A security framework for developing service-oriented software architectures

被引:6
|
作者
Rafe, Vahid [1 ]
Hosseinpouri, Ramin [1 ]
机构
[1] Arak Univ, Dept Comp Engn, Fac Engn, Arak 3815688349, Iran
关键词
service-oriented architecture; security modeling; formal methods; model-driven development;
D O I
10.1002/sec.1222
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The usually heterogeneous and decentralized nature of entities in the service-oriented architecture has paved the ground for the implementation of approaches distributed according to the constantly changing needs of business. Also, as the distribution of entities and processes increases, the need to provide security over software and hardware sources, which have reached the public thanks to an open space as a result of the service-oriented architecture, is felt. Therefore, security modeling at the level of service-oriented architecture can boost system reliability and enhance its stability once applied and employed. This research provides a secure framework through which to develop software based on the service-oriented architecture. The proposed framework has been modeled using the SoaML profile, which has been introduced for modeling service-oriented environments. The framework's security aspects have been tested by the modeling and specification language Alloy, which is based on the first-order logic. Its accuracy has also been well investigated. Tapping into the model-driven development, this framework can provide an answer to existing security challenges for service-oriented architecture software. Copyright (c) 2015 John Wiley & Sons, Ltd.
引用
收藏
页码:2957 / 2972
页数:16
相关论文
共 50 条
  • [31] Proceedings of the workshop on security for web services and service-oriented architectures
    Luttenberger, Norbert
    Jensen, Meiko
    INFORMATIK 2008 - Beherrschbare Systeme - Dank Informatik, Beitrage der 38. Jahrestagung der Gesellschaft fur Informatik e.V. (GI), 2008, 1
  • [32] A Security Policy Model for Agent Based Service-Oriented Architectures
    Hermann, Eckehard
    AVAILABILITY, RELIABILITY AND SECURITY FOR BUSINESS, ENTERPRISE AND HEALTH INFORMATION SYSTEMS, 2011, 6908 : 13 - 25
  • [33] Model-driven software migration into service-oriented architectures
    Fuhr, Andreas
    Horn, Tassilo
    Riediger, Volker
    Winter, Andreas
    COMPUTER SCIENCE-RESEARCH AND DEVELOPMENT, 2013, 28 (01): : 65 - 84
  • [34] ArchSORS: A Software Process for Designing Software Architectures of Service-Oriented Robotic Systems
    Oliveira, Lucas Bueno Ruas
    Leroux, Elena
    Felizardo, Katia Romero
    Oquendo, Flavio
    Nakagawa, Elisa Yumi
    COMPUTER JOURNAL, 2017, 60 (09): : 1363 - 1381
  • [35] Service-oriented architectures and recordkeeping
    Reed, Barbara
    RECORDS MANAGEMENT JOURNAL, 2008, 18 (01) : 7 - +
  • [36] Testing Service-Oriented Architectures
    Chatterjee, Arunava
    DR DOBBS JOURNAL, 2008, 33 (11): : 46 - +
  • [37] Service-oriented architectures and recordkeeping
    Reed, Barbara
    RECORDS MANAGEMENT JOURNAL, 2010, 20 (01) : 124 - +
  • [38] Formalizing service-oriented architectures
    Arab Academy for Banking and Financial Sciences
    IT Prof, 2008, 4 (34-38):
  • [39] A Model of Service-Oriented Architectures
    Malkis, Alexander
    Marmsoler, Diego
    PROCEEDINGS 2015 NINTH BRAZILIAN SYMPOSIUM ON SOFTWARE COMPONENTS, ARCHITECTURES AND REUSE - SBCARS 2015, 2015, : 110 - 119
  • [40] Framework for Capability and Maturity Evaluation of Service-oriented Enterprise Architectures
    Erkollar, Alptekin
    Zimmermann, Alfred
    IMETI 2010: 3RD INTERNATIONAL MULTI-CONFERENCE ON ENGINEERING AND TECHNOLOGICAL INNOVATION, VOL II (POST-CONFERENCE EDITION), 2010, : 273 - 278