CORISECIO
CORISECIO
CORISECIO
Home




Architecture




Visual Modeler



CORISECIO - SOA - Security Infrastructure - Architecture
15.07.2008
CORISECIO - SOA - Security Infrastructure - Architecture
CORISECIO works with an architecture consisting of Security Broker as central administration component as well as local runtime components (connectors), where local policy rules are realized. The interface between Policy Administration and Policy Enforcement are the Security Rules. All components function according to the Plug-In Adapter concept and base on standard technologies like XML and Java. So integration into existing infrastructures is easily possible.

Security Broker

The Security Broker is the central administration engine and primarily takes over Policy Administration tasks. The Security Broker is the management component of all securityRunTime components. The Security Broker offers Management Services for the administration, the modeling as well as the Policy Generation.

Here the Security Rules are created and distributed to all connected systems. The Security Rules exist locally on the systems, whereby a permanent connection to the server is not necessary. Accordingly no Single Point of Failure is produced, so that all systems stay completely executable even at a breakdown of the Security Broker engine or its network connection.

Besides the administration functionality the Security Broker also acts as a Service Provider. Each functionality is available as Service in the Security Broker and may be called up via a Web Service Request.

Supported Platforms:

 Apache Tomcat 5.5
 JBOSS
 SAP WebAS
 IBM Websphere (optional) 

Security Repository
All data of the Security Broker are kept in an own Security Repository. Basically the Repository consists of a relational database, where all sensitive data is stored encrypted and signed. So the data is protected against unauthorized access and manipulation. Companies may optionally run the BSF with own databases without having to install new systems.

Supported database systems:

 MySQL
 Oracle
 IBM DB2

Security Administration RCP (Rich Client Platform)
Configuration and control of the Security Brokers is done via decentralized available administration surface e. g. the Security Administration (RCP). All functions and services implemented in the Security Broker may be administrated via a central location.

Supported platforms:

 Java/Eclipse compatible systems
 Microsoft Windows XP/2000
 Linux distributions (on request)

Security Connector
The Security Connectors realize the Security Rules on the systems. Equipped with Security and Automation components of the SAM Foundation, the connectors are able to process Security Rules and offer accordant Services via the Security Service Bus.

Supported platforms:

 Apache Tomcat 5.5
 JBOSS
 SAP WebAS



Download:
Factsheet - securityRunTime
Download the current factsheet free of charge. For further information we are glad to assist you personally. To the Download Center

Download: Factsheet Security Services
Please find further Information on the new Factsheets, regarding SOA Security Services:
Factsheet - Anti Virus Service
Factsheet - WAF Service
Factsheet - XKMS Service

Download: White Paper - SOA Security
We are happy to provide you with the new White Paper. Please contact us and we will send you all information immediately. Contact us!