首页> 外文期刊>Software and systems modeling >Security modeling for service-oriented systems using security pattern refinement approach
【24h】

Security modeling for service-oriented systems using security pattern refinement approach

机译:使用安全模式优化方法的面向服务系统的安全建模

获取原文
获取原文并翻译 | 示例

摘要

Security is one of the critical aspects of current systems, which are based on loosely coupled and technology-agnostic service-oriented architectures (SOA). Though SOA is the driving force for enterprises to open their ends for global business collaborations, nevertheless it evolves many challenges for modeling and enforcing security. One of the main problems for designing secure systems is the lack of consistent frameworks and methodologies for modeling security concerns. Traditional approaches consider security at the end of system development, which evolves inflexible and un-configurable systems, which are too difficult to maintain and manage. The other major problem with current approaches is that they assume pre-defined and hard-coded security patterns and mechanisms for secure system design. Whereas, the evolving SOA systems require configurable security to realize different security patterns and security policies in a variety of business scenarios. To solve these problems, it is necessary to model security concerns from the beginning of system modeling in a platform-independent way. This paper proposes a pattern refinement approach for security modeling to achieve configurable and declarative security, based on the principles of abstraction, refinement, separation-of-concerns and maintainability to achieve flexible configurations of SOA security. In the proposed approach, a Domain Expert defines policies using common security vocabulary and a Security Expert models security with patterns and refines them for a target architecture in successive systematic refinements. Furthermore, it facilitates the transformation of security models into executable security policies for the target platforms.
机译:安全性是当前系统的关键方面之一,它基于松散耦合且与技术无关的面向服务的体系结构(SOA)。尽管SOA是企业为全球业务合作打开自己的大门的动力,但是,它在建模和强制执行安全性方面面临许多挑战。设计安全系统的主要问题之一是缺乏用于对安全问题进行建模的一致框架和方法。传统方法在系统开发结束时就考虑安全性,因为安全性会演化出僵化和不可配置的系统,这些系统太难以维护和管理。当前方法的另一个主要问题是,它们采用用于安全系统设计的预定义和硬编码安全模式和机制。鉴于不断发展的SOA系统需要可配置的安全性,以在各种业务场景中实现不同的安全模式和安全策略。为了解决这些问题,有必要从系统建模的开始就以与平台无关的方式对安全问题进行建模。本文基于抽象,优化,关注点分离和可维护性的原理,为实现SOA安全性的灵活配置,提出了一种用于安全建模的模式优化方法,以实现可配置的声明性安全性。在提出的方法中,域专家使用通用的安全性词汇表定义策略,安全性专家使用模式对安全性进行建模,并在连续的系统优化中针对目标体系结构对其进行优化。此外,它有助于将安全模型转换为目标平台的可执行安全策略。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号