• DocumentCode
    2689999
  • Title

    Policy modeling and compliance verification in enterprise software systems: A survey

  • Author

    Chatzikonstantinou, G. ; Kontogiannis, K.

  • Author_Institution
    Sch. of Electr. & Comput. Eng., Nat. Tech. Univ. of Athens, Athens, Greece
  • fYear
    2012
  • fDate
    24-24 Sept. 2012
  • Firstpage
    27
  • Lastpage
    36
  • Abstract
    During the past few years we are witnessing a paradigm shift in enterprise computing, from the classic host-based service-oriented architecture pattern, to a more complex or elastic computing pattern that facilitates the provision of on-demand computing resources. This new computing paradigm offers numerous advantages but also, poses significant challenges. Advantages are related to the flexibility service providers have on deploying virtual resources on as-needed-basis, providing thus opportunities for large scale computing capabilities, while limiting the total cost of ownership. However, these benefits come at the cost of the user partially losing control over the deployed resources and the cost managing platforms and applications that are now provisioned at an unprecedented rate and interaction complexity. In order to address the above challenges, a service management and service assurance framework is required, whereby policies should be formally modeled, and consequently be verified against runtime system behavior models. In this paper, we survey a number of policy modeling and policy compliance verification techniques and we propose a corresponding basic taxonomy for these.
  • Keywords
    business data processing; cloud computing; formal verification; service-oriented architecture; complex computing pattern; compliance verification; cost management; elastic computing pattern; enterprise computing; enterprise software systems; host-based service-oriented architecture pattern; interaction complexity; large-scale computing capability; on-demand computing resources; policy modeling; runtime system behavior model; service assurance; service management; virtual resources; Business; Maintenance engineering; Security; Semantics; Software systems; Unified modeling language; Visualization; Compliance Analysis; Policy Modeling; Service Oriented Systems; Software Engineering;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Maintenance and Evolution of Service-Oriented and Cloud-Based Systems (MESOCA), 2012 IEEE 6th International Workshop on the
  • Conference_Location
    Trnto
  • Print_ISBN
    978-1-4673-3002-2
  • Type

    conf

  • DOI
    10.1109/MESOCA.2012.6392600
  • Filename
    6392600