首页> 外文期刊>Future generation computer systems >Matchmaking semantic security policies in heterogeneous clouds
【24h】

Matchmaking semantic security policies in heterogeneous clouds

机译:异构云中的对接语义安全策略

获取原文
获取原文并翻译 | 示例

摘要

The adoption of the cloud paradigm to access IT resources and services has posed many security issues which need to be cared of. Security becomes even a much bigger concern when services built on top of many commercial clouds have to interoperate. Among others, the value of the service delivered to end customers is strongly affected by the security of network which providers are able to build in typical SOA contexts. Currently, every provider advertises its own security strategy by means of proprietary policies, which are sometimes ambiguous and very often address the security problem from a non-uniform perspective. Even policies expressed in standardized languages do not appear to fit a dynamic scenario like the SOA's, where services need to be sought and composed on the fly in a way that is compatible with the end-to-end security requirements. We then propose an approach that leverages on the semantic technology to enrich standardized security policies with an ad-hoc content. The semantic annotation of policies enables machine reasoning which is then used for both the discovery and the composition of security-enabled services. In the presented approach the semantic enrichment of policies is enforced by an automatic procedure. We further developed a semantic framework capable of matchmaking in a smart way security capabilities of providers and security requirements of customers, and tested it on a use case scenario.
机译:采用云范式访问IT资源和服务已经引起了许多安全问题,需要加以注意。当建立在许多商业云之上的服务必须进行互操作时,安全性将成为更大的关注点。其中,提供给最终客户的服务的价值在很大程度上受到提供商在典型SOA上下文中能够构建的网络安全性的影响。当前,每个提供商都通过专有策略来宣传自己的安全策略,这些策略有时是模棱两可的,并且经常从不一致的角度解决安全问题。甚至以标准化语言表达的策略也似乎不适合像SOA这样的动态方案,在该方案中,需要以与端到端安全性要求兼容的方式动态寻找和组合服务。然后,我们提出一种利用语义技术的方法,以通过即席内容丰富标准化的安全策略。策略的语义注释启用了机器推理,然后将其用于发现和启用安全的服务。在提出的方法中,策略的语义丰富是通过自动过程来实现的。我们进一步开发了一种语义框架,该框架能够以智能的方式进行匹配,以提供者的安全功能和客户的安全需求,并在用例场景中对其进行测试。

著录项

  • 来源
    《Future generation computer systems》 |2016年第2期|176-185|共10页
  • 作者单位

    Department of Electrical, Electronic and Computer Engineering, University of Catania, Viale A. Doria, 6-95125 Catania, Italy;

    Department of Electrical, Electronic and Computer Engineering, University of Catania, Viale A. Doria, 6-95125 Catania, Italy;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Cloud computing; Security policies; Semantic; Ontology;

    机译:云计算;安全政策;语义本体论;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号