SECTET is an extensible framework for the model-driven realization of security-critical, inter-organizational workflows. The framework is based on a methodology that focuses on the correct implementation of securityrequirements and consists of a suite of tools that facilitates the cost-efficient realization and management of decentralized, security-critical workflows. After giving a description of the framework, we show how it can be adapted to incorporate advanced security patterns like the Qualified Signature, which implements a legal requirement specific to e-government. It extends the concept of digital signature by requiring that the signatory be a natural person.
This contribution presents GEMSjax-a web-based metamodeling tool for the collaborative development of domain specific languages. By making use of modern Web 2.0 technologies like Ajax and REST services, the tool allows for simultaneous web browser-based creation/editing of metamodels and model instances, as well as secure remote model access via REST, which enables remote model modification over a simple HTTP-based interface. This paper describes the complex technical challenges we faced and solutions we produced to provide browser-based synchronous model editing. It further explains on the XACML-based access control mechanisms to provide secure remote access to models and model elements. Additionally, we highlight the usefulness of our approach by describing its application in a realistic usage scenario.
Creating and maintaining an enterprise architecture model that is both up-to-date and accurate is a difficult task due to the size and complexity of the models and the dispersed nature of EA information in organizations. In current EA maintenance processes, the models are maintained manually with only little automation, which is a time consuming task. Literature from research and practice has identified this challenge, however only few scientific publications actually address the issue of EA model maintenance and its automation. In our research effort on Living Models, we work towards solutions for a closer connection between EA models and what they represent in the real world. In this article we present (semi-)automated processes for maintaining enterprise architecture models by gathering information from both human input and technical interfaces and discuss implementation issues for realizing the processes in practice. This work is one of the first steps in the direction of minimizing manual work for EAM by automation and increasing EA data quality attributes such as consistency and actuality.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.