26 May 2009

SOA governance architecture at ICWS

Later this summer, at ICWS [1], I will be presenting some of the ideas developed during the last few months on SOA governance [2]. In our quest to find a way to render business capabilities (e.g. web services) exposure and management easier, we have developed an architectural model that describes how to go at it.

The main points covered are resource (e.g. a software artefact such as a service) contextualisation, visibility, adaptation and life-cycle management as well as policy administration and process management. I know, there is a lot to cover in just 8 standard IEEE style pages, but apparently we’ve managed to do a good enough job for the reviewers to accept the paper.

If you would like more information on the topic please do drop me an email.

[1] IEEE 7th International Conference on Web Services (ICWS 2009) http://conferences.computer.org/icws/2009/

[2] de Leusse, P., Dimitrakos, T., and Brossard, D., A governance model for SOA, IEEE 7th International Conference on Web Services (ICWS 2009), July 6-10, 2009, Los Angeles, CA, USA

9 April 2009

Academic achievements

Workshop organisation
Burton Group & BT - SOA governance

Technical committee
MESH 2009, MESH 2010, AFIN 2010, SECURWARE 2011

Technical reviewer
Wiley Security and Communication Networks Journal - special issue on Security and Trust Management for Dynamic Coalitions
Third IFIP International Conference on Trust Management

Session Chair
MESH 2008, AFIN 09, SECURWARE 10

Book chapter
Dimitrakos, T., Brossard, D. and de Leusse, P., Securing the Service Oriented Infrastructure: research challenges and emerging solutions, Handbook on communications and information security, Stavroulakis, P, 2009, To be published

Journal article
de Leusse, P., Brossard, D. and Georgalas, N. (2010), Securing business operations in an SOA. Security and Communication Networks, 3: 456–485. doi: 10.1002/sec.188

Dimitrakos, T., Brossard, D. and de Leusse, P., Securing Business Operations in SOA, BT Technology Journal, vol.27, no.2 (https://www.btplc.com/Innovation/Journal/BTTJ/current/HTMLArticles/Volume26/22Securing/Default.aspx)

Conference/Worshop papers
de LEUSSE, P., Dimitrakos, T., SOA-based security governance middleware, SECURWARE 2010: the fourth international conference on Emerging security information, systems and technologies : 18–25 July 2010, Venice, Italy, eds. Reijo Savola, et al., IEEE, 2010, ISBN-13 978-0-7695-4095-5.

de Leusse, P., Dimitrakos, T., and Brossard, D., A governance model for SOA, IEEE 7th International Conference on Web Services (ICWS 2009), July 6-10, 2009, Los Angeles, CA, USA

de Leusse, P., Panos Periorellis, Dimitrakos, T., and Srijith K. Nair, Self Managed Security Cell, a security model for the Internet of Things and Services, The First International Conference on Advances in Future Internet, AFIN 2009, IEEE Computer Society, June 18-23, 2009, Athens/Vouliagmeni, Greece, Best paper award

de Leusse, P., Periorellis, P., Watson, P. and Dimitrakos, T., A semi autonomic infrastructure to manage non functional properties of a service
In UK e-Science All Hands Meeting 2008, 8-11 September, Edinburgh, UK, National e-Science Centre, 2008

de Leusse, P., Periorellis, P., Watson, P. and Maierhofer, A., Secure & Rapid Composition of Infrastructure Services in the Cloud, In The Second International Conference on Sensor Technologies and Applications, SENSORCOMM 2008, 25-31, August 2008, Cap Esterel, France, pp 770-775, IEEE Computer Society, 2008

de Leusse, P., Periorellis, P., Dimitrakos, T. and Watson, P., An architecture for non functional properties management in distributed computing, Doctoral Consortium on Software and Data Technologies - Proceedings of the Doctoral Consortium on Software and Data Technologies, DCSOFT 2008, In Conjunction with ICSOFT 2008
2008, Pages 26-37

Demo
de Leusse, P., Kwolek, B., Zielinski, K., A middleware infrastructure for multi-rule-engine distributed systems, Towards a service-based internet : third European conference, ServiceWave 2010 : Ghent, Belgium, December 13–15, 2010 : proceedings / eds. Elisabetta Di Nitto, Ramin Yahyapour. — Berlin ; Heidelberg : Springer-Verlag, cop. 2010. — (Lecture Notes in Computer Science ; ISSN 0302-9743 ; 6481). — ISBN-10 3-642-17693-2 ; ISBN-13 978-3-642-17693-7.

de Leusse, P., Kwolek, B., Zielinski, K., A common interface for multi-rule-engine distributed systems, RuleML-2010 Challenge : 4th international rule challenge : Web rule symposium, p. 21–23, 2010 : proceedings., eds. Monica Palmirani, et al. Washington, DC, USA, October. (http://ftp.informatik.rwth-aachen.de/Publications/CEUR-WS/Vol-649/)

de Leusse, P. and Brossard, D., Distributed systems security governance, a SOA based approach, Third IFIP International Conference on Trust Management, Springer, June 15-19, 2009, Purdue University, West Lafayette, USA

Technical reports
de Leusse, P., Periorellis, P., Watson, P., CS-TR No 1037 Enterprise Service Bus: An overview, School of Computing Science, Newcastle University, Jul 2007

4 April 2009

Gartner report “Magic Quadrant for Integrated SOA Governance Technology Sets” 2009

The Gartner report “Magic Quadrant for Integrated SOA Governance Technology Sets” version 2009 has arrived [1]. Of course it mentions that with the current crisis, SOA governance is more than ever of importance for organisations. But more importantly the report mentions that albeit the market (of SOA governance technologies) is still in turmoil, the companies have dramatically matured. This might mean that we could finally get some policy enforcement and governance common specifications...yes I'm an idealist...Please note that the report does mention the non existence of SOA governance interoperability common specification.

Governance seems to have officially passed the stage of being just “stick it into a registry so that we know where it is” (i.e. resource visibility) and we can read in this report a little bit about integration, interaction, monitoring, validation and life cycle management. I do keep hearing about governance product that are in fact “just” registries and repositories.

In fact, I'm quite pleased with this report as the very topic of my research in underlined as a “very apparent key data point”: “Customers are looking to govern their interactions with business partners and services provided by the cloud”.

We even get a quick definition (their own): "SOA governance is about ensuring and validating that assets and artifacts within the architecture are operating as expected and maintaining a certain level of quality".

[1] Gartner report “Magic Quadrant for Integrated SOA Governance Technology Sets”, available at http://www.softwareag.com/Corporate/Images/Software_AG_Article4_SOA_tcm16-37108.pdf

12 March 2009

Self Managed Security Cell, a security model for the Internet of Things and Services (IoTS)

I'm delighted to announce that my paper with Panos [1] and Theo [2] on Self Managed Security Cell, a security model for the Internet of Things and Services (IoTS) has been accepted at AFIN 2009 [3].

This paper discusses what we feel is necessary for security to work efficiently in the IoTS. IoTS is such an exciting domain and this paper is a written version of dicussions on the topic we've had at work/coffee/home/in front of the XBox...:)

[1] http://periorellis.blogspot.com/

[2] http://labs.bt.com/cissr/People.html

[3] The First International Conference on Advances in Future Internet AFIN 2009

10 March 2009

SOA governance Burton Group & BT workshop

A few weeks back I got very frustrated that BT's contract with the Burton Group didn't allow me to get the SOA Governance Infrastructure [1] report from Anne Thomas Manes. This could basically be the title of my thesis! :)

So as the good student that I am (I don't want to hear any laughs!), I wrote to them to explain my predicament and propose a deal: i'll show you mine, if you show me yours!

A few hours later I had a polite answer requesting a date for this meeting and names of Burton's analysts. Yes my work is that interesting! :) Thanks to my supervisor, Theo Dimitrakos [2] we could arrange for the meeting to take place and host it.

The SOA governance Burton Group & BT workshop is taking place at Adastral Park this Thursday (03.12.2009) where we will receive Richard Watson [3] and Manfred Haertel to discuss this very exciting topic.

[1] Anne Thomas Manes, SOA Governance Infrastructure, Application Platform Strategies Reference Architecture template, Burton Group, http://www.burtongroup.com/Research/PublicDocument.aspx?cid=946

[3] Theo Dimitrakos, Head of Security Architectures Research http://labs.bt.com/cissr/People.html

[3] Richard Watson, Analyst, Emphases: XML, java, J2EE, SOA, web services http://www.burtongroup.com/AboutUs/Bios/PrintBio.aspx?Id=149

IFIPTM'09 SOA security governance demonstration

No post for ages as I've been kept very busy for the last few months.

But some results are starting to show up and to start: a demonstration proposal from David Brossard and myself has been accepted at IFIPTM 09 [1]. I'll present a prototype of SOA security governance I'm working on (the evaluation bit of my thesis). Some interesting (complex) middleware that allows to simplify and render security more dynamic for distributed systems. I cannot write much more about it since BT is attempting to patent it but it's both interesting and cool ;).

I've seen in the accepted papers that my ex colleague at Newcastle University Georgios PITSILIS is presenting his research. I hope I'll be able to catch up with him and see what he's up to now [2].

[1] The 3rd IFIP International Conference on Trust Management (IFIPTM'09) http://projects.cerias.purdue.edu/IFIPTM/

[2] Georgios PITSILIS. Trust-enhanced Recommender Systems for Efficient
On-line collaboration http://projects.cerias.purdue.edu/IFIPTM/apaper.html

8 January 2009

SOA is Dead; Long Live Services

It's been all over the technical news for the last few days and it won't fail to stir up quite a few heated discussions: it's of course Anne Thomas Manes' article SOA is Dead; Long Live Services [1].

It is indeed very interesting. But as Stefan Tilkov comments on Infoq [2]:
In all fairness, Anne seems to object to the word SOA, not necessarily the concept, because it seems to have lost its meaning for many people.

[1] http://apsblog.burtongroup.com/2009/01/soa-is-dead-long-live-services.html

[2] http://www.infoq.com/news/2009/01/is-soa-dead

18 December 2008

Under new supervision

With Panos leaving academia and joining Microsoft to pursue his career in the industry, Nick has kindly accepted to step in to replace him as my supervisor for the last year of my PhD.

I'm looking forward to working with Nick. His work is an inspiration (Nick's thesis is one of the best I've read) and I hope we'll be successful working together.

25 September 2008

What is Cloud?

After hearing so much about Cloud Computing [1], a few months ago I decided to find my own answers...

You can find these in this document: What is Cloud? [2] Named after the famous “What is Grid? A three point check” [3]. I don't expect my document to reach such a high level of visibility, but it might start a few discussions...

Following is a short teaser:
I start by introducing distributed computing and Grid because, frankly said; I didn't think there was anything new in Cloud. However, the principal points I’m trying to make in this document are:
We’ve reached such a high level of complexity and size in distributed systems that more and more tasks should be managed automatically.
Computing resources are not only the usual data or processor time anymore, but could be anything.

I’ll follow the discussions over on wiki and in the different events I’ll attend because these two points are at the base of my work.

More on this later as I am working on some exiting stuff related to Cloud and security…(did I hear security in Cloud computing?!).

[1] http://en.wikipedia.org/wiki/Cloud_computing
[2] http://homepages.cs.ncl.ac.uk/pierre.de-leusse/files/whatIsCloud.pdf
[3] http://www-fp.mcs.anl.gov/~foster/Articles/WhatIsTheGrid.pdf

18 September 2008

Highlands roadtrip


Following AHM [1], Anna and I went on a roadtrip in the highlands. From Edinburgh to Inverness, followed by Gairloch, Ullapool and Stoer (amongst other destinations). It was a blast, we saw so many nice things like seals, baskin sharks or wonderfull landscapes...still 641 miles (1000km+) in 4 days is a lot.

We're both looking forward to go there again!

[1] http://de-leusse.blogspot.com/2008/09/uk-e-science-all-hands-meeting-2008.html