Internet is offering a variety of services that are assembled to accomplish requests made by clients. While serving a request, security of the communications and of the data exchanged among services is crucial. Since communications occur along specific channels, it is equally important to guarantee that the interactions between a client and a server never get blocked because either cannot access a selected channel. We address here both these problems, from a formal point of view. A static analysis is presented, guaranteeing that a composition of a client and of possibly nested services respects both security policies for access control, and compliance between clients and servers. © 2014 Springer Science+Business Media New York.
A formal framework for secure and complying services
Basile D.;
2014
Abstract
Internet is offering a variety of services that are assembled to accomplish requests made by clients. While serving a request, security of the communications and of the data exchanged among services is crucial. Since communications occur along specific channels, it is equally important to guarantee that the interactions between a client and a server never get blocked because either cannot access a selected channel. We address here both these problems, from a formal point of view. A static analysis is presented, guaranteeing that a composition of a client and of possibly nested services respects both security policies for access control, and compliance between clients and servers. © 2014 Springer Science+Business Media New York.File | Dimensione | Formato | |
---|---|---|---|
prod_412711-doc_157407.pdf
accesso aperto
Descrizione: This is the Submitted version (preprint) of the following paper: Basile D., Degano P., Ferrari G.L. “A formal framework for secure and complying services”, 2014 submitted to “The journal of supercomputing”, Vol. 69 pp. 43-62 . The final published version is available on the publisher’s website https://link.springer.com/article/10.1007/s11227-014-1211-0.
Tipologia:
Documento in Pre-print
Licenza:
Nessuna licenza dichiarata (non attribuibile a prodotti successivi al 2023)
Dimensione
357.95 kB
Formato
Adobe PDF
|
357.95 kB | Adobe PDF | Visualizza/Apri |
prod_412711-doc_199771.pdf
solo utenti autorizzati
Descrizione: A formal framework for secure and complying services
Tipologia:
Versione Editoriale (PDF)
Licenza:
NON PUBBLICO - Accesso privato/ristretto
Dimensione
218.17 kB
Formato
Adobe PDF
|
218.17 kB | Adobe PDF | Visualizza/Apri Richiedi una copia |
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.