Authors:
S. Sattanathan
1
;
N. C. Narendra
2
;
Z. Maamar
3
and
G. Kouadri Mostéfaoui
4
Affiliations:
1
National Institute of Technology Karnataka, India
;
2
IBM India Research Lab, India
;
3
Zayed University, United Arab Emirates
;
4
University of Montreal, Canada
Keyword(s):
Policy, Context, Security, Web service.
Related
Ontology
Subjects/Areas/Topics:
Cloud Computing
;
Enterprise Information Systems
;
Semantic Web Technologies
;
Services Science
;
Software Agents and Internet Computing
Abstract:
Security of Web services is a major factor to their successful integration into critical IT applications. An extensive research in this direction concentrates on low level aspects of security such as message secrecy, data integrity, and authentication. Thus, proposed solutions are mainly built upon the assumption that security mechanisms are static and predefined. However, the dynamic nature of the Internet and the continuously changing environments where Web services operate require innovative and adaptive security solutions. This paper presents our solution for securing Web services based on adaptive policies, where adaptability is satisfied using the contextual information of the Web services. The proposed solution includes a negotiation and reconciliation protocol for security policies.