|
|
SeAAS - A Reference Architecture for Security Services in SOA
|
|
|
|
|
نویسنده
|
Hafner Michael ,Memon Mukhtiar ,Breu Ruth
|
منبع
|
journal of universal computer science - 2009 - دوره : 15 - شماره : 15 - صفحه:2916 -2936
|
چکیده
|
Decentralized security models and distributed infrastructures of scenarios based on service oriented architectures make the enforcement of security policies a key challenge – all the more so for business processes spanning over multiple enterprises. the current practice to im- plement security functionality exclusively at the endpoint places a significant processing burden on the endpoint, renders maintenance and management of the distributed security infrastructures cumbersome, and impedes interoperability with external service requesters. to meet these chal- lenges, we propose a reference security architecture that transposes the model of software as a service to the security domain and thereby realizes security as a service (seaas). the proposed architecture goes beyond the mere bundling of security functionality within one security domain. we illustrate the concepts of seaas at work with the requirement of fair non-repudiation. the architecture complements the sectet framework for model-driven security engineering. 1
|
کلیدواژه
|
Security as a Service ,Service Oriented Architecture ,Security Requirements
|
آدرس
|
University of Innsbruck, Austria, University of Innsbruck, Austria
|
پست الکترونیکی
|
ruth.breu@uibk.ac.at
|
|
|
|
|
|
|
|
|
|
|
|
Authors
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|