• DocumentCode
    1458408
  • Title

    Runtime Enforcement of Web Service Message Contracts with Data

  • Author

    Hallé, Sylvain ; Villemaire, Roger

  • Author_Institution
    Dept. of Comput. Sci. & Math., Univ. du Quebec a Chicoutimi, Chicoutimi, QC, Canada
  • Volume
    5
  • Issue
    2
  • fYear
    2012
  • Firstpage
    192
  • Lastpage
    206
  • Abstract
    An increasing number of popular SOAP web services exhibit a stateful behavior, where a successful interaction is determined as much by the correct format of messages as by the sequence in which they are exchanged with a client. The set of such constraints forms a “message contract” that needs to be enforced on both sides of the transaction; it often includes constraints referring to actual data elements inside messages. We present an algorithm for the runtime monitoring of such message contracts with data parameterization. Their properties are expressed in LTL-FO+, an extension of Linear Temporal Logic that allows first-order quantification over the data inside a trace of XML messages. An implementation of this algorithm can transparently enforce an LTL-FO+ specification using a small and invisible Java applet. Violations of the specification are reported on-the-fly and prevent erroneous or out-of-sequence XML messages from being exchanged. Experiments on commercial web services from Amazon.com and Google indicate that LTL-FO+ is an appropriate language for expressing their message contracts, and that its processing overhead on sample traces is acceptable both for client-side and server-side enforcement architectures.
  • Keywords
    Java; Web services; XML; temporal logic; Amazon.com; Google; Java applet; LTL-FO+ specification; SOAP Web services; Web service message contracts; XML messages; client-side enforcement architectures; data elements; data parameterization; first-order quantification; linear temporal logic; runtime enforcement; server-side enforcement architectures; stateful behavior; Contracts; Documentation; Google; Monitoring; Runtime; Semantics; Web services; Web services; runtime monitoring; temporal logic.;
  • fLanguage
    English
  • Journal_Title
    Services Computing, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1939-1374
  • Type

    jour

  • DOI
    10.1109/TSC.2011.10
  • Filename
    5719595