Service Oriented Architecture (SOA) Security Models

dc.contributor.advisor Thomas E. Daniels
dc.contributor.author Al-kofahi, Majd
dc.contributor.department Electrical and Computer Engineering
dc.date 2018-08-11T21:34:18.000
dc.date.accessioned 2020-06-30T02:39:56Z
dc.date.available 2020-06-30T02:39:56Z
dc.date.copyright Sat Jan 01 00:00:00 UTC 2011
dc.date.embargo 2013-06-05
dc.date.issued 2011-01-01
dc.description.abstract <p>Interest in Service Oriented Architecture (SOA) is rapidly increasing in the business world due to the many benefits it offers such as reliability, manageability, re-usability, flexibility, efficiency, and interoperability.</p> <p>Many security technologies, models and systems have been developed for SOA, covering one or a combination of security aspects such as authentication, authorization, encryption, trust, confidentiality or access control. Even though many security areas have been thoroughly investigated, many are still unexplored such as integrity protection and SOA intrusion detection systems.</p> <p>In this thesis we are proposing Service Clark-Wilson Integrity Model (SCWIM), a top down integrity model for SOA capable of describing sufficient conditions to protect data integrity in any SOA implementation based on the original Clark-Wilson Integrity Model. Our model can form the basis for system security audits and assist SOA architects in developing systems that protect data integrity as well as providing guidance for evaluating existing SOA systems.</p> <p>We are also proposing SOA Specification Based Intrusion Detection System capable of detecting intrusions affecting service behaviors in SOA networks. A SOA testbed was implemented, configured, and modified to accommodate the needs of our research and to work as the base for the development of our specification based IDS. We believe that our IDS will provide a low false negative/positive rate and will be able to detect known and novel attacks that affect the behavior of the monitored services.</p>
dc.format.mimetype application/pdf
dc.identifier archive/lib.dr.iastate.edu/etd/12034/
dc.identifier.articleid 3006
dc.identifier.contextkey 2808204
dc.identifier.doi https://doi.org/10.31274/etd-180810-1055
dc.identifier.s3bucket isulib-bepress-aws-west
dc.identifier.submissionpath etd/12034
dc.identifier.uri https://dr.lib.iastate.edu/handle/20.500.12876/26236
dc.language.iso en
dc.source.bitstream archive/lib.dr.iastate.edu/etd/12034/Alkofahi_iastate_0097E_11811.pdf|||Fri Jan 14 19:11:19 UTC 2022
dc.subject.disciplines Electrical and Computer Engineering
dc.subject.keywords Service oriented architecture (SOA)
dc.subject.keywords SOA integrity model
dc.subject.keywords SOA Intrusion Detection
dc.subject.keywords SOA monitoring
dc.subject.keywords SOA security
dc.subject.keywords Specification based IDS
dc.title Service Oriented Architecture (SOA) Security Models
dc.type article
dc.type.genre dissertation
dspace.entity.type Publication
relation.isOrgUnitOfPublication a75a044c-d11e-44cd-af4f-dab1d83339ff
thesis.degree.level dissertation
thesis.degree.name Doctor of Philosophy
File
Original bundle
Now showing 1 - 1 of 1
Name:
Alkofahi_iastate_0097E_11811.pdf
Size:
1.11 MB
Format:
Adobe Portable Document Format
Description: