{"title":"多平台SOA安全分析框架","authors":"S. Weber, Paula Austel, Michael McIntosh","doi":"10.1109/ICWS.2007.4","DOIUrl":null,"url":null,"abstract":"The myriad of SOA platforms and the complexity of the Web services standards has meant that it is difficult for users to ensure that their deployments are appropriately secure. Despite the compilation of various SOA security \"best practices''', detecting violations of such practices has proven difficult. To address this need, we developed a tool that can analyze the deployment configurations of multiple SOA platforms and report potential SOA best practice violations. In this paper, we compare, contrast and categorize SOA platforms, and describe the analysis challenges posed by each category. We describe our framework architecture for our multi-platform analyses, and further describe our prototype implementation of this architecture.","PeriodicalId":208234,"journal":{"name":"IEEE International Conference on Web Services (ICWS 2007)","volume":"13 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2007-07-09","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":"{\"title\":\"A Framework for Multi-Platform SOA Security Analyses\",\"authors\":\"S. Weber, Paula Austel, Michael McIntosh\",\"doi\":\"10.1109/ICWS.2007.4\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The myriad of SOA platforms and the complexity of the Web services standards has meant that it is difficult for users to ensure that their deployments are appropriately secure. Despite the compilation of various SOA security \\\"best practices''', detecting violations of such practices has proven difficult. To address this need, we developed a tool that can analyze the deployment configurations of multiple SOA platforms and report potential SOA best practice violations. In this paper, we compare, contrast and categorize SOA platforms, and describe the analysis challenges posed by each category. We describe our framework architecture for our multi-platform analyses, and further describe our prototype implementation of this architecture.\",\"PeriodicalId\":208234,\"journal\":{\"name\":\"IEEE International Conference on Web Services (ICWS 2007)\",\"volume\":\"13 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2007-07-09\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"7\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"IEEE International Conference on Web Services (ICWS 2007)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICWS.2007.4\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE International Conference on Web Services (ICWS 2007)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICWS.2007.4","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
A Framework for Multi-Platform SOA Security Analyses
The myriad of SOA platforms and the complexity of the Web services standards has meant that it is difficult for users to ensure that their deployments are appropriately secure. Despite the compilation of various SOA security "best practices''', detecting violations of such practices has proven difficult. To address this need, we developed a tool that can analyze the deployment configurations of multiple SOA platforms and report potential SOA best practice violations. In this paper, we compare, contrast and categorize SOA platforms, and describe the analysis challenges posed by each category. We describe our framework architecture for our multi-platform analyses, and further describe our prototype implementation of this architecture.