基于web的应用程序设计中的安全和性能问题研究

Shin-Jer Yang, Jia-Shin Chen
{"title":"基于web的应用程序设计中的安全和性能问题研究","authors":"Shin-Jer Yang, Jia-Shin Chen","doi":"10.1109/ICEBE.2007.44","DOIUrl":null,"url":null,"abstract":"Due to the evolution of Internet technology and application popularization, security and performance have become key issues for implementing Web-based applications. Presently, most of the Web-based applications design only consider security issue, but ignore performance problem. According to these two issues, we propose a new approach to integrate security and performance aspects for Web-based applications, called ISPWAD, which combines SWAP and RBAC frameworks. The purposes of proposed ISPWAD are to fix the security holes and improve the processing performance during in designing Web-based applications. In this paper, we propose the ISPWAD framework and design its algorithm, and also illustrate how to implement the secure Web-based applications with tuning performance. Then, we will utilize the ISPWAD to set up a practical EIP system and perform simulations for security solutions and performance improvements. Finally, our experimental results indicate that the proposed ISPWAD can solve related security holes, obtain better processing performance, and reduce development time and cost. In addition, the ISPWAD can attain a good balance-point between security and performance. In the future, the ISPWAD framework can provide a reference model for implementing e-commerce, ERP II, or EIP systems.","PeriodicalId":184487,"journal":{"name":"IEEE International Conference on e-Business Engineering (ICEBE'07)","volume":"41 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2007-10-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":"{\"title\":\"A Study of Security and Performance Issues in Designing Web-based Applications\",\"authors\":\"Shin-Jer Yang, Jia-Shin Chen\",\"doi\":\"10.1109/ICEBE.2007.44\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Due to the evolution of Internet technology and application popularization, security and performance have become key issues for implementing Web-based applications. Presently, most of the Web-based applications design only consider security issue, but ignore performance problem. According to these two issues, we propose a new approach to integrate security and performance aspects for Web-based applications, called ISPWAD, which combines SWAP and RBAC frameworks. The purposes of proposed ISPWAD are to fix the security holes and improve the processing performance during in designing Web-based applications. In this paper, we propose the ISPWAD framework and design its algorithm, and also illustrate how to implement the secure Web-based applications with tuning performance. Then, we will utilize the ISPWAD to set up a practical EIP system and perform simulations for security solutions and performance improvements. Finally, our experimental results indicate that the proposed ISPWAD can solve related security holes, obtain better processing performance, and reduce development time and cost. In addition, the ISPWAD can attain a good balance-point between security and performance. In the future, the ISPWAD framework can provide a reference model for implementing e-commerce, ERP II, or EIP systems.\",\"PeriodicalId\":184487,\"journal\":{\"name\":\"IEEE International Conference on e-Business Engineering (ICEBE'07)\",\"volume\":\"41 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2007-10-24\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"6\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"IEEE International Conference on e-Business Engineering (ICEBE'07)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICEBE.2007.44\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE International Conference on e-Business Engineering (ICEBE'07)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICEBE.2007.44","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6

摘要

随着Internet技术的发展和应用的普及,安全性和性能已成为实现基于web的应用的关键问题。目前,大多数基于web的应用程序设计只考虑了安全性问题,而忽略了性能问题。根据这两个问题,我们提出了一种新的方法来集成基于web的应用程序的安全性和性能方面,称为ISPWAD,它结合了SWAP和RBAC框架。提出的ISPWAD的目的是修复基于web的应用程序设计过程中的安全漏洞,提高处理性能。在本文中,我们提出了ISPWAD框架,设计了它的算法,并说明了如何实现基于web的安全应用程序的性能调优。然后,我们将利用ISPWAD建立一个实用的EIP系统,并对安全解决方案和性能改进进行模拟。最后,我们的实验结果表明,所提出的ISPWAD可以解决相关的安全漏洞,获得更好的处理性能,并减少开发时间和成本。此外,ISPWAD还可以在安全性和性能之间取得很好的平衡点。将来,ISPWAD框架可以为实现电子商务、ERP II或EIP系统提供参考模型。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
A Study of Security and Performance Issues in Designing Web-based Applications
Due to the evolution of Internet technology and application popularization, security and performance have become key issues for implementing Web-based applications. Presently, most of the Web-based applications design only consider security issue, but ignore performance problem. According to these two issues, we propose a new approach to integrate security and performance aspects for Web-based applications, called ISPWAD, which combines SWAP and RBAC frameworks. The purposes of proposed ISPWAD are to fix the security holes and improve the processing performance during in designing Web-based applications. In this paper, we propose the ISPWAD framework and design its algorithm, and also illustrate how to implement the secure Web-based applications with tuning performance. Then, we will utilize the ISPWAD to set up a practical EIP system and perform simulations for security solutions and performance improvements. Finally, our experimental results indicate that the proposed ISPWAD can solve related security holes, obtain better processing performance, and reduce development time and cost. In addition, the ISPWAD can attain a good balance-point between security and performance. In the future, the ISPWAD framework can provide a reference model for implementing e-commerce, ERP II, or EIP systems.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信