DocumentCode :
2701459
Title :
Efficient Dynamic Policy Monitoring in Service Oriented Architectures
Author :
Hacigumus, H.
Author_Institution :
IBM Almaden Res. Center, San Jose, CA
fYear :
2008
fDate :
9-12 Dec. 2008
Firstpage :
494
Lastpage :
499
Abstract :
We focus on dynamic monitoring of security and privacy policies in service oriented architectures (SOAs) based systems. In a service oriented system both the internal and the external services may easily interact with each other, which makes the establishment and the enforcement of the privacy policies and the rules across the systems increasingly challenging. We introduce efficient and flexible methods for auditing such systems by leveraging the middleware platform capabilities. The auditing methods allow for two different types of audits, the static audits and the dynamic audits. The static audits find out whether a process pattern that is defined by the audit has been executed in the system. The dynamic audits, however, find out on-the-fly whether any of the system policies are being violated as the service process flows are still in execution in the system. We also present the effectiveness of the dynamic monitoring that we have developed to support demanding requirements of the dynamic audits.
Keywords :
Web services; data privacy; middleware; security of data; system monitoring; SOA; data privacy; data security; dynamic audit; dynamic policy monitoring; middleware; service oriented architecture; static audit; Communication standards; Distributed computing; Middleware; Monitoring; Privacy; Security; Service oriented architecture; Standards development; Standards organizations; USA Councils; SOA; audit; policy monitoring; security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Asia-Pacific Services Computing Conference, 2008. APSCC '08. IEEE
Conference_Location :
Yilan
Print_ISBN :
978-0-7695-3473-2
Electronic_ISBN :
978-0-7695-3473-2
Type :
conf
DOI :
10.1109/APSCC.2008.195
Filename :
4780723
Link To Document :
بازگشت