skip to main content
10.1145/3003733.3003796acmotherconferencesArticle/Chapter ViewAbstractPublication PagespciConference Proceedingsconference-collections
research-article

Ontological Templates for Modelling Security Policies in Cloud Environments

Authors Info & Claims
Published:10 November 2016Publication History

ABSTRACT

It is generally conceded that by embracing the cloud computing paradigm enterprises are able to boost their agility and productivity whilst realising significant cost savings. However, many enterprises are reluctant to adopt cloud services for supporting their critical operations due to security and privacy concerns. One way to alleviate these concerns is to devise a set of policies that infuse adequate security controls in cloud services. However, the heterogeneous nature of these services, together with the dynamicity inherent in cloud environments, hinders the formulation of an effective and interoperable set of policies that is suitable for the underlying domain of application. To this end, this work proposes an approach to the construction of ontological templates for the semantic representation of policies. These templates are capable of capturing the knowledge that must be infused into a policy in order for it to adequately take into account the needs of the underlying domain of application in which it is to be enforced.

References

  1. Barros, A. and Oberle, D.: Handbook of Service Description: USDL and its Methods, Springer (2012) Google ScholarGoogle ScholarDigital LibraryDigital Library
  2. Cardoso, J., Pedrinaci, C., Leidig, T., Rupino P. and Leenheer, P.: Foundations of Open Semantic Service Networks. International Journal of Service Science, Management, Engineering, and Technology, vol. 4, no. 2, 1--16 (2013)Google ScholarGoogle Scholar
  3. Cardoso, J., Pedrinaci, C., Leidig, T.: Linked USDL: a Vocabulary for Web-scale Service Trading. In 11th Extended Semantic Web Conference (ESWC) (2014)Google ScholarGoogle Scholar
  4. Cloud Computing Reference Architecture. Technical report, NIST (2011)Google ScholarGoogle Scholar
  5. CloudPassage, "Cloud Security Spotlight Report," LinkedIn, 2015Google ScholarGoogle Scholar
  6. Damianou, N., Dulay, N., Lupu, E., Sloman, M.: The Ponder Policy Specification Language. In Sloman, M., Lobo, J., Lupu, E. (eds.) Proceedings of the International Workshop on Policies for Distributed Systems and Networks (POLICY '01), pp. 18--38, Springer-Verlag, London (2000) Google ScholarGoogle ScholarDigital LibraryDigital Library
  7. eXtensible Access Control Markup Language (XACML) Version 3.0. 22 January 2013. OASIS Standard. http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-os-en.htmlGoogle ScholarGoogle Scholar
  8. GoodRelations: The Professional Web Vocabulary for E-Commerce. http://www.heppnetz.de/projects/goodrelations/Google ScholarGoogle Scholar
  9. Kagal, L., Finin, T., Joshi, A.: A Policy Language for a Pervasive Computing Environment. In 4th IEEE Int. Workshop on Policies for Distributed Systems and Networks (POLICY '03), pp. 63--74, IEEE Computer Society, Washington, DC (2003) Google ScholarGoogle ScholarDigital LibraryDigital Library
  10. Linked USDL, http://www.linked-usdl.org/Google ScholarGoogle Scholar
  11. Nejdl, W., Olmedilla, D., Winslett, M, Zhang. C.C.: Ontology-Based policy specification and management. In Gómez-Pérez, A. and Euzenat, J. (eds.) ESWC'05, pp. 290--302, Springer-Verlag, Berlin, Heidelberg (2005) Google ScholarGoogle ScholarDigital LibraryDigital Library
  12. OWL 2 Web Ontology Language Primer (2nd Edition), https://www.w3.org/TR/owl2-primer/Google ScholarGoogle Scholar
  13. PaaSword Deliverable 2.1. https://www.paasword.eu/deliverables/Google ScholarGoogle Scholar
  14. PaaSword Deliverable 2.2. https://www.paasword.eu/deliverables/Google ScholarGoogle Scholar
  15. PaaSword project, http://www.paasword.eu/Google ScholarGoogle Scholar
  16. RDF 1.1 XML Syntax, http://www.w3.org/TR/2014/REC-rdf-syntax-grammar-20140225/Google ScholarGoogle Scholar
  17. Security Assertions Markup Language (SAML) Version 2.0. Technical Overview 25 March 2008. OASIS Standard. https://www.oasis-open.org/committees/download.php/27819/sstc-saml-tech-overview-2.0-cd-02.pdf (2008)Google ScholarGoogle Scholar
  18. SKOS Simple Knowledge Organization System. http://www.w3.org/2004/02/skos/Google ScholarGoogle Scholar
  19. Tao, J., Sirin, E., Bao, J. and McGuinness, D. L.: Integrity Constraints in OWL, In Proceedings of the 24th AAAI Conference on Artificial Intelligence (AAAI-10), Atlanta, Georgia, USA, July 11-15 (2010) Google ScholarGoogle ScholarDigital LibraryDigital Library
  20. The FOAF Project. http://www.foaf-project.org/Google ScholarGoogle Scholar
  21. Uszok, A., Bradshaw, J., Jeffers, R., Johnson, M., Tate, A., Dalton, J., and Aitken, S.: KAoS Policy Management for Semantic Web Services. IEEE Intel. Sys. 19, 4, 32--41 (2004) Google ScholarGoogle ScholarDigital LibraryDigital Library
  22. Veloudis, S., Paraskakis, I., Petsos, C.: Cloud Service Brokerage: Strengthening Service Resilience in Cloud-Based Virtual Enterprises. In Camarinha-Matos et al. (eds.) PRO-VE 2015. LNCS, vol 463, pp. 122--135, Springer, Heidelberg (2015)Google ScholarGoogle Scholar
  23. Veloudis, S., Verginadis, Y., Patiniotakis, I., Paraskakis, I., Mentzas, G.: Context-aware Security Models for PaaS-enabled Access Control. CLOSER Conference (2016) Google ScholarGoogle ScholarDigital LibraryDigital Library
  24. What's Hindering the Adoption of Cloud Computing in Europe?, 15 September 2015. {Online}. Available: https://blog.cloudsecurityalliance.org/2015/09/15/whats-hindering-the-adoption-of-cloud-computing-in-europe/Google ScholarGoogle Scholar
  25. WS-Trust 1.3. 19 March 2007. OASIS Standard. http://docs.oasis-open.org/ws-sx/ws-trust/200512/ws-trust-1.3-os.doc (2007)Google ScholarGoogle Scholar

Recommendations

Comments

Login options

Check if you have access through your login credentials or your institution to get full access on this article.

Sign in
  • Published in

    cover image ACM Other conferences
    PCI '16: Proceedings of the 20th Pan-Hellenic Conference on Informatics
    November 2016
    449 pages
    ISBN:9781450347891
    DOI:10.1145/3003733

    Copyright © 2016 ACM

    Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than the author(s) must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected].

    Publisher

    Association for Computing Machinery

    New York, NY, United States

    Publication History

    • Published: 10 November 2016

    Permissions

    Request permissions about this article.

    Request Permissions

    Check for updates

    Qualifiers

    • research-article
    • Research
    • Refereed limited

    Acceptance Rates

    Overall Acceptance Rate190of390submissions,49%

PDF Format

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader