• DocumentCode
    2701595
  • Title

    Modeling and Analysis of a Web Service Firewall Using Coloured Petri Nets

  • Author

    Aliannezhadi, Zobeideh ; Azgomi, Mohammad Abdollahi

  • Author_Institution
    Islamic Azad Univ. of Damghan Branch, Damghan
  • fYear
    2008
  • fDate
    9-12 Dec. 2008
  • Firstpage
    548
  • Lastpage
    553
  • Abstract
    Web services are software components defined by WSDL, registered by UDDI and invoked by SOAP protocols. The port used by Web services and SOAP is not typically blocked by conventional firewalls. Therefore, a new type of firewall named Web service firewall or XML firewall is required. There are a number of commercial Web service firewall products. Several academic projects have also been done on Web service firewalls. This category of Web service firewalls are briefly introduced in this paper and their drawbacks are mentioned. We have proposed a Web service firewall architecture that supports authentication and authorization mechanisms. It also provides prevention of SOAP-based attacks. In this paper, we will present the proposed architectural design for a Web service firewall. A formal model for the access control of the proposed architecture using coloured Petri nets (CPNs) is also presented. The CPN model is used for the analysis of the proposed architectural design. The model can also be served as a high-level design for implementation of the Web service firewall.
  • Keywords
    Petri nets; Web services; XML; authorisation; protocols; SOAP protocols; SOAP-based attacks; UDDI; WSDL; Web service firewall; XML firewall; access control; coloured Petri nets; formal model; software components; Access control; Authentication; Authorization; Computer crime; Petri nets; Protection; Service oriented architecture; Simple object access protocol; Web services; XML; Coloured Petri Nets; Firewall; Web Service; XML;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Asia-Pacific Services Computing Conference, 2008. APSCC '08. IEEE
  • Conference_Location
    Yilan
  • Print_ISBN
    978-0-7695-3473-2
  • Electronic_ISBN
    978-0-7695-3473-2
  • Type

    conf

  • DOI
    10.1109/APSCC.2008.203
  • Filename
    4780732