Designing a logical security framework for enterprise service oriented architecture (ESOA)

Enterprise Service Oriented Architecture (ESOA) is an appropriate strategy to provide an integrated, flexible, adaptable, and cost efficient enterprise Service-based that derives from various set of Web Services combined with business logic to support a particular business process. Despite the benef...

Full description

Saved in:
Bibliographic Details
Main Author: Kalantari, Alaeddin
Format: Thesis
Language:English
Published: 2009
Subjects:
Online Access:http://eprints.utm.my/id/eprint/9763/1/AlaeddinKalantariMFSKSM2009.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-utm-ep.9763
record_format uketd_dc
spelling my-utm-ep.97632018-06-25T01:04:58Z Designing a logical security framework for enterprise service oriented architecture (ESOA) 2009-03 Kalantari, Alaeddin QA75 Electronic computers. Computer science Enterprise Service Oriented Architecture (ESOA) is an appropriate strategy to provide an integrated, flexible, adaptable, and cost efficient enterprise Service-based that derives from various set of Web Services combined with business logic to support a particular business process. Despite the benefit of SOA, integration of application makes security design more complex. It brings several security problems. There is no comprehensive security framework for helping developers to design an adequate security solution. In order to alleviate these problems, some additional nonfunctional security requirements are needed. This project aims to analyze the security requirements raised by real world SOA in an enterprise and proposes a logical security framework to meet these needs. This framework can support all three security levels (content, communication, and network) of IT infrastructure. The proposed Security Service Oriented Reference Architecture (SSORA) shows which security service defined by the proposed security framework can be applied on each layer of Service Oriented Reference Architecture. In the real world, the location of each service is an important element of security design. In order to decrease the holes of the inner firewall, a Service Routing Coordinator (SRC) is located in the internal network. This service acts as an intermediary between the Web Services and the internal network servers. The proposed framework is applied on the logical SOA deployment architecture in order to design a security solution for an enterprise. Designing a security solution for Razavi Financial Institute (RFI) shows that proposed security framework can be applied for any SOA based environment. 2009-03 Thesis http://eprints.utm.my/id/eprint/9763/ http://eprints.utm.my/id/eprint/9763/1/AlaeddinKalantariMFSKSM2009.pdf application/pdf en public masters Universiti Teknologi Malaysia, Faculty of Computer Science and Information System Faculty of Computer Science and Information System
institution Universiti Teknologi Malaysia
collection UTM Institutional Repository
language English
topic QA75 Electronic computers
Computer science
spellingShingle QA75 Electronic computers
Computer science
Kalantari, Alaeddin
Designing a logical security framework for enterprise service oriented architecture (ESOA)
description Enterprise Service Oriented Architecture (ESOA) is an appropriate strategy to provide an integrated, flexible, adaptable, and cost efficient enterprise Service-based that derives from various set of Web Services combined with business logic to support a particular business process. Despite the benefit of SOA, integration of application makes security design more complex. It brings several security problems. There is no comprehensive security framework for helping developers to design an adequate security solution. In order to alleviate these problems, some additional nonfunctional security requirements are needed. This project aims to analyze the security requirements raised by real world SOA in an enterprise and proposes a logical security framework to meet these needs. This framework can support all three security levels (content, communication, and network) of IT infrastructure. The proposed Security Service Oriented Reference Architecture (SSORA) shows which security service defined by the proposed security framework can be applied on each layer of Service Oriented Reference Architecture. In the real world, the location of each service is an important element of security design. In order to decrease the holes of the inner firewall, a Service Routing Coordinator (SRC) is located in the internal network. This service acts as an intermediary between the Web Services and the internal network servers. The proposed framework is applied on the logical SOA deployment architecture in order to design a security solution for an enterprise. Designing a security solution for Razavi Financial Institute (RFI) shows that proposed security framework can be applied for any SOA based environment.
format Thesis
qualification_level Master's degree
author Kalantari, Alaeddin
author_facet Kalantari, Alaeddin
author_sort Kalantari, Alaeddin
title Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_short Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_full Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_fullStr Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_full_unstemmed Designing a logical security framework for enterprise service oriented architecture (ESOA)
title_sort designing a logical security framework for enterprise service oriented architecture (esoa)
granting_institution Universiti Teknologi Malaysia, Faculty of Computer Science and Information System
granting_department Faculty of Computer Science and Information System
publishDate 2009
url http://eprints.utm.my/id/eprint/9763/1/AlaeddinKalantariMFSKSM2009.pdf
_version_ 1747814779865530368