{"title":"Toward WS-certificate","authors":"E. Damiani, A. Maña","doi":"10.1145/1655121.1655123","DOIUrl":null,"url":null,"abstract":"Certifying the security and dependability properties of individual web services or of entire business processes hosted on a Service Oriented Architecture (SOA) is a major challenge of SOA research. It is widely recognized that the unique features of WS/SOA require new security assessment approaches, including novel service testing and process monitoring techniques. In this talk, we discuss a framework for certifying the security and dependability properties of web-services and of SOA-based properties, introducing a third party certifier as a trusted authority. Our certifications are run-time negotiable XML data items based on signed test cases and formal proofs and operate at different level of granularity, providing a sound basis for run-time service selection and process orchestration decisions.","PeriodicalId":221198,"journal":{"name":"Secure Web Services","volume":"10 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-11-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"15","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Secure Web Services","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/1655121.1655123","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 15
Abstract
Certifying the security and dependability properties of individual web services or of entire business processes hosted on a Service Oriented Architecture (SOA) is a major challenge of SOA research. It is widely recognized that the unique features of WS/SOA require new security assessment approaches, including novel service testing and process monitoring techniques. In this talk, we discuss a framework for certifying the security and dependability properties of web-services and of SOA-based properties, introducing a third party certifier as a trusted authority. Our certifications are run-time negotiable XML data items based on signed test cases and formal proofs and operate at different level of granularity, providing a sound basis for run-time service selection and process orchestration decisions.