Internet is offering a variety of services that are assembled to accomplish requests made by clients. While serving a request, security of the communications and of the data exchanged among services is crucial. Since communications occur along specific channels, it is equally important to guarantee that the interactions between a client and a server never get blocked because either cannot access a selected channel. We address here both these problems, from a formal point of view. A static analysis is presented, guaranteeing that a composition of a client and of possibly nested services respects both security policies for access control, and compliance between clients and servers. © 2014 Springer Science+Business Media New York.

A formal framework for secure and complying services

Basile D.;
2014

Abstract

Internet is offering a variety of services that are assembled to accomplish requests made by clients. While serving a request, security of the communications and of the data exchanged among services is crucial. Since communications occur along specific channels, it is equally important to guarantee that the interactions between a client and a server never get blocked because either cannot access a selected channel. We address here both these problems, from a formal point of view. A static analysis is presented, guaranteeing that a composition of a client and of possibly nested services respects both security policies for access control, and compliance between clients and servers. © 2014 Springer Science+Business Media New York.
2014
Istituto di Scienza e Tecnologie dell'Informazione "Alessandro Faedo" - ISTI
Compliance
Formal methods
QoS
Security
Service contracts
File in questo prodotto:
File Dimensione Formato  
prod_412711-doc_157407.pdf

accesso aperto

Descrizione: This is the Submitted version (preprint) of the following paper: Basile D., Degano P., Ferrari G.L. “A formal framework for secure and complying services”, 2014 submitted to “The journal of supercomputing”, Vol. 69 pp. 43-62 . The final published version is available on the publisher’s website https://link.springer.com/article/10.1007/s11227-014-1211-0.
Tipologia: Documento in Pre-print
Licenza: Nessuna licenza dichiarata (non attribuibile a prodotti successivi al 2023)
Dimensione 357.95 kB
Formato Adobe PDF
357.95 kB Adobe PDF Visualizza/Apri
prod_412711-doc_199771.pdf

solo utenti autorizzati

Descrizione: A formal framework for secure and complying services
Tipologia: Versione Editoriale (PDF)
Licenza: NON PUBBLICO - Accesso privato/ristretto
Dimensione 218.17 kB
Formato Adobe PDF
218.17 kB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/362308
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 6
  • ???jsp.display-item.citation.isi??? 5
social impact