Web services are ubiquitous technologies which are used for integrating business processes and services. As is the case in many other applications, the information processed in web services might be commercially sensitive and it is important to protect this information against security threats such as disclosure to unauthorized parties. In this paper we propose a notion of non-interference for service compositions expressed as terms of a typed CCS-like process algebra. Security policies are used to specify the security requirements of service components and may be dynamically provided by the service participants. We study the conditions under which service components may be replaced in a service composition while preserving both non-interference and compliance, that is a basic property ensuring the absence of livelocks and deadlocks during execution.

Information Flow Security for Service Compositions.

ROSSI, Sabina;MACEDONIO, Damiano
2009-01-01

Abstract

Web services are ubiquitous technologies which are used for integrating business processes and services. As is the case in many other applications, the information processed in web services might be commercially sensitive and it is important to protect this information against security threats such as disclosure to unauthorized parties. In this paper we propose a notion of non-interference for service compositions expressed as terms of a typed CCS-like process algebra. Security policies are used to specify the security requirements of service components and may be dynamically provided by the service participants. We study the conditions under which service components may be replaced in a service composition while preserving both non-interference and compliance, that is a basic property ensuring the absence of livelocks and deadlocks during execution.
2009
Proceedings of the International Conference on Ultra Modern Telecommunications, ICUMT 2009
File in questo prodotto:
File Dimensione Formato  
Rossi.pdf

non disponibili

Tipologia: Documento in Pre-print
Licenza: Accesso chiuso-personale
Dimensione 174.64 kB
Formato Adobe PDF
174.64 kB Adobe PDF   Visualizza/Apri

I documenti in ARCA sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/10278/39899
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 4
  • ???jsp.display-item.citation.isi??? ND
social impact