Security framework for dynamic service-oriented IT systems

被引:3
|
作者
Kolaczek, Grzegorz [1 ]
Mizera-Pietraszko, Jolanta [2 ]
机构
[1] Wroclaw Univ Sci & Technol, Fac Comp Sci & Management, Wroclaw, Poland
[2] Opole Univ, Fac Math Phys & Comp Sci, Opole, Poland
关键词
Service-oriented systems; security level; security incidents;
D O I
10.1080/24751839.2018.1479926
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The paper proposes a framework for dynamic service-oriented IT systems security. We review the context of service-oriented architecture (SOA), which constitutes a paradigm of dynamic system configuration including security constraints at the system module development stage, supporting with the domain-driven resources, carrying out routine SOA maintenance and implementing XML-compatible parsing technologies in order to improve the system performance. Likewise, we discuss the fundamental differences between security management systems with traditional centralized and monolithic architecture and service-oriented IT systems from the perspective of security-related issues. Web services security becomes fairly crucial, in particular, when it relates to distributed system environments. Our multi-layered reference framework for service-oriented systems is aimed at principal objectives predominantly related to IT systems security working in dynamic environments. Furthermore, we carry out an in-depth security analysis of a multi-agent system design dedicated to work in the service-oriented environments. Finally, we conclude briefly with the findings of our study on IT security requirements and performance on the comparison basis of correlation between the observations at the low and at high layers of our reference security model. The paper is an extended version of INISTA 2017 paper [Kolaczek, G., & Mizera-Pietraszko, J. (2017) and presents more detailed related works overview, explanation of the subjective logic application in the process of security level evaluation and extensive discussion of the obtained results and their role in SOA security level modelling.
引用
收藏
页码:428 / 448
页数:21
相关论文
共 50 条
  • [1] A Framework and Language Support for Dynamic Security Policy in Service-Oriented Architecture
    Chi Wu-Lee
    Hwang, Gwan-Hwan
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2014, 30 (06) : 1887 - 1903
  • [2] A framework and language support for dynamic security policy in service-oriented architecture
    Department of Computer Science and Information Engineering, National Taiwan Normal University, Taipei
    106, Taiwan
    Hwang, Gwan-Hwan, 1887, Institute of Information Science (30):
  • [3] Extending SOSJ Framework for Reliable Dynamic Service-oriented Systems
    Atmojo, Udayanto Dwi
    Salcic, Zoran
    Wang, Kevin I-Kai
    2015 IEEE 8TH INTERNATIONAL CONFERENCE ON SERVICE-ORIENTED COMPUTING AND APPLICATIONS (SOCA), 2015, : 213 - 218
  • [4] A Service-Oriented Digital Twin Framework for Dynamic and Robust Distributed Systems
    Gu, Rong
    Seceleanu, Tiberiu
    Xiong, Ning
    Naeem, Muhammad
    2024 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE SERVICES ENGINEERING, SSE 2024, 2024, : 66 - 73
  • [5] Security Policy Conflicts in Service-oriented Systems
    Brodecki, Bartosz
    Szychowiak, Michal
    Sasak, Piotr
    NEW GENERATION COMPUTING, 2012, 30 (2-3) : 215 - 240
  • [6] A Dynamic Service-oriented Framework for the Transportation Domain
    Desertot, Mikael
    Lecomte, Sylvain
    Delot, Thierry
    ITST: 2009 9TH INTERNATIONAL CONFERENCE ON INTELLIGENT TRANSPORT SYSTEMS TELECOMMUNICATIONS, 2009, : 325 - +
  • [7] Security Policy Conflicts in Service-oriented Systems
    Bartosz Brodecki
    Michał Szychowiak
    Piotr Sasak
    New Generation Computing, 2012, 30 : 215 - 240
  • [8] A security framework for developing service-oriented software architectures
    Rafe, Vahid
    Hosseinpouri, Ramin
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (17) : 2957 - 2972
  • [9] A SIMULATION FRAMEWORK FOR SERVICE-ORIENTED COMPUTING SYSTEMS
    Sarjoughian, Hessam
    Kim, Sungung
    Ramaswamy, Muthukumar
    Yau, Stephen
    2008 WINTER SIMULATION CONFERENCE, VOLS 1-5, 2008, : 845 - 853
  • [10] DDSOS: A dynamic distributed service-oriented simulation framework
    Tsai, WT
    Fan, C
    Chen, YN
    Paul, R
    39TH ANNUAL SIMULATION SYMPOSIUM, PROCEEDINGS, 2006, : 160 - +