Designing a logical security framework for enterprise service oriented architecture (ESOA)

Enterprise Service Oriented Architecture (ESOA) is an appropriate strategy to provide an integrated, flexible, adaptable, and cost efficient enterprise Service-based that derives from various set of Web Services combined with business logic to support a particular business process. Despite the benef...

Full description

Saved in:
Bibliographic Details
Main Author: Kalantari, Alaeddin
Format: Thesis
Language:en
Published: 2009
Subjects:
Online Access:http://eprints.utm.my/9763/1/AlaeddinKalantariMFSKSM2009.pdf
http://eprints.utm.my/9763/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1845472231530954752
author Kalantari, Alaeddin
author_facet Kalantari, Alaeddin
author_sort Kalantari, Alaeddin
building UTM Library
collection Institutional Repository
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
continent Asia
country Malaysia
description Enterprise Service Oriented Architecture (ESOA) is an appropriate strategy to provide an integrated, flexible, adaptable, and cost efficient enterprise Service-based that derives from various set of Web Services combined with business logic to support a particular business process. Despite the benefit of SOA, integration of application makes security design more complex. It brings several security problems. There is no comprehensive security framework for helping developers to design an adequate security solution. In order to alleviate these problems, some additional nonfunctional security requirements are needed. This project aims to analyze the security requirements raised by real world SOA in an enterprise and proposes a logical security framework to meet these needs. This framework can support all three security levels (content, communication, and network) of IT infrastructure. The proposed Security Service Oriented Reference Architecture (SSORA) shows which security service defined by the proposed security framework can be applied on each layer of Service Oriented Reference Architecture. In the real world, the location of each service is an important element of security design. In order to decrease the holes of the inner firewall, a Service Routing Coordinator (SRC) is located in the internal network. This service acts as an intermediary between the Web Services and the internal network servers. The proposed framework is applied on the logical SOA deployment architecture in order to design a security solution for an enterprise. Designing a security solution for Razavi Financial Institute (RFI) shows that proposed security framework can be applied for any SOA based environment.
format Thesis
id my.utm.eprints-9763
institution Universiti Teknologi Malaysia
language en
publishDate 2009
record_format eprints
spelling my.utm.eprints-97632018-06-25T01:04:58Z http://eprints.utm.my/9763/ Designing a logical security framework for enterprise service oriented architecture (ESOA) Kalantari, Alaeddin QA75 Electronic computers. Computer science Enterprise Service Oriented Architecture (ESOA) is an appropriate strategy to provide an integrated, flexible, adaptable, and cost efficient enterprise Service-based that derives from various set of Web Services combined with business logic to support a particular business process. Despite the benefit of SOA, integration of application makes security design more complex. It brings several security problems. There is no comprehensive security framework for helping developers to design an adequate security solution. In order to alleviate these problems, some additional nonfunctional security requirements are needed. This project aims to analyze the security requirements raised by real world SOA in an enterprise and proposes a logical security framework to meet these needs. This framework can support all three security levels (content, communication, and network) of IT infrastructure. The proposed Security Service Oriented Reference Architecture (SSORA) shows which security service defined by the proposed security framework can be applied on each layer of Service Oriented Reference Architecture. In the real world, the location of each service is an important element of security design. In order to decrease the holes of the inner firewall, a Service Routing Coordinator (SRC) is located in the internal network. This service acts as an intermediary between the Web Services and the internal network servers. The proposed framework is applied on the logical SOA deployment architecture in order to design a security solution for an enterprise. Designing a security solution for Razavi Financial Institute (RFI) shows that proposed security framework can be applied for any SOA based environment. 2009-03 Thesis NonPeerReviewed application/pdf en http://eprints.utm.my/9763/1/AlaeddinKalantariMFSKSM2009.pdf Kalantari, Alaeddin (2009) Designing a logical security framework for enterprise service oriented architecture (ESOA). Masters thesis, Universiti Teknologi Malaysia, Faculty of Computer Science and Information System.
spellingShingle QA75 Electronic computers. Computer science
Kalantari, Alaeddin
Designing a logical security framework for enterprise service oriented architecture (ESOA)
title Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_full Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_fullStr Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_full_unstemmed Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_short Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_sort designing a logical security framework for enterprise service oriented architecture (esoa)
topic QA75 Electronic computers. Computer science
url http://eprints.utm.my/9763/1/AlaeddinKalantariMFSKSM2009.pdf
http://eprints.utm.my/9763/
url_provider http://eprints.utm.my/