Title :
SecureSOA Modelling Security Requirements for Service-Oriented Architectures
Author :
Menzel, Michael ; Meinel, Christoph
Author_Institution :
Hasso-Plattner-Inst., Potsdam, Germany
Abstract :
Service-oriented Architectures (SOA) facilitate the provision and orchestration of business services to enable a faster adoption to changing business demands. Web Services provide a technical foundation to realize this paradigm and support a variety of different security mechanisms and approaches. Security requirements are codified in Web Service policies that control the service´s behavior in terms of secure interactions with other participants in an SOA. To facilitate and simplify the generation of enforceable security policies, we foster a model-driven approach based on the modelling of security requirements in system design models. This paper introduces our security design language SecureSOA that enables the definition of these security requirements. We present the abstract syntax and notion of SecureSOA and describe a schema to integrate SecureSOA in any system design language for service-based systems. Moreover, we will demonstrate the integration of SecureSOA in Fundamental Modelling Concept (FMC) Block Diagrams.
Keywords :
Web services; business data processing; security of data; software architecture; Web services; abstract syntax; business services; fundamental modelling concept block diagrams; model-driven approach; secureSOA; security requirements modelling; service-based systems; service-oriented architectures; system design language; Data models; Security; Semiconductor optical amplifiers; Service oriented architecture; Syntactics; System analysis and design; Unified modeling language;
Conference_Titel :
Services Computing (SCC), 2010 IEEE International Conference on
Conference_Location :
Miami, FL
Print_ISBN :
978-1-4244-8147-7
Electronic_ISBN :
978-0-7695-4126-6
DOI :
10.1109/SCC.2010.63