跳到主要导航 跳到搜索 跳到主要内容

PBA4WSSP: A policy-based architecture for web services security processing

  • Hao Zeng*
  • , Dianfu Ma
  • , Yongwang Zhao
  • , Zhuqing Li
  • *此作品的通讯作者
  • Beihang University

科研成果: 期刊稿件文章同行评审

摘要

Due to the dynamic, heterogeneous and interorganizational nature, different web services and different ports or operations in the same service, even the same services at different times may have their different security requirements because of their different security domains and different business backgrounds. How to design a flexible, fine-grained and comprehensive architecture for web services security processing has become a matter of great urgency. However, no ideal solutions have been worked out for these problems. As a result of our study, we have presented in this paper a policy-based architecture termed policy-based architecture for web services security processing (PBA4WSSP) to meet the dynamic, complete and fine-grained security requirements. In PBA4WSSP, the processing of all security problems is based on security policy in service stage to support flexibly security configuration. Moreover, we have designed a service policy model to describe the fine-grained security requirements. And the conversion method between security policy model and security policy expression has also been described. In addition, a staged complete security processing architecture is provided to reduce the dependency among protocol implementations. Furthermore, with PBA4WSSP, a web service security module has been designed and implemented as well. Eventually, the performance evaluation results amply demonstrate that our system is flexible and usable.

源语言英语
页(从-至)55-72
页数18
期刊Service Oriented Computing and Applications
8
1
DOI
出版状态已出版 - 3月 2014

指纹

探究 'PBA4WSSP: A policy-based architecture for web services security processing' 的科研主题。它们共同构成独一无二的指纹。

引用此