Smart Security Assessment of Composed Web Services

被引:10
|
作者
Kolaczek, Grzegorz [1 ]
Juszczyszyn, Krzysztof [1 ]
机构
[1] Wroclaw Univ Technol, Inst Comp Sci, PL-50370 Wroclaw, Poland
关键词
multi-agent systems; security; web services;
D O I
10.1080/01969720903408797
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
As more and more organizations use Service-Oriented Architecture (SOA) to design and implement their information systems the systems' architects also need more intelligent and reliable tools. The complexity, modularity, and heterogeneity of the information systems make the security evaluation a difficult process. In this work, we propose a method for the assesment and optimization of a security level of composed web services, assuming layered security architecture and the multi-agent approach. As the security evaluation requires the precise definition of the set of evaluation criteria, the basic criteria for each functional layer of SOA have been presented. An information fusion scheme, based on subjective logic formalism, was proposed to gather information coming from different layers and agents.
引用
收藏
页码:46 / 61
页数:16
相关论文
共 50 条
  • [1] Security management of web services
    Malek, M
    Harmantzis, F
    NOMS 2004: IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, APPLICATION SESSIONS: MANAGING NEXT GENERATION CONVERGENCE NETWORKS AND SERVICES, 2004, : 175 - 189
  • [2] Security Issues in Web Services
    Shade, Kuyoro O.
    Frank, Ibikunle
    Awodele, O.
    Samuel, Okolie O.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2012, 12 (01): : 23 - 27
  • [3] Security personalization for internet and web services
    Yee, George O. M.
    Korba, Larry
    INTERNATIONAL JOURNAL OF WEB SERVICES RESEARCH, 2008, 5 (01) : 1 - 23
  • [4] XML and web services security standards
    Norwegian Defence Research Establishment, Norway
    IEEE Commun. Surv. Tutor., 2009, 3 (22-36): : 22 - 36
  • [5] Modeling and construction of web services security
    Wang, LG
    Lee, L
    EC2ND 2005, PROCEEDINGS, 2006, : 273 - +
  • [6] Improving Web Services Security Models
    Abu-Taleb, Sawsan
    Mustafa, Hossam
    INTERNATIONAL ARAB JOURNAL OF INFORMATION TECHNOLOGY, 2010, 7 (04) : 428 - 434
  • [7] XML and Web Services Security Standards
    Nordbotten, Nils Agne
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2009, 11 (03): : 4 - 21
  • [8] Survey on the Web Services Security Specifications
    Zhang, Xiaofen
    Hou, Yi
    Ma, Jialin
    ENGINEERING SOLUTIONS FOR MANUFACTURING PROCESSES, PTS 1-3, 2013, 655-657 : 1809 - +
  • [9] Web Services Security Assessment: An Authentication-Focused Approach
    Soupionis, Yannis
    Kandias, Miltiadis
    INFORMATION SECURITY AND PRIVACY RESEARCH, 2012, 376 : 561 - 566
  • [10] Web services security overview and security proposal for UDDI framework
    Nasirifard, P
    7TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL V, PROCEEDINGS: COMPUTER SCIENCE AND ENGINEERING: I, 2003, : 464 - 466