UM FRAMEWORK DE SEGURANÇA BASEADO EM ENGENHARIA DIRIGIDA POR MODELOS PARA PLATAFORMAS DE COMPUTAÇÃO EM NUVEM: Uma Abordagem para Modelos SaaS.

The development and use of software based on cloud computing have been highlighted more and more nowadays. Software as a Service (SaaS) has been considered as a trend for small, medium and large companies, subtly acquiring presence in personal computing too. This service popularizing brings with it...

Descripción completa

Detalles Bibliográficos
Autor: MATOS, Pablo Luís Castro de
Tipo de recurso: tesis de maestría
Estado:Versión publicada
Fecha de publicación:2015
País:Brasil
Institución:Universidade Federal do Maranhão (UFMA)
Repositorio:Biblioteca Digital de Teses e Dissertações da UFMA
Idioma:portugués
OAI Identifier:oai:tede2:tede/1862
Acceso en línea:http://tedebc.ufma.br:8080/jspui/handle/tede/1862
Access Level:acceso abierto
Palabra clave:Computação em Nuvem; Segurança; Engenharia Dirigida por Modelos; Modelo Weaving; Transformações de Modelos
Cloud Computing; Security; Model-Driven Engineering; Weaving Model; Model Transformations
Sistemas de Informação
Descripción
Sumario:The development and use of software based on cloud computing have been highlighted more and more nowadays. Software as a Service (SaaS) has been considered as a trend for small, medium and large companies, subtly acquiring presence in personal computing too. This service popularizing brings with it many challenges concerning to information security handled by their suppliers and the vulnerability of their applications. In this work, we propose a SaaS development framework by combining the Model-Driven Engineering (MDE) with merging techniques of domain-security models and domainapplication model. This approach involves the use of MDE techniques for achieving such adaptation and assist in the software development process. By adopting the MDE approach, it is possible to combine elements of different models, from source models reaching a target model by using weaving techniques. A prototype implements the proposed framework and reuses the Mapping Tool for Model Driven Engineering (MT4MDE) and Semi-Automatic Matching Tool for Model Driven Engineering (SAMT4MDE) in order to demonstrate the used methodology. The results demonstrate the feasibility and benefits of combining several security aspects in the development process of SaaS.