skip to main content
10.1145/1180367.1180386acmconferencesArticle/Chapter ViewAbstractPublication PagesccsConference Proceedingsconference-collections
Article

A comprehensive security architecture for dynamic, web service based virtual organizations for businesses

Published:03 November 2006Publication History

ABSTRACT

In this paper we propose a security architecture for Virtual Organizations for businesses. The Virtual Organizations we consider are based on web servicetechnology, and are dynamic, i.e. their membership may change frequently throughout its lifetime. The security architecture advances over previous approaches with a new approach for distributed administration based on policy generation which allows local security administrators to remain in complete control over the policies deployed. We show the advantages of our architecture in the case of member replacement.

References

  1. Blaze, M., Feigenbaum, J., and Keromytis, A.D. Keynote: Trust management for public-key infrastructures. In 1998 Security Protocols International Workshop (1998).]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  2. Chadwick, D., and Otenko, O. The permis x.509 role based privilege management infrastructure. In Future Gener. Comput. Syst. (2003), vol. 19 (2), Elsevier Science Publishers B.V., pp. 277--289.]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  3. Demchenko, Y., Commans, L., de Laat, C., Steenbakkers, M., Ciashini, V., and Venturi, V. Vo-based dynamic security associations in collaborative grid environment. In Workshop on Collaboration and Security (COLSEC) of The 2006 International Symposium on Collaborative Technologies and Systems (CTS) (2006).]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. Foster, I., Kesselman, C., and S.Tuecke. The anatomy of the grid. In International Journal of High Performance Computing Applications (2001), vol. 15 (3), pp. 200--222.]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  5. Pearlman, L., Welch, V., Foster, I., Kesselman, C., and Tuecke, S. A community authorization service for group collaboration. In IEEE Workshop on Policies for Distributed Systems and Netoworks (2002).]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. Robinson, P., Karabulut, Y., and Haller, J. Dynamic virtual organization management for service oriented enterprise applications. In 1st International Conference on Collaborative Computing (2005).]]Google ScholarGoogle ScholarCross RefCross Ref
  7. Robinson, P., Kerschbaum, F., and Schaad, A. From business process choreography to authorization policies. In 20th Annual IFIP WG 11.3 Working Conference on Data and Applications Security (2006).]]Google ScholarGoogle Scholar
  8. Sandhu, R., Coyne, E., Feinstein, H., and Youman, C. Role based access control models. In IEEE Computer (1996), vol. 29 (2).]] Google ScholarGoogle ScholarDigital LibraryDigital Library
  9. Thompson, M., Essiari, A., and Mudumbai, S. Certificate-based authorization policy in a pki environment. In ACM Transactions on Information and System Security (2003), vol. 6 (4), pp. 566--588.]] Google ScholarGoogle ScholarDigital LibraryDigital Library

Index Terms

  1. A comprehensive security architecture for dynamic, web service based virtual organizations for businesses

        Recommendations

        Comments

        Login options

        Check if you have access through your login credentials or your institution to get full access on this article.

        Sign in
        • Published in

          cover image ACM Conferences
          SWS '06: Proceedings of the 3rd ACM workshop on Secure web services
          November 2006
          120 pages
          ISBN:1595935460
          DOI:10.1145/1180367

          Copyright © 2006 ACM

          Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

          Publisher

          Association for Computing Machinery

          New York, NY, United States

          Publication History

          • Published: 3 November 2006

          Permissions

          Request permissions about this article.

          Request Permissions

          Check for updates

          Qualifiers

          • Article

          Upcoming Conference

          CCS '24
          ACM SIGSAC Conference on Computer and Communications Security
          October 14 - 18, 2024
          Salt Lake City , UT , USA

        PDF Format

        View or Download as a PDF file.

        PDF

        eReader

        View online with eReader.

        eReader