Multi-dimensional Secure Service Orchestration

Web services composition allows a software designer for combining atomic services, for instance taken from a marketplace, in a complex business process ful lling a desired functional goal. Moreover, among a large number of possible compositions, the designer may want to consider only those which satisfy speci c non-functional requirements.
In our work we consider veri cation of security properties and evaluation quantitative security metrics in a single framework. The main focus of this article is the veri cation of a composition with several security metrics
at once. We provide a general solution for the problem and show how such veri cation can be made more ecient in speci c cases (e.g., when a metric is an abstraction of another one). We employ a mathematical structure called c-semirings granting the generality of our approach.

2nd Workshop on Security in Business Process, Beijin, 2013

Autori esterni: Gabriele Costa (Univerity of Genova)
