• DocumentCode
    3127929
  • Title

    Virtualised Trusted Computing Platform for Adaptive Security Enforcement of Web Services Interactions

  • Author

    Djordjevic, Ivan ; Nair, Srijith K. ; Dimitrakos, Theo

  • Author_Institution
    British Telecommun., London
  • fYear
    2007
  • fDate
    9-13 July 2007
  • Firstpage
    615
  • Lastpage
    622
  • Abstract
    Security enforcement framework is an important aspect of any distributed system. With new requirements imposed by SOA-based business models, adaptive security enforcement on the application level becomes even more important. Our work on the enforcement framework to date has resulted in a comprehensive middleware-based solution leveraging on Web services technologies. However, potential merits of hardware-based solutions to further secure application exposure have not been considered so far. This paper describes a method for combining software resource level security features offered by Web services technologies, with the hardware-based security mechanisms offered by trusted computing platform and system virtualisation approaches. In particular, we propose trust-based architecture for protecting the enforcement middleware deployed at the policy enforcement endpoints of Web and grid services. The main motivation is to additionally secure execution environment of the applications, by providing virtual machine level separation that maps from logical domains imposed by Web services level enforcement policies.
  • Keywords
    Web services; grid computing; middleware; security of data; software architecture; virtual machines; Web services interactions; adaptive security enforcement; business models; distributed system; grid services; hardware-based security mechanisms; middleware; service-oriented architecture; software resource level security; system virtualisation; trust-based architecture; virtual machine level separation; virtualised trusted computing platform; Application software; Computer security; Context-aware services; Contracts; Distributed computing; Hardware; Middleware; Service oriented architecture; Telecommunication computing; Web services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Web Services, 2007. ICWS 2007. IEEE International Conference on
  • Conference_Location
    Salt Lake City, UT
  • Print_ISBN
    0-7695-2924-0
  • Type

    conf

  • DOI
    10.1109/ICWS.2007.188
  • Filename
    4279651