Smart Security Assessment of Composed Web Services

被引:10
作者
Kolaczek, Grzegorz [1 ]
Juszczyszyn, Krzysztof [1 ]
机构
[1] Wroclaw Univ Technol, Inst Comp Sci, PL-50370 Wroclaw, Poland
关键词
multi-agent systems; security; web services;
D O I
10.1080/01969720903408797
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
As more and more organizations use Service-Oriented Architecture (SOA) to design and implement their information systems the systems' architects also need more intelligent and reliable tools. The complexity, modularity, and heterogeneity of the information systems make the security evaluation a difficult process. In this work, we propose a method for the assesment and optimization of a security level of composed web services, assuming layered security architecture and the multi-agent approach. As the security evaluation requires the precise definition of the set of evaluation criteria, the basic criteria for each functional layer of SOA have been presented. An information fusion scheme, based on subjective logic formalism, was proposed to gather information coming from different layers and agents.
引用
收藏
页码:46 / 61
页数:16
相关论文
共 26 条
[1]  
ANDERSON S, 2005, 5 ANN DIRC RES C, P141
[2]  
Ardagna D, 2005, 2005 IEEE International Conference on Web Services, Vols 1 and 2, Proceedings, P805
[3]   Techniques to Produce Optimal Web Service Compositions [J].
Blanco, Eduardo ;
Cardinale, Yudith ;
Vidal, Maria-Esther ;
Graterol, Jesus .
IEEE CONGRESS ON SERVICES 2008, PT I, PROCEEDINGS, 2008, :553-558
[4]  
CARDOSO J, 2002, 02002 U GEORG LSDIS
[5]   An Overview of Semantic Web Services Composition Approaches [J].
Charif, Yasmine ;
Sabouret, Nicolas .
ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2006, 146 (01) :33-41
[6]  
*DHS, 2009, NAT VULN DAT NAT CYB
[7]   Software security and SOA: Danger, Will Robinson! [J].
Epstein, J ;
Matsumoto, S ;
McGraw, G .
IEEE SECURITY & PRIVACY, 2006, 4 (01) :80-83
[8]  
FERNANDEZ EB, 2006, AICT, P157
[9]  
Frolund S., 1998, QML: A Language for Quality of Service Specifi- cation
[10]   An optimal QoS-based Web service selection scheme [J].
Huang, Angus F. M. ;
Lan, Ci-Wei ;
Yang, Stephen J. H. .
INFORMATION SCIENCES, 2009, 179 (19) :3309-3322