cepts and rules. In (Speiser, 2010) a lightweight ap-
proach to specify semantic annotations in WS-Policy
is presented: it combines the syntactic matching with
the semantic matching capability provided by OWL.
6 CONCLUSIONS AND FUTURE
WORK
Defining, modeling and matching security policies is
a crucial problem that needs to be faced when dealing
with services spanning multiple administrative do-
mains. The existing models inspired to syntactic ap-
proaches are not very well suited for these heteroge-
neous and dynamic scenarios. In this paper we pro-
posed to leverage on the existing WS-Policy speci-
fication, proposing a semantic extension that enable
semantic mechanisms to matchmaking security capa-
bilities and requirements. The presented approach al-
lows to go beyond the strict syntactic intersection of
policy assertions. A security ontology is proposed to
catch the relationships among the concepts of security
Objective, Protocols, Algorithms and Credentials. A
simple example has also shown the viability of the
semantic approach and the actual limits of the pure
syntactic one. Future works will be aimed to improve
the capability to express more complex policies and
to enhance the ability of inference.
ACKNOWLEDGEMENTS
The work described in this paper has been par-
tially supported by the MIUR-PRIN 2008 project
“Cloud@Home: a New Enhanced Computing
Paradigm”.
REFERENCES
Damianou, N., Dulay, N., Lupu, E., and Sloman, M. (2001).
The ponder policy specification language. In Proceed-
ings of the International Workshop on Policies for Dis-
tributed Systems and Networks, POLICY ’01, pages
18–38, London, UK. Springer-Verlag.
Garcia, D. Z. G. a. and Felgar de Toledo, M. B. (2008).
Ontology-Based Security Policies for Supporting the
Management of Web Service Business Processes. In
2008 IEEE International Conference on Semantic
Computing, pages 331–338. Ieee.
Kagal, L., Finin, T., and Joshi, A. (2003). A policy language
for a pervasive computing environment. In Proceed-
ings of the 4th IEEE International Workshop on Poli-
cies for Distributed Systems and Networks, POLICY
’03, pages 63–, Washington, DC, USA. IEEE Com-
puter Society.
Kim, A., Luo, J., and Kang, M. (2005). Security ontol-
ogy for annotating resources. In On the Move to
Meaningful Internet Systems 2005: CoopIS, DOA,
and ODBASE, pages 1483–1499. Springer.
Lakshminarayanan, S. (2010). Interoperable security stan-
dards for web services. IT Professional, 12(5):42 –47.
OASIS (2006). Web Services Security (WS-Security). OA-
SIS Standard.
Phan, T., Han, J., Schneider, J., Ebringer, T., and Rogers,
T. (2008). A survey of policy-based management ap-
proaches for Service Oriented Systems. In Software
Engineering, 2008. ASWEC 2008. 19th Australian
Conference on, pages 392–401. IEEE.
Speiser, S. (2010). Semantic Annotations for WS-Policy.
In IEEE International Conference on Web Services
(ICWS 2010), pages 449–456. IEEE.
Sriharee, N., Senivongse, T., Verma, K., and Sheth, A.
(2004). On using ws-policy, ontology, and rule rea-
soning to discover web services. In Intelligence in
Communication Systems, number May 2004, pages
246–255. Springer.
Tonti, G., Bradshaw, J., Jeffers, R., Montanari, R., Suri, N.,
and Uszok, A. (2003). Semantic Web languages for
policy representation and reasoning: A comparison of
KAoS, Rei, and Ponder. In International Semantic
Web Conference (ISWC2003), pages 419–437, Florida
(USA). Springer.
Uszok, A., Bradshaw, J., Jeffers, R., Suri, N., Hayes, P.,
Breedy, M., Bunch, L., Johnson, M., Kulkarni, S., and
Lott, J. (2003). Kaos policy and domain services: To-
ward a description-logic approach to policy represen-
tation, deconfliction, and enforcement. In Proceed-
ings of the 4th IEEE International Workshop on Poli-
cies for Distributed Systems and Networks, POLICY
’03, pages 93–, Washington, DC, USA. IEEE Com-
puter Society.
Verma, K., Akkiraju, R., and Goodwin, R. (2005). Semantic
matching of Web service policies. In Semantic Web
Policy Workshop (SDWP 2005).
W3C (2007). Web services policy 1.5 - framework. W3C
Recommendation.
W3C (2009). OWL 2 Web Ontology Language. W3C Rec-
ommendation.
Zheng-qiu, H., Li-fa, W., Zheng, H., and Hai-guang, L.
(2009). Semantic Security Policy for Web Service. In
2009 IEEE International Symposium on Parallel and
Distributed Processing with Applications, pages 258–
262. Ieee.
SEMANTIC ANNOTATIONS FOR SECURITY POLICY MATCHING IN WS-POLICY
449