DocumentCode
125358
Title
Secure Web Service Composition with Untrusted Broker
Author
Carminati, Barbara ; Ferrari, Elena ; Ngoc Hong Tran
Author_Institution
DiSTA, Univ. of Insubria, Insubria, Italy
fYear
2014
fDate
June 27 2014-July 2 2014
Firstpage
137
Lastpage
144
Abstract
Composite web services are usually coordinated according to a workflow, composed by several activities, each of which carried out by a service. A way to coordinate this cooperation is orchestration, which implies that the workflow underlying the composite web service is processed by a broker hosting a workflow engine (e.g., BPEL engine). According to the orchestration paradigm, the broker coordinates the invocation of services involved in the composition by passing the needed parameters. In general, all previous proposals for the service orchestration model consider the broker as a trusted entity. As such, they never payed attention to the fact that the broker is able to access several pieces of sensitive data. We believe there is the need to protect them against improper access and usage from partner services as well as the broker. To cope with these issues, in this paper, we propose a protocol based on a selective encryption able to ensure that both the broker and service partners can access only the information needed to fulfill their activities.
Keywords
Web services; cryptographic protocols; encryption; orchestration model; protocol; secure Web Service composition; untrusted broker; workflow engine; Business; Educational Activities Board; Encryption; Engines; Public key; Web services; Secure composite web service; secure orchestration; untrusted broker;
fLanguage
English
Publisher
ieee
Conference_Titel
Web Services (ICWS), 2014 IEEE International Conference on
Conference_Location
Anchorage, AK
Print_ISBN
978-1-4799-5053-9
Type
conf
DOI
10.1109/ICWS.2014.31
Filename
6928891
Link To Document