DocumentCode :
1873459
Title :
An architecture for certification-aware service discovery
Author :
Bezzi, Michele ; Sabetta, Antonino ; Spanoudakis, George
Author_Institution :
SAP Res. Sophia-Antipolis, Mougins, France
fYear :
2011
fDate :
6-8 Sept. 2011
Firstpage :
14
Lastpage :
21
Abstract :
Service-orientation is an emerging paradigm for building complex systems based on loosely coupled components, deployed and consumed over the network. Despite the original intent of the paradigm, its current instantiations are limited to a single trust domain (e.g., a single organization) One of the main reasons for this is the trust gap that normally arises when software services, offered by previously unknown providers, are to be selected at run-time, without any human intervention. The idea of machine-readable security certificates (called asserts) paves the way to automated reasoning about security properties of services. Similarly to current security certification schemes, the assessment of the security properties of a service is delegated to an independent third party (certification authority), who issues a corresponding assert, bound to the service. Building on the assert concept, this paper describes our proposal for a modular architecture to realise a certification-aware service discovery framework. The architecture supports the discovery of single services based on certified security properties, as well as the dynamic synthesis of service compositions that satisfy the required security properties.
Keywords :
inference mechanisms; security of data; service-oriented architecture; asserts; automated reasoning; certification-aware service discovery framework; complex systems; machine-readable security certificates; security certification schemes; service-based software systems engineering; service-orientation; software services; trust gap; Cognition; Electronic mail; Engines; Scattering; Security; Software; Subscriptions;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Securing Services on the Cloud (IWSSC), 2011 1st International Workshop on
Conference_Location :
Milan
Print_ISBN :
978-1-4577-1185-5
Type :
conf
DOI :
10.1109/IWSSCloud.2011.6049020
Filename :
6049020
Link To Document :
بازگشت