Title :
The Service Security Lab: A Model-Driven Platform to Compose and Explore Service Security in the Cloud
Author :
Menzel, Michael ; Warschofsky, Robert ; Thomas, Ivonne ; Willems, Christian ; Meinel, Christoph
Author_Institution :
Hasso-Plattner-Inst., Potsdam, Germany
Abstract :
Cloud computing enables the provisioning of dynamically scalable resources as a service. Next to cloud computing, the paradigm of Service-oriented Architectures emerged to facilitate the provisioning of functionality as services. While both concepts are complementary, their combination enables the flexible provisioning and consumption of independently scalable services. These approaches come along with new security risks that require the usage of identity and access management solutions and information protection. The requirements concerning security mechanisms, protocols and options are stated in security policies that configure the interaction between services and clients in a system. In this paper, we present our cloud-based Service Security Lab that supports the on-demand creation and orchestration of composed applications and services. Our cloud platform enables the testing, monitoring and analysis of Web Services regarding different security configurations, concepts and infrastructure components. Since security policies are hard to understand and even harder to codify, we foster a model-driven approach to simplify the creation of security configurations. Our model-driven approach enables the definition of security requirements at the modelling layer and facilitates a transformation based on security configuration patterns.
Keywords :
Web services; security of data; Web service; cloud based service security lab; cloud computing; information protection; model driven approach; orchestration; security risk; service oriented architecture; service security lab; Cloud computing; Clouds; Security; System analysis and design; Unified modeling language; Virtual machining; Cloud Security; SOA Security; Web Service Security; Web Services;
Conference_Titel :
Services (SERVICES-1), 2010 6th World Congress on
Conference_Location :
Miami, FL
Print_ISBN :
978-1-4244-8199-6
Electronic_ISBN :
978-0-7695-4129-7
DOI :
10.1109/SERVICES.2010.90