criteria, the basic criteria for each functional layer of SOA have been presented. An information fusion scheme, based on subjective logic formalism, was proposed to gather information coming from different layers and agents.
引用
收藏
页码:46 / 61
页数:16
相关论文
共 50 条
  • [31] Interoperable Security Standards for Web Services
    Lakshminarayanan, Sitaraman
    IT PROFESSIONAL, 2010, 12 (05) : 42 - 47
  • [32] Security development in Web Services environment
    Chou, DC
    Yurov, K
    COMPUTER STANDARDS & INTERFACES, 2005, 27 (03) : 233 - 240
  • [33] Application of OCSP in Security of Web Services
    Zhang, Zhen
    Li, Zhong
    2012 2ND INTERNATIONAL CONFERENCE ON APPLIED ROBOTICS FOR THE POWER INDUSTRY (CARPI), 2012, : 913 - 915
  • [34] Information Security for Web and SQL Services
    Iacob, Nicoleta Magdalena
    PROCEEDINGS OF THE 9TH INTERNATIONAL CONFERENCE ON VIRTUAL LEARNING, 2014, : 408 - 412
  • [35] Modeling and construction of web services security
    Wang, LG
    Lee, L
    EC2ND 2005, PROCEEDINGS, 2006, : 273 - +
  • [36] On the improvement of XML web services security
    Abuelyaman, E
    Brammeier, B
    SAM '05: Proceedings of the 2005 International Conference on Security and Management, 2005, : 253 - 259
  • [37] Web services security: Challenges and techniques
    Singhal, Anoop
    Eighth IEEE International Workshop on Policies for Distributed Systems and Networks - Proceedings, 2007, : 282 - 282
  • [38] Security: A Major Threat for Web Services
    Balasubramanian, N.
    Ruba, A.
    2012 IEEE INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION CONTROL AND COMPUTING TECHNOLOGIES (ICACCCT), 2012, : 104 - 109
  • [39] Advanced web services security specifications
    Gailey, Jeannine Hall
    Computer Security Journal, 2004, 20 (04): : 1 - 7
  • [40] Security-by-Contract for Web Services
    Dragoni, Nicola
    Massacci, Fabio
    SWS'07: PROCEEDINGS OF THE 2007 ACM WORKSHOP ON SECURE WEB SERVICES, 2007, : 90 - 98