• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Indicator-based architecture-level security evaluation in a service-oriented environment
 
  • Details
  • Full
Options
2010
Conference Paper
Title

Indicator-based architecture-level security evaluation in a service-oriented environment

Abstract
The Service-Oriented Architecture paradigm (SOA) is commonly applied for the implementation of complex, distributed business processes. The service-oriented approach promises higher flexibility, interoperability and reusability of the IT infrastructure. However, evaluating the quality attribute security of large and complex SOA configurations is not sufficiently mastered yet. To tackle this complex problem, we developed a method for evaluating the security of existing service-oriented systems on the architectural level. The method is based on recovering security-relevant facts about the system by using reverse engineering techniques and subsequently providing automated support for further interactive security analysis at the structural level. By using generic, system-independent indicators and a knowledge base, the method is not limited to a specific programming language or technology. Therefore, we are able to apply the method to various systems and adapt it to specific evaluation needs. The paper describes the general structure of the method, and presents an instantiation aligned to the Service Component Architecture (SCA) specification.
Author(s)
Oliveira Antonino, Pablo
Fraunhofer-Institut für Experimentelles Software Engineering IESE  
Duszynski, Slawomir
Jung, Christian
Fraunhofer-Institut für Experimentelles Software Engineering IESE  
Rudolph, Manuel
Mainwork
Fourth European Conference on Software Architecture, ECSA 2010. Proceedings. Companion Volume  
Conference
European Conference on Software Architecture 2010  
DOI
10.1145/1842752.1842795
Language
English
Fraunhofer-Institut für Experimentelles Software Engineering IESE  
Keyword(s)
  • service-oriented architecture (SOA)

  • security

  • evaluation

  • SiSOA

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024