{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,10]],"date-time":"2026-06-10T15:16:06Z","timestamp":1781104566057,"version":"3.54.1"},"reference-count":29,"publisher":"IGI Global Scientific Publishing","issue":"2","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011,4,1]]},"abstract":"<p>The message-based communication among services in Service-based Systems (SBS) is vulnerable to various security attacks and must be well protected by security mechanisms, which may affect performance due to available system resources. In this paper, an adaptive approach is presented to optimize the tradeoff between service performance and security according to SBS users\u2019 requirements and preferences on performance and security. This adaptive approach is based on a tradeoff algorithm with quantitative performance and security metrics and the tradeoff objective function. An SBS example with a security service and a traffic service is used to illustrate the approach.<\/p>","DOI":"10.4018\/jwsr.2011040104","type":"journal-article","created":{"date-parts":[[2011,10,19]],"date-time":"2011-10-19T12:57:06Z","timestamp":1319029026000},"page":"74-91","source":"Crossref","is-referenced-by-count":11,"title":["An Adaptive Approach to Optimizing Tradeoff Between Service Performance and Security in Service-Based Systems"],"prefix":"10.4018","volume":"8","author":[{"given":"Stephen S.","family":"Yau","sequence":"first","affiliation":[{"name":"Arizona State University, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yin","family":"Yin","sequence":"additional","affiliation":[{"name":"Microsoft, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ho","family":"An","sequence":"additional","affiliation":[{"name":"Arizona State University, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"2432","reference":[{"key":"jwsr.2011040104-0","doi-asserted-by":"publisher","DOI":"10.1109\/MCS.2003.1200252"},{"key":"jwsr.2011040104-1","author":"S.Bajaj","year":"2004","journal-title":"Web Services Policy Framework (WS-Policy)"},{"key":"jwsr.2011040104-2","doi-asserted-by":"crossref","unstructured":"Bernstein, D. J., & Schwabe, P. (2008). New AES Software Speed Records. 9th International Conference on Cryptology in India (pp. 322-336). Springer.","DOI":"10.1007\/978-3-540-89754-5_25"},{"key":"jwsr.2011040104-3","unstructured":"Biryukov, A., & Khovratovich, D. (2009, Aug). A New Security Analysis of AES-128. Retrieved from http:\/\/rump2009.cr.yp.to\/b6f3cb038135799a7ea398f99faf4a55.pdf"},{"key":"jwsr.2011040104-4","doi-asserted-by":"crossref","unstructured":"Biryukov, A., & Khovratovich, D. (2009). Related-key cryptanalysis of the full AES-192 and AES-256. Retrieved from https:\/\/cryptolux.org\/mediawiki\/uploads\/1\/1a\/Aes-192-256.pdf","DOI":"10.1007\/978-3-642-10366-7_1"},{"issue":"1","key":"jwsr.2011040104-5","first-page":"57","article-title":"QoS Requirements of Network Applications on the Internet. Info., Knowledge","volume":"4","author":"Y.Chen","year":"2004","journal-title":"Systems Management"},{"key":"jwsr.2011040104-6","doi-asserted-by":"publisher","DOI":"10.1109\/78.852023"},{"key":"jwsr.2011040104-7","first-page":"9","author":"M. V.Droogenbroeck","year":"2002","journal-title":"Techniques for a Selective Encryption of Uncompressed and Compressed Images. Proc. of Adv. Concepts for Intelligent Vision Systems"},{"key":"jwsr.2011040104-8","doi-asserted-by":"publisher","DOI":"10.1023\/A:1019200806549"},{"key":"jwsr.2011040104-9","unstructured":"Godik, S., & Moses, T. (2003, February). eXtensible Access Control Markup Language (XACML) Version 1.0. OASIS Standard ."},{"key":"jwsr.2011040104-10","unstructured":"Hallam-Baker, P., & Mysore, S. (2005). XML Key Management Specification (XKMS 2.0). W3C Recommendation ."},{"key":"jwsr.2011040104-11","author":"L.Hathaway","year":"2003","journal-title":"National Policy on the Use of the Advanced Encryption Standard (AES) to Protect National Security Systems and National Security Information"},{"key":"jwsr.2011040104-12","doi-asserted-by":"crossref","unstructured":"Kang, K., & Son, S. (2006). Systematic Security and Timeless Tradeoffs in Real-Time Embedded Systems. Proc. 12th IEEE Int'l Conf. on Embedded and Real-Time Computing Systems and Application, 183-189.","DOI":"10.1109\/RTCSA.2006.59"},{"key":"jwsr.2011040104-13","doi-asserted-by":"crossref","first-page":"255","DOI":"10.1007\/s00145-001-0009-4","article-title":"Selecting Cryptographic Key Sizes.","volume":"14","author":"A.Lenstra","year":"2001","journal-title":"J. of Cryptology"},{"key":"jwsr.2011040104-14","unstructured":"Lie, D., & Satyanarayanan, M. (2007). Quantifying the Strength of Security Systems. Proc. of 2nd USENIX Workshop on Hot Topics in Security, (pp. 1-6)."},{"key":"jwsr.2011040104-15","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2006.123"},{"key":"jwsr.2011040104-16","unstructured":"Mactaggart, M. (2001). Enabling XML Security: An Introduction to XML Encryption and XML Signature. IBM Developer Works, 9."},{"key":"jwsr.2011040104-17","first-page":"249","author":"A.Pashalidis","year":"2003","journal-title":"A Taxonomy of Single Sign-On Systems"},{"issue":"12","key":"jwsr.2011040104-18","first-page":"1473","article-title":"A Tale of Two Sieves.","volume":"43","author":"C.Pomerance","year":"1996","journal-title":"Notices of the AMS"},{"key":"jwsr.2011040104-19","unstructured":"Rao, G., & Ramamurthy, B. (2001). DiffServer: Appliction Level Differentiated Services for Webservers. Proc. of IEEE Int'l Conf. on Communication, 5, pp. 1633-1637."},{"key":"jwsr.2011040104-20","unstructured":"Shi, C., Wang, S. Y., & Bhargava, B. (1999). MPEG Video Encryption in Real-Time Using Secret key Cryptography. Proc. of Int'l Conf. on Parallel and Distributed Processing Techniques and Applications (PDPTA)."},{"key":"jwsr.2011040104-21","doi-asserted-by":"crossref","unstructured":"Son, S. H., Zimmerman, R., & Hansson, J. (2000). An Adaptable Security Manager for Real-Time Transactions. Proc. 12th Euromicro Conf. on Real-Time Systems, (pp. 63-70).","DOI":"10.1109\/EMRTS.2000.853993"},{"key":"jwsr.2011040104-22","doi-asserted-by":"crossref","unstructured":"Spyropoulou, E., Levin, T., & Irvine, C. (2000). Calculating Costs for Quality of Security Service. Proc. 16th Annual Conf. Computer Security Applications, (pp. 334-343).","DOI":"10.21236\/ADA423571"},{"key":"jwsr.2011040104-23","author":"R.Steel","year":"1960","journal-title":"Principles and Procedures of Statistics"},{"key":"jwsr.2011040104-24","doi-asserted-by":"crossref","unstructured":"Yau, S. S., Yan, M., & Huang, D. (2007). Design of Service-based Systems with Adaptive Tradeoff between Security and Service Delay. Proc. 4th Int'l Conf. on Autonomic and Trusted Computing, (pp. 394-401).","DOI":"10.1007\/978-3-540-73547-2_13"},{"key":"jwsr.2011040104-25","doi-asserted-by":"crossref","unstructured":"Yau, S. S., Ye, N., Sarjoughian, H., & Huang, D. (2008). Developing Service-based Software Systems with QoS Monitoring and Adaptation. Proc. of 12th Int'l Workshop on Future Trends of Distributed (FTDCS), (pp. 74-80).","DOI":"10.1109\/FTDCS.2008.44"},{"key":"jwsr.2011040104-26","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2009.17"},{"key":"jwsr.2011040104-27","doi-asserted-by":"crossref","unstructured":"Yurcik, W., Woolam, C., Hellings, G., Khan, L., & Thuraisingham, B. (2007). SCRUB-tcpdump: A Multi-level Packet Anonymizer Demonstrating Privacy\/Analysis Tradeoffs. Proc. 3rd Security and Privacy in Commu. Networks and the Workshops (SecureComm), (pp. 49-56).","DOI":"10.1109\/SECCOM.2007.4550306"},{"key":"jwsr.2011040104-28","doi-asserted-by":"publisher","DOI":"10.1109\/TMM.2003.808817"}],"container-title":["International Journal of Web Services Research"],"original-title":[],"language":"ng","link":[{"URL":"https:\/\/www.igi-global.com\/viewtitle.aspx?TitleId=55237","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,1]],"date-time":"2022-06-01T17:29:02Z","timestamp":1654104542000},"score":1,"resource":{"primary":{"URL":"https:\/\/services.igi-global.com\/resolvedoi\/resolve.aspx?doi=10.4018\/jwsr.2011040104"}},"subtitle":[""],"short-title":[],"issued":{"date-parts":[[2011,4,1]]},"references-count":29,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2011,4]]}},"URL":"https:\/\/doi.org\/10.4018\/jwsr.2011040104","relation":{},"ISSN":["1545-7362","1546-5004"],"issn-type":[{"value":"1545-7362","type":"print"},{"value":"1546-5004","type":"electronic"}],"subject":[],"published":{"date-parts":[[2011,4,1]]}}}