Skip to main content
Erschienen in: Information Systems Frontiers 3/2011

01.07.2011

Derivation of trust federation for collaborative business processes

verfasst von: Ji Hu

Erschienen in: Information Systems Frontiers | Ausgabe 3/2011

Einloggen

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Service Oriented Architecture (SOA) is considered to be an important enabler of Internet of Services. By adopting SOA in development, business services can be offered, mediated, and traded as web services, so as to support agile and dynamic business collaborations on the Internet. Business collaboration is often implemented as cross-enterprise processes and involves more than one business entity which agrees to join the collaboration. To enable trustworthy and secure provision of services and service composition across enterprise boundaries, trust between business participants must be established, that is, user identities and access rights must be federated, to support business functions defined in the business processes. This paper proposes an approach which derives trust federation from formally described business process models, such as BPMN and WS-CDL processes, to automate security configuration of business collaborations. The result of the derivation is trust policies which identify trust relationships between business participants and can be enforced in enterprises’ service runtimes with support of a policy deployment infrastructure.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
Zurück zum Zitat Barros, A., Dumas, M., & Oaks, P. (2005). A critical overview of the web services choreography description language (WSCDL). BPTrends Newsletter, March 2005. Barros, A., Dumas, M., & Oaks, P. (2005). A critical overview of the web services choreography description language (WSCDL). BPTrends Newsletter, March 2005.
Zurück zum Zitat Becker, J., Kugeler, M., & Rosemann, M. (Ed.) (2003). Process management a guide for the design of business processes. Springer-Verlag. Becker, J., Kugeler, M., & Rosemann, M. (Ed.) (2003). Process management a guide for the design of business processes. Springer-Verlag.
Zurück zum Zitat Felkenr, A., & Kruk, T. (2007). Modeling trust management and security of information. ISSE/SECURE 2007 Securing Electronic Business Processes. Vieweg. Felkenr, A., & Kruk, T. (2007). Modeling trust management and security of information. ISSE/SECURE 2007 Securing Electronic Business Processes. Vieweg.
Zurück zum Zitat Fielding, T., & Taylor, N. (2002). Principled design of the modern web architecture. ACM Transactions on Internet Technology (TOIT). 115–150. Association for Computing Machinery. Fielding, T., & Taylor, N. (2002). Principled design of the modern web architecture. ACM Transactions on Internet Technology (TOIT). 115–150. Association for Computing Machinery.
Zurück zum Zitat Heuser, L., Alsdorf, C., & Woods, D. (2008). International research forum 2007 (pp. 100–101). New York: Evolved Technologist Press. Heuser, L., Alsdorf, C., & Woods, D. (2008). International research forum 2007 (pp. 100–101). New York: Evolved Technologist Press.
Zurück zum Zitat Hirao, J., Choi, M., Cox, P., Passer, S., & Wun-Young, L. (Ed.) (2008). SAP security configuration and deployment: The IT administrator’s guide to best practices (1st ed). Syngress. Hirao, J., Choi, M., Cox, P., Passer, S., & Wun-Young, L. (Ed.) (2008). SAP security configuration and deployment: The IT administrator’s guide to best practices (1st ed). Syngress.
Zurück zum Zitat Kavantzas, N., Burdett, D., Ritzinger, G., Fletcher, F., Lafon, Y., & Barreto, Ch. (Ed.) (2005). Web services choreography description language version 1.0. W3C Candidate Recommendation 9. Retrieved 19 March 2009 from http://www.w3.org/TR/ws-cdl-10/. Kavantzas, N., Burdett, D., Ritzinger, G., Fletcher, F., Lafon, Y., & Barreto, Ch. (Ed.) (2005). Web services choreography description language version 1.0. W3C Candidate Recommendation 9. Retrieved 19 March 2009 from http://​www.​w3.​org/​TR/​ws-cdl-10/​.
Zurück zum Zitat Papazoglou, M. P., & Dubray, J. (2004). A survey of web service technologies. Technical Report DIT-04-058, Informatica e Telecomunicazioni, University of Trento. Papazoglou, M. P., & Dubray, J. (2004). A survey of web service technologies. Technical Report DIT-04-058, Informatica e Telecomunicazioni, University of Trento.
Zurück zum Zitat Robinson, P., Kerschbaum, F., & Schaad, A. (2006). From business process choreography to authorization policies. In Proceedings of the 20th Annual IFIP WG 11.3 Working Conference on Data and Applications Security (pp. 297–309). Springer. Robinson, P., Kerschbaum, F., & Schaad, A. (2006). From business process choreography to authorization policies. In Proceedings of the 20th Annual IFIP WG 11.3 Working Conference on Data and Applications Security (pp. 297–309). Springer.
Zurück zum Zitat Roser, S., & Bauer, B. (2005). A categorization of collaborative business process modeling techniques. In Proceedings of Seventh IEEE International Conference E-Commerce Technology Workshops. Roser, S., & Bauer, B. (2005). A categorization of collaborative business process modeling techniques. In Proceedings of Seventh IEEE International Conference E-Commerce Technology Workshops.
Zurück zum Zitat Scheer, A. (1998). ARIS-Modellierungsmethoden, Metamodelle, Anwendungen. Springer. Scheer, A. (1998). ARIS-Modellierungsmethoden, Metamodelle, Anwendungen. Springer.
Zurück zum Zitat Wolter, C., Menzel, M., Schaad, A., Miseldine, P., & Meinel, C. (2009). Model-driven business process security requirement specification. Journal of Systems Architecture: the EUROMICRO Journal, 211–223. Wolter, C., Menzel, M., Schaad, A., Miseldine, P., & Meinel, C. (2009). Model-driven business process security requirement specification. Journal of Systems Architecture: the EUROMICRO Journal, 211–223.
Metadaten
Titel
Derivation of trust federation for collaborative business processes
verfasst von
Ji Hu
Publikationsdatum
01.07.2011
Verlag
Springer US
Erschienen in
Information Systems Frontiers / Ausgabe 3/2011
Print ISSN: 1387-3326
Elektronische ISSN: 1572-9419
DOI
https://doi.org/10.1007/s10796-010-9282-9

Weitere Artikel der Ausgabe 3/2011

Information Systems Frontiers 3/2011 Zur Ausgabe