Abstract | ||
---|---|---|
Service clouds built on cloud infrastructures and service-oriented architecture provide users with a novel pattern of composing basic services to achieve complicated tasks. However, in multiple clouds environment, outsourcing data and applications pose a great challenge to information flow security for the composite services, since sensitive data may be leaked to unauthorized attackers during service composition. Although model checking has been considered as a promising approach to enforce information flow security precisely, its high complexity on modeling and the heavy cost on verification cause great burdens to the process of service composition. In this paper, we propose a distributed approach to composing services securely with information flow control. In our approach, each service component is first verified through model checking, and then a compositional verification procedure is executed to ensure the information flow security along with the composition of these services. The experimental results indicate that our approach can reduce the cost of verification compared with the global verification approach. For the dynamic dependences in service chain, we propose a Secure Information Flow Model for service composition in service clouds.We specify the security constraints for each service participant based on the dependences and lattice model.We propose a distributed compositional information verification algorithm for the secure service composition in service clouds.Our approach simplifies the complexity of model checking and decreases the cost of the verification work effectively. |
Year | DOI | Venue |
---|---|---|
2015 | 10.1016/j.future.2014.12.009 | Future Generation Computer Systems |
Keywords | Field | DocType |
Service cloud,Service composition,Data dependencies,Information flow security | Information flow (information theory),Architecture,Model checking,Computer science,Outsourcing,Service composition,Security service,Verification procedure,Cloud computing,Distributed computing | Journal |
Volume | Issue | ISSN |
49 | C | 0167-739X |
Citations | PageRank | References |
8 | 0.47 | 17 |
Authors | ||
4 |
Name | Order | Citations | PageRank |
---|---|---|---|
Ning Xi | 1 | 12 | 1.55 |
Cong Sun | 2 | 95 | 4.59 |
Jianfeng Ma | 3 | 1336 | 155.62 |
Yulong Shen | 4 | 235 | 50.62 |