PBA4WSSP: a policy-based architecture for web services security processing

被引:1
|
作者
Zeng, Hao [1 ]
Ma, Dianfu [1 ]
Zhao, Yongwang [1 ]
Li, Zhuqing [1 ]
机构
[1] Beihang Univ, Sch Comp Sci & Engn, Key Lab Software Dev Environm, Beijing, Peoples R China
基金
中国国家自然科学基金;
关键词
Web services; Security; Security policy; PBA4WSSP;
D O I
10.1007/s11761-013-0143-5
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Due to the dynamic, heterogeneous and interorganizational nature, different web services and different ports or operations in the same service, even the same services at different times may have their different security requirements because of their different security domains and different business backgrounds. How to design a flexible, fine-grained and comprehensive architecture for web services security processing has become a matter of great urgency. However, no ideal solutions have been worked out for these problems. As a result of our study, we have presented in this paper a policy-based architecture termed policy-based architecture for web services security processing (PBA4WSSP) to meet the dynamic, complete and fine-grained security requirements. In PBA4WSSP, the processing of all security problems is based on security policy in service stage to support flexibly security configuration. Moreover, we have designed a service policy model to describe the fine-grained security requirements. And the conversion method between security policy model and security policy expression has also been described. In addition, a staged complete security processing architecture is provided to reduce the dependency among protocol implementations. Furthermore, with PBA4WSSP, a web service security module has been designed and implemented as well. Eventually, the perfor-mance evaluation results amply demonstrate that our system is flexible and usable.
引用
收藏
页码:55 / 72
页数:18
相关论文
共 50 条
  • [1] A Policy-Based Architecture for Web Services Security Processing
    Zeng, Hao
    Ma, Dianfu
    Li, Zhuqing
    Zhao, Yongwang
    2012 NINTH IEEE INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING (ICEBE), 2012, : 163 - 169
  • [2] Design of policy-based security mechanisms in a distributed web services architecture
    Casola, Valentina
    Mazzeo, Antonino
    Mazzocca, Nicola
    Venticinque, Salvatore
    APPLIED PARALLEL COMPUTING: STATE OF THE ART IN SCIENTIFIC COMPUTING, 2006, 3732 : 454 - 463
  • [3] Verifying Policy-Based Web Services Security
    Bhargavan, Karthikeyan
    Fournet, Cedric
    Gordon, Andrew D.
    ACM TRANSACTIONS ON PROGRAMMING LANGUAGES AND SYSTEMS, 2008, 30 (06):
  • [4] A Policy-Based Architecture for Web Services Authentication
    Zeng, Hao
    Ma, Dianfu
    Zhao, Yongwang
    Li, Zhuqing
    2013 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2013,
  • [5] Security and differentiated hotspot services through policy-based management architecture
    Fodil, I
    Jardin, V
    SECURITY AND PROTECTION IN INFORMATION PROCESSING SYSTEMS, 2004, 147 : 517 - 532
  • [6] Security checker architecture for policy-based security management
    Tishkov, A
    Kotenko, I
    Sidelnikova, E
    COMPUTER NETWORK SECURITY, PROCEEDINGS, 2005, 3685 : 460 - 465
  • [7] SmartSSL: Efficient policy-based web security
    Gaspard, Camille
    Haidar, Batoul
    Kayssi, Ayman
    Chehab, Ali
    2007 IEEE/ACS INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS, VOLS 1 AND 2, 2007, : 833 - +
  • [8] A policy-based security model for web system
    Xie, WX
    Ma, HD
    2003 INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY, VOL 1 AND 2, PROCEEDINGS, 2003, : 187 - 191
  • [9] A Policy-based Middleware for Web Services SLA Negotiation
    Zulkernine, Farhana
    Martin, Patrick
    Craddock, Chris
    Wilson, Kirk
    2009 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, VOLS 1 AND 2, 2009, : 1043 - +
  • [10] Security and resource policy-based management architecture for ALAN servers
    Olukemi, T
    Liabotis, I
    Prnjat, O
    Sacks, L
    NETWORK CONTROL AND ENGINEERING FOR QOS, SECURITY AND MOBILITY, 2003, 107 : 91 - 102