Zoekresultaten

Blader door alle records: alle velden: "*"

AuteurPieter Bram Ketting
TitelFORENSIC WEB SERVICES IN SOA SYSTEMS
BegeleidersT. Abcouwer, W.J.H Botzen
Jaar2011
FaculteitFaculteit der Natuurwetenschappen, Wiskunde en Informatica
OpleidingFNWI MSc Informatiekunde
SamenvattingThe research consists of a combination of two subjects; Software Oriented Architecture and Digital Forensics. The main research question is:
Do Forensic Web Services offer an added value to SOA environments?
An advanced theoretical background is established by doing an independent literature study. Based on twenty nine academic literature sources a conceptual model (figure 1) of SOA is constructed:
Figure 2 Conceptual model of SOA
In addition also a Digital Forensics conceptual model (figure 2), based on thirty one Academic resources, is constructed:
Figure 4 Conceptual model of Digital Forensics
Universiteit van Amsterdam Master Thesis – Bram Ketting
The two subjects (SOA and Forensics) were combined into the concept of Forensic Web services. This theoretical concept act as a centralized web service and provides online forensic functionalities to other web services. The essential task of this Web service is to collect transaction data between pairs of a requestor and a web service. The service itself will be delivered by a participating third party in a neutral and secure way.
To evaluate the potential value of Forensic Web services in a SOA environment, seven identified theoretical challenges were verified and tested by industry experts from ABN Amro, Rabobank and Deloitte Touche Tohmatsu.
The results are represented in table one whereby the following scale was used:
- Disregards the challenge
+ Regards the challenge of minor importance and has implemented little measures to deal with it
++ Regards the challenge important and has implemented measures to deal with it
+++ Regards the challenge very important and has taken far reaching measures to deal with it
Code
Challenges
#1
#2
#3
#4
#5
#6
PI
Platform independence
++
++
+++
+
+
+++
AD
Amount of data
++
++
++
+
++
++
PC
Privacy & confidentially
+++
+++
+++
+++
+++
++
NT
Neutrality
+
++
+
+
++
++
AS
Application security
++
++
+
+
+++
+++
CH
Comprehensiveness
++
++
++
++
++
++
RL
Reliability
+
++
+
+
+++
++ Social Engineering +++ Testing +++ Authentication +++ +++
Table 3 Analyze overview
The grey marked challenges were challenges that did not occur in the literature review but are experienced by the experts in the real world. Beside their recognition of the challenges and their understanding of the various options that Forensic Web services can offer, they currently do not see an added value. The conclusion is that based on the given expert feedback and the research results, further research on Forensic Web services is required in order to establish an added value within SOA systems.
Soort document scriptie master
Download bestand