Service network security management (SNSM) framework, a solution to SOSE security challenge

M. Ahmed, S. Letchmunan, A. S. Baharudin
{"title":"Service network security management (SNSM) framework, a solution to SOSE security challenge","authors":"M. Ahmed, S. Letchmunan, A. S. Baharudin","doi":"10.1109/ICCSCE.2016.7893576","DOIUrl":null,"url":null,"abstract":"SOSE is a novel software development paradigm that results in flexible, loose-coupled and end-to-end applications. However, the adoption of this innovation is slowed by security challenge. Apparently, the use of only TLS (transport layer security) security technique for SOSE systems is inappropriate because it provides only point-to-point security support to the communicating parties. While, an end-to-end security mechanism is necessary to effectively secure SOSE applications. Consequently, this paper provides SNSM framework, a solution to SOSE security challenge by integrating many technologies including OASIS's web service security standard, W3C's XML digital signature and XML encryption standards into SOAP envelope to ensure end-to-end security at the message level. In the implementation of the framework, proxy service, a virtual service hosted in the Enterprise Service Bus (ESB) was used to enforce security services as a Quality of service (QOS) requirement. The results show that SNSM framework recorded 10 millisecond average response time above unsecured service, whereas, the TLS secured service has the largest average response time.","PeriodicalId":6540,"journal":{"name":"2016 6th IEEE International Conference on Control System, Computing and Engineering (ICCSCE)","volume":"82 1","pages":"228-233"},"PeriodicalIF":0.0000,"publicationDate":"2016-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 6th IEEE International Conference on Control System, Computing and Engineering (ICCSCE)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCSCE.2016.7893576","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

SOSE is a novel software development paradigm that results in flexible, loose-coupled and end-to-end applications. However, the adoption of this innovation is slowed by security challenge. Apparently, the use of only TLS (transport layer security) security technique for SOSE systems is inappropriate because it provides only point-to-point security support to the communicating parties. While, an end-to-end security mechanism is necessary to effectively secure SOSE applications. Consequently, this paper provides SNSM framework, a solution to SOSE security challenge by integrating many technologies including OASIS's web service security standard, W3C's XML digital signature and XML encryption standards into SOAP envelope to ensure end-to-end security at the message level. In the implementation of the framework, proxy service, a virtual service hosted in the Enterprise Service Bus (ESB) was used to enforce security services as a Quality of service (QOS) requirement. The results show that SNSM framework recorded 10 millisecond average response time above unsecured service, whereas, the TLS secured service has the largest average response time.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
业务网络安全管理(SNSM)框架,解决soe的安全挑战
sse是一种新颖的软件开发范例,它产生灵活的、松耦合的端到端应用程序。然而,这种创新的采用受到安全挑战的阻碍。显然,仅为sse系统使用TLS(传输层安全)安全技术是不合适的,因为它仅向通信各方提供点对点安全支持。同时,端到端安全机制对于有效保护sse应用程序是必要的。因此,本文提供了SNSM框架,通过将OASIS的web服务安全标准、W3C的XML数字签名和XML加密标准等多种技术集成到SOAP信封中,以确保消息级的端到端安全,从而解决了SOAP安全挑战。在框架的实现中,代理服务(驻留在企业服务总线(ESB)中的虚拟服务)被用来作为服务质量(QOS)需求来强制执行安全服务。结果表明,SNSM框架的平均响应时间比不安全服务高10毫秒,而TLS安全服务的平均响应时间最大。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
RVP-FLMS: A robust variable power fractional LMS algorithm Verification of nine-phase PMSM model in d-q coordinates with mutual couplings Gamified outcomes-based teaching and learning assessment tool for Mapúa Institute of Technology Empirical testing of prototype real-time multi-hop MAC for Wireless Sensor Networks Improving intrusion detection system detection accuracy and reducing learning time by combining selected features selection and parameters optimization
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1