摘要
随着语义Web技术的出现和发展,在大规模、开放、异构的分布式环境中实现Web服务的自动发现、选择、组合、调用和监控成为可能。语义Web服务解决了Web服务的语义描述问题,但也面临着与Web服务一样的安全、隐私和信任等问题。本文分析了Web服务当前面临的主要安全威胁及现有业界安全标准存在的局限性,介绍了安全本体概念并给出了一个基于OWL表示的安全本体例子,最后阐述了语义Web服务应用安全框架中安全服务的语义描述问题,对OWL-S服务本体语言进行扩展,以实现语义安全本体和策略注释。
The emergence and development of Semantic Web technology facilitate the higher automation of Web service discovery, selection, composition, invocation and monitoring in a large-scale, open, heterogeneous, and distributed environment. Although the Semantic Web services addresses the description of the semantics of Web services, it also faces the challenge of problems including security, privacy and trust like Web services. The main security threats of Web services and the limitation of current security-related standards are analyzed in this paper. Security ontology is presented and the definition of a security ontology in OWL is illustrated. Finally, the description of the semantics of security services included in a security framework for Semantic Web Services applications is detailed by extending the OWL-S profile to make security ontology and policy annotations.
出处
《计算机科学》
CSCD
北大核心
2007年第2期115-118,共4页
Computer Science
基金
河南省自然科学基金(编号0511011300)
关键词
WEB服务
语义WEB服务
安全本体
安全服务
Web services, Semantic Web services, Security ontology, Security services