摘要
SOA是一种标准化接口的分布式计算模型,基于Web服务平台无关性的特点允许服务功能通过动态组合支撑不同种类的应用业务,但是服务运行的动态性、复杂性和跨组织的松耦合性使服务系统面临严重的攻击威胁。针对分布式环境中服务全生命周期安全防护的应用需求,提出了一种可迁移的Web服务安全防护方法,不仅能够在服务节点正常运行过程中通过安全防护模块支撑服务的认证、访问控制和攻击检测,而且能够对服务迁移的全过程进行安全增强,实现无缝的安全防护能力,为安全服务环境的设计完善提供了一种可行思路。
Service oriented architecture is a type of distributed computing model with standardized commu- nication interface, which enables dynamic combination of services to support various of business process by platform-independent feature of web services. However, the dynamic nature, complexity and cross-organ- ization loose-couple characteristics of service architecture make the system face severe attack threats. To satisfy the utilization requirements of protect web service life cycle in a distributed environment, a migrate -enabled web service security approach is proposed. The method could not only supply authorization, ac- cess-control and attack detection in normal running procedure of service nodes by security protection mod-ule, but also consolidate the process of service migration to realize seamless security capability, which of- fers a practical idea for improving secure service environment design.
出处
《通信技术》
2014年第5期557-561,共5页
Communications Technology
关键词
WEB服务
信息安全
服务迁移
防护机制
web service
information security
service migration
security protection