面向SOA网络的完整性模型

M. Al-Kofahi, Su-Hua Chang, Thomas E. Daniels
{"title":"面向SOA网络的完整性模型","authors":"M. Al-Kofahi, Su-Hua Chang, Thomas E. Daniels","doi":"10.1109/ICWS.2008.58","DOIUrl":null,"url":null,"abstract":"Interest in service oriented architecture (SOA) is rapidly increasing in the business world due to the many benefits it offers such as reliability, manageability, reusability, flexibility, efficiency, and interoperability. There are many security technologies and models being developed for SOA. They implement or encode specific aspects of authentication, authorization, encryption, trust, and access control respectively but none of them was entirely devoted to integrity. In this paper we propose service Clark-Wilson integrity model (SCWIM), a top down integrity model for SOA capable of describing sufficient conditions to protect data integrity in any SOA implementation. Based on the original Clark-Wilson integrity model, our model can form the basis for system security audits and assist SOA architects in developing systems that protect data integrity, as well as providing guidance for evaluating existing SOA systems.","PeriodicalId":275591,"journal":{"name":"2008 IEEE International Conference on Web Services","volume":"15 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2008-09-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":"{\"title\":\"SCWIM an Integrity Model for SOA Networks\",\"authors\":\"M. Al-Kofahi, Su-Hua Chang, Thomas E. Daniels\",\"doi\":\"10.1109/ICWS.2008.58\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Interest in service oriented architecture (SOA) is rapidly increasing in the business world due to the many benefits it offers such as reliability, manageability, reusability, flexibility, efficiency, and interoperability. There are many security technologies and models being developed for SOA. They implement or encode specific aspects of authentication, authorization, encryption, trust, and access control respectively but none of them was entirely devoted to integrity. In this paper we propose service Clark-Wilson integrity model (SCWIM), a top down integrity model for SOA capable of describing sufficient conditions to protect data integrity in any SOA implementation. Based on the original Clark-Wilson integrity model, our model can form the basis for system security audits and assist SOA architects in developing systems that protect data integrity, as well as providing guidance for evaluating existing SOA systems.\",\"PeriodicalId\":275591,\"journal\":{\"name\":\"2008 IEEE International Conference on Web Services\",\"volume\":\"15 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2008-09-23\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"4\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2008 IEEE International Conference on Web Services\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICWS.2008.58\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2008 IEEE International Conference on Web Services","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICWS.2008.58","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4

摘要

由于面向服务的体系结构(SOA)提供了许多好处,例如可靠性、可管理性、可重用性、灵活性、效率和互操作性,因此在业务领域对SOA的兴趣正在迅速增加。目前正在为SOA开发许多安全技术和模型。它们分别实现或编码身份验证、授权、加密、信任和访问控制的特定方面,但它们都没有完全致力于完整性。在本文中,我们提出了服务Clark-Wilson完整性模型(SCWIM),这是一个自顶向下的SOA完整性模型,能够描述在任何SOA实现中保护数据完整性的充分条件。基于最初的Clark-Wilson完整性模型,我们的模型可以构成系统安全审计的基础,并帮助SOA架构师开发保护数据完整性的系统,以及为评估现有SOA系统提供指导。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
SCWIM an Integrity Model for SOA Networks
Interest in service oriented architecture (SOA) is rapidly increasing in the business world due to the many benefits it offers such as reliability, manageability, reusability, flexibility, efficiency, and interoperability. There are many security technologies and models being developed for SOA. They implement or encode specific aspects of authentication, authorization, encryption, trust, and access control respectively but none of them was entirely devoted to integrity. In this paper we propose service Clark-Wilson integrity model (SCWIM), a top down integrity model for SOA capable of describing sufficient conditions to protect data integrity in any SOA implementation. Based on the original Clark-Wilson integrity model, our model can form the basis for system security audits and assist SOA architects in developing systems that protect data integrity, as well as providing guidance for evaluating existing SOA systems.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信