NIH | National Cancer Institute | NCI Wiki  

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Migrated to Confluence 4.0
Wiki Markup
{scrollbar:icons=false}

h4. {
Scrollbar
iconsfalse
page-info

...

Panel
titleContents of this Page
Table of Contents
minlevel5
Summary
Description of the profile

Service Oriented Architecture is an architectural paradigm for organizing and utilizing distributed capabilities that may be under the control of different ownership domains. Consequently, it is important that organizations that plan to engage in service interactions adopt governance policies and procedures sufficient to ensure that there is standardization across both internal and external organizational boundaries to promote the effective creation and use of SOA-based services.

Governance is expressed through policies and assumes multiple use of focused policy modules that can be employed across many common circumstances.

Governance Policies are a kind of Policy and Contract and consequently specialize capabilities architecturally implied by the concept of Policy and Contract. Additionally, Governance Policies specialize capabilities architecturally implied by the concept of Governance.

Governance Policies specializes capabilities architecturally implied by its associated concepts of Artifact , Change , Composition , Governance , Interaction , Interoperability , Management , Metrics , Policy , PolicyAndContract , PolicyAndContractLanguage . The implied architectural capabilities are described in the following paragraphs.

Artifact An artifact is a managed resource within the Semantic Infrastructure.

An artifact is associated with the following capabilities:

  • descriptions to enable the artifact to be visible, where the description includes a unique identifier for the artifact and a sufficient, and preferably a machine processible, representation of the meaning of terms used to describe the artifact, its functions, and its effects;
  • one or more discovery mechanisms that enable searching for artifacts that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual artifact descriptions, possibly through some repository mechanism;
  • accessible storage of artifacts and artifact descriptions, so service participants can access, examine, and use the artifacts as defined.

Change Artifact descriptions change over time and their contents will reflect changing needs and context.

Architectural implications of change on the Semantic Infrastructure are reflected in the following capabilities:

  • mechanisms to support the storage, referencing, and access to normative definitions of one or more versioning schemes that may be applied to identify different aggregations of descriptive information, where the different schemes may be versions of a versioning scheme itself;
  • configuration management mechanisms to capture the contents of the each aggregation and apply a unique identifier in a manner consistent with an identified versioning scheme;
  • one or more mechanisms to support the storage, referencing, and access to conversion relationships between versioning schemes, and the mechanisms to carry out such conversions.

Composition Artifact Descriptions may capture very focused information subsets or can be an aggregate of numerous component descriptions. Service description is an example of a likely aggregate for which manual maintenance of all aspects would not be feasible.

Architectural implications of composition on the Semantic Infrastructure are reflected in the following capabilities:

  • tools to facilitate identifying description elements that are to be aggregated to assemble the composite description;
  • tools to facilitate identifying the sources of information to associate with the description elements;
  • tools to collect the identified description elements and their associated sources into a standard, referenceable format that can support general access and understanding;
  • tools to automatically update the composite description as the component sources change, and to consistently apply versioning schemes to identify the new description contents and the type and significance of change that occurred.

Governance Service Oriented Architecture is an architectural paradigm for organizing and utilizing distributed capabilities that may be under the control of different ownership domains. Consequently, it is important that organizations that plan to engage in service interactions adopt governance policies and procedures sufficient to ensure that there is standardization across both internal and external organizational boundaries to promote the effective creation and use of SOA-based services.

SOA governance requires numerous architectural capabilities on the Semantic Infrastructure:

Governance is expressed through policies and assumes multiple use of focused policy modules that can be employed across many common circumstances This is elaborated in the inherited Policy profile.

Governance requires that the participants understand the intent of governance, the structures created to define and implement governance, and the processes to be followed to make governance operational. This is provided by capabilities specialized from the inherited Management Profile.

Governance policies are made operational through rules and regulations. This is provided by the following capabilities, most of which are specializations of the inherited Artifact Profile:

  • descriptions to enable the rules and regulations to be visible, where the description includes a unique identifier and a sufficient, and preferably a machine process-able, representation of the meaning of terms used to describe the rules and regulations;
  • one or more discovery mechanisms that enable searching for rules and regulations that may apply to situations corresponding to the search criteria specified by the service participant; where the discovery mechanism will have access to the individual descriptions of rules and regulations, possibly through some repository mechanism;
  • accessible storage of rules and regulations and their respective descriptions, so service participants can understand and prepare for compliance, as defined.
  • SOA services to access automated implementations of the Governance Processes.

Governance implies management to define and enforce rules and regulations.. This is elaborated in the inherited Management profile.

Governance relies on metrics to define and measure compliance. This is elaborated in the inherited Metric profile.

Interaction Descriptions of interactions are important for enabling auditability and repeatability, thereby establishing a context for results and support for understanding observed change in performance or results. Infrastructure services provide mechanisms to support service interaction.

Architectural implications of interactions on the Semantic Infrastructure are reflected in the following capabilities:

  • one or more mechanisms to capture, describe, store, discover, and retrieve interaction logs, execution contexts, and the combined interaction descriptions;
  • one or more mechanisms for attaching to any results the means to identify and retrieve the interaction description under which the results were generated.
  • mediation services such as message and event brokers, providers, and/or buses that provide message translation/transformation, gateway capability, message persistence, reliable message delivery, and/or intelligent routing semantics;
  • binding services that support translation and transformation of multiple application-level protocols to standard network transport protocols;
  • auditing and logging services that provide a data store and mechanism to record information related to service interaction activity such as message traffic patterns, security violations, and service contract and policy violations
  • security services that abstract techniques such as public key cryptography, secure networks, virus protection, etc., which provide protection against common security threats in a SOA ecosystem;
  • monitoring services such as hardware and software mechanisms that both monitor the performance of systems that host services and network traffic during service interaction, and are capable of generating regular monitoring reports.

Interoperability Descriptions provide up-to-date information on what a resource is, the conditions for interacting with the resource, and the results of such interactions. As such, the description is the source of vital information in establishing willingness to interact with a resource, reachability to make interaction possible, and compliance with relevant conditions of use.

Architectural implications of interoperability on the Semantic Infrastructure are reflected in the following capabilities:

  • one or more discovery mechanisms that enable searching for described resources that best meet the criteria specified by a service participant, where the discovery mechanism will have access to individual descriptions, possibly through some repository mechanism;
  • tools to appropriately track users of the descriptions and notify them when a new version of the description is available.

Management Governance implies management to define and enforce rules and regulations.

Management is provided by the following capabilities:

  • an information collection site, such as a Web page or portal, where management information is stored and from which the information is always available for access;
  • a mechanism to inform participants of significant management events, such as changes in rules or regulations;
  • accessible storage of the specifics of processes followed by management.

Metrics Artifact Descriptions include references to metrics which describe the operational characteristics of the subjects being described

Architectural implications of metrics on the Semantic Infrastructure are reflected in the following capabilities:

  • access to platform infrastructure monitoring and reporting capabilities
  • access to metrics information generated or accessible by related services
  • mechanisms to catalog and enable discovery of which metrics are available for a described artifact and information on how these metrics can be accessed;
  • mechanisms to catalog and enable discovery of compliance records associated with policies, contracts, and constraints that are based on these metrics.

Policy Artifact Descriptions include references to policies defining conditions of use and optionally contracts representing agreement on policies and other conditions.

Architectural implications of policy on the Semantic Infrastructure are reflected in the following capabilities:

  • descriptions to enable the policy modules to be visible, where the description includes a unique identifier for the policy and a sufficient, and preferably a machine processible, representation of the meaning of terms used to describe the policy, its functions, and its effects;
  • one or more discovery mechanisms that enable searching for policies that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual policy descriptions, possibly through some repository mechanism;
  • accessible storage of policies and policy descriptions, so service participants can access, examine, and use the policies as defined.

Policy capabilities are specialization of Artifact capabilities.

PolicyAndContract While policy and contract descriptions have much of the same architectural implications as Service Descriptions, mechanisms supporting policies and contracts also have the following architectural implications:

  • decision procedures which must be able to measure and render decisions on constraints;
  • enforcement of decisions;
  • measurement and notification of obligation constraints;
  • auditability of decisions, enforcement, and obligation measurements;
  • administration of policy and contract language artifacts;
  • storage of policies and contracts;
  • distribution of policies/contracts;
  • conflict resolution or elevation of conflicts in policy rules;
  • delegation of policy authority to agents acting on behalf of a client;
  • decision procedures capable of incorporating roles and/or attributes for rendered decisions.

PolicyAndContractLanguage While policy and contract descriptions have much of the same architectural implications as Service Descriptions, languages supporting policies and contracts also have the following architectural implications:

  • expression of assertion and commitment policy constraints;
  • expression of positive and negative policy constraints;
  • expression of permission and obligation policy constraints;
  • nesting of policy constraints allowing for abstractions and refinements of a policy constraint;
  • definition of alternative policy constraints to allow for the selection of compatible policy constraints for a consumer and provider;
  • composition of policies to combine one or more policies.
Capabilities
Requirements traceability

...

Requirement

...

Source

...

Capability

...

Service Oriented Architecture is an architectural paradigm for organizing and utilizing distributed capabilities that may be under the control of different ownership domains. Consequently, it is important that organizations that plan to engage in service interactions adopt governance policies and procedures sufficient to ensure that there is standardization across both internal and external organizational boundaries to promote the effective creation and use of SOA-based services. SOA governance requires numerous architectural capabilities on the Semantic Infrastructure: Governance is expressed through policies and assumes multiple use of focused policy modules that can be employed across many common circumstances This is elaborated in the inherited Policy profile. Governance requires that the participants understand the intent of governance, the structures created to define and implement governance, and the processes to be followed to make governance operational. This is provided by capabilities specialized from the inherited Management Profile. Governance policies are made operational through rules and regulations. This is provided by the following capabilities, most of which are specializations of the inherited Artifact Profile: * descriptions to enable the rules and regulations to be visible, where the description includes a unique identifier and a sufficient, and preferably a machine process-able, representation of the meaning of terms used to describe the rules and regulations; * one or more discovery mechanisms that enable searching for rules and regulations that may apply to situations corresponding to the search criteria specified by the service participant; where the discovery mechanism will have access to the individual descriptions of rules and regulations, possibly through some repository mechanism; * accessible storage of rules and regulations and their respective descriptions, so service participants can understand and prepare for compliance, as defined. * SOA services to access automated implementations of the Governance Processes. Governance implies management to define and enforce rules and regulations.. This is elaborated in the inherited Management profile. Governance relies on metrics to define and measure compliance. This is elaborated in the inherited Metric profile.

...

monitor from inherited abstract profile Metricsmetrics from inherited abstract profile MetricsmanagementInformation from inherited abstract profile ManagementmanagementNotification from inherited abstract profile ManagementmanagementProcesses from inherited abstract profile ManagementgovernanceService from inherited abstract profile Governancediscovery from inherited abstract profile Artifactidentity from inherited abstract profile Artifactmetadata from inherited abstract profile Artifactstore from inherited abstract profile Artifact

...

Interaction is the activity involved in using a service to access capability in order to achieve a particular desired real world effect, where real world effect is the actual result of using a service. An interaction can be characterized by a sequence of actions. Consequently, interacting with a service, i.e. performing actions against the service--usually mediated by a series of message exchanges--involves actions performed by the service. Different modes of interaction are possible such as modifying the shared state of a resource. Note that a participant (or agent acting on behalf of the participant) can be the sender of a message, the receiver of a message, or both. Interacting with Services has the following architectural implications on mechanisms that facilitate service interaction: A well-defined service Information Model, as elaborated in the inherited Information Model profile. A well-defined service Behavior Model, as elaborated in the inherited Behavior Model profile. Service composition mechanisms to support orchestration of service-oriented business processes and choreography of service-oriented business collaborations, as elaborated in the inherited Service Composition profile. Infrastructure services that provides mechanisms to support service interaction, as elaborated in the inherited Interaction profile. A layered and tiered service component architecture that supports multiple message exchange patterns (MEPs)l, as elaborated in the inherited Message Exchange profile.

...

interactionLog from inherited abstract profile InteractioninteractionResults from inherited abstract profile Interactionmediation from inherited abstract profile Interactionbinding from inherited abstract profile Interactionlogging from inherited abstract profile Interactionsecurity from inherited abstract profile Interactionmonitoring from inherited abstract profile Interaction

...

Artifact Descriptions include references to policies defining conditions of use and optionally contracts representing agreement on policies and other conditions. Architectural implications of policy on the Semantic Infrastructure are reflected in the following capabilities: * descriptions to enable the policy modules to be visible, where the description includes a unique identifier for the policy and a sufficient, and preferably a machine processible, representation of the meaning of terms used to describe the policy, its functions, and its effects; * one or more discovery mechanisms that enable searching for policies that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual policy descriptions, possibly through some repository mechanism; * accessible storage of policies and policy descriptions, so service participants can access, examine, and use the policies as defined. Policy capabilities are specialization of Artifact capabilities.

...

policyAssertion from inherited abstract profile PolicyAndContractLanguagepolicyObligation from inherited abstract profile PolicyAndContractLanguagepolicyConstraint from inherited abstract profile PolicyAndContractLanguagepolicyRefinement from inherited abstract profile PolicyAndContractLanguagepolicyAlternative from inherited abstract profile PolicyAndContractLanguagepolicyComposition from inherited abstract profile PolicyAndContractLanguagepolicyEnforcement from inherited abstract profile PolicyAndContractpolicyAdministration from inherited abstract profile PolicyAndContractpolicyAudit from inherited abstract profile PolicyAndContractpolicyStore from inherited abstract profile PolicyAndContractpolicyDecision from inherited abstract profile PolicyAndContractpolicyMetrics from inherited abstract profile PolicyAndContractpolicyDistribution from inherited abstract profile PolicyAndContractpolicyConflictResolution from inherited abstract profile PolicyAndContractpolicyAuthorityDelegation from inherited abstract profile PolicyAndContractpolicyDecisionProcedures from inherited abstract profile PolicyAndContract

...

A service description is an artifact, usually document-based, that defines or references the information needed to use, deploy, manage and otherwise control a service. This includes not only the information and behavior models associated with a service to define the service interface but also includes information needed to decide whether the service is appropriate for the current needs of the service consumer. Thus, the service description will also include information such as service reachability, service functionality, and the policies and contracts associated with a service. A service description artifact may be a single document or it may be an interlinked set of documents. Architectural implications of service description on the Semantic Infrastructure are reflected in the following functional decomposition: * Description will change over time and its contents will reflect changing needs and context. This is elaborated in the inherited Change profile. * Description makes use of defined semantics, where the semantics may be used for categorization or providing other property and value information for description classes. This is elaborated in the inherited Semantic Model profile. * Descriptions include reference to policies defining conditions of use and optionally contracts representing agreement on policies and other conditions. This is elaborated in the inherited Policy profile. * Descriptions include references to metrics which describe the operational characteristics of the subjects being described. This is elaborated in the inherited Metrics profile. * Descriptions of the interactions are important for enabling auditability and repeatability, thereby establishing a context for results and support for understanding observed change in performance or results. This is elaborated in the inherited Interaction profile. * Descriptions may capture very focused information subsets or can be an aggregate of numerous component descriptions. Service description is an example of a likely aggregate for which manual maintenance of all aspects would not be feasible. This is elaborated in the inherited Composition profile. * Descriptions provide up-to-date information on what a resource is, the conditions for interacting with the resource, and the results of such interactions. As such, the description is the source of vital information in establishing willingness to interact with a resource, reachability to make interaction possible, and compliance with relevant conditions of use. This is elaborated in the inherited Interoperability profile. Policy capabilities are specialization of Artifact capabilities.

...

versioning from inherited abstract profile ChangeconfigurationManagement from inherited abstract profile Changetransition from inherited abstract profile Changediscovery from inherited abstract profile Artifactidentity from inherited abstract profile Artifactmetadata from inherited abstract profile Artifactstore from inherited abstract profile Artifactmonitor from inherited abstract profile Metricsmetrics from inherited abstract profile MetricsmetricsDiscovery from inherited abstract profile MetricscomplianceDiscovery from inherited abstract profile MetricsinteractionLog from inherited abstract profile InteractioninteractionResults from inherited abstract profile InteractioncompositionArchive from inherited abstract profile Compositionassembly from inherited abstract profile CompositioncompositionChange from inherited abstract profile CompositioncomponentAcquisition from inherited abstract profile CompositioninteroperabilityDiscovery from inherited abstract profile InteroperabilityserviceChangeNotification from inherited abstract profile Interoperability

...

Service policies help establish constraints on the service specifications and mandate an approach. Policies can be specified around governance, access control and other design and runtime constraints.

...

:title}
{panel:title=Contents of this Page}
{toc:minlevel=5}
{panel}

h5. Summary

h5. Description of the profile

Service Oriented Architecture is an architectural paradigm for organizing and utilizing distributed capabilities that may be under the control of different ownership domains. Consequently, it is important that organizations that plan to engage in service interactions adopt governance policies and procedures sufficient to ensure that there is standardization across both internal and external organizational boundaries to promote the effective creation and use of SOA-based services.

Governance is expressed through policies and assumes multiple use of focused policy modules that can be employed across many common circumstances.



Governance Policies are a kind of Policy and Contract  and consequently specialize capabilities architecturally  implied by the concept of Policy and Contract.  Additionally, Governance Policies  specialize capabilities architecturally  implied by the concept of Governance.

*Governance Policies* specializes capabilities architecturally implied by its associated concepts of  Artifact , Change , Composition , Governance , Interaction , Interoperability , Management , Metrics , Policy , PolicyAndContract , PolicyAndContractLanguage .  The implied architectural capabilities are described in the following paragraphs.



*Artifact* An artifact is a managed resource within the Semantic Infrastructure.

An artifact is associated with the following capabilities:
* descriptions to enable the artifact to be visible, where the description includes a unique identifier for the artifact and a sufficient, and preferably a machine processible, representation of the meaning of terms used to describe the artifact, its functions, and its effects;
* one or more discovery mechanisms that enable searching for artifacts that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual artifact descriptions, possibly through some repository mechanism;
* accessible storage of artifacts and artifact descriptions, so service participants can access, examine, and use the artifacts as defined.

*Change* Artifact descriptions change over time and their contents will reflect changing needs and context.

Architectural implications of change on the Semantic Infrastructure are reflected in the following capabilities:
* mechanisms to support the storage, referencing, and access to normative definitions of one or more versioning schemes that may be applied to identify different aggregations of descriptive information, where the different schemes may be versions of a versioning scheme itself;
* configuration management mechanisms to capture the contents of the each aggregation and apply a unique identifier in a manner consistent with an identified versioning scheme;
* one or more mechanisms to support the storage, referencing, and access to conversion relationships between versioning schemes, and the mechanisms to carry out such conversions.

*Composition* Artifact Descriptions may capture very focused information subsets or can be an aggregate of numerous component descriptions. Service description is an example of a likely aggregate for which manual maintenance of all aspects would not be feasible.

Architectural implications of composition on the Semantic Infrastructure are reflected in the following capabilities:
* tools to facilitate identifying description elements that are to be aggregated to assemble the composite description;
* tools to facilitate identifying the sources of information to associate with the description elements;
* tools to collect the identified description elements and their associated sources into a standard, referenceable format that can support general access and understanding;
* tools to automatically update the composite description as the component sources change, and to consistently apply versioning schemes to identify the new description contents and the type and significance of change that occurred.

*Governance* Service Oriented Architecture is an architectural paradigm for organizing and utilizing distributed capabilities that may be under the control of different ownership domains. Consequently, it is important that organizations that plan to engage in service interactions adopt governance policies and procedures sufficient to ensure that there is standardization across both internal and external organizational boundaries to promote the effective creation and use of SOA-based services.

SOA governance requires numerous architectural capabilities on the Semantic Infrastructure:



 _Governance is expressed through policies and assumes multiple use of focused policy modules  that can be employed across many common circumstances_ This is elaborated in the inherited Policy profile.

 _Governance requires that the participants understand the intent of governance, the structures created to define and implement governance, and the processes to be followed to make governance operational.  This is provided by capabilities specialized from the inherited Management Profile._

 _Governance policies are made operational through rules and regulations. This is provided by the following capabilities, most of which are specializations of the inherited Artifact Profile:_
* descriptions to enable the rules and regulations to be visible, where the description includes a unique identifier and a sufficient, and preferably a machine process-able, representation of the meaning of terms used to describe the rules and regulations;
* one or more discovery mechanisms that enable searching for rules and regulations that may apply to situations corresponding to the search criteria specified by the service participant; where the discovery mechanism will have access to the individual descriptions of rules and regulations, possibly through some repository mechanism;
* accessible storage of rules and regulations and their respective descriptions, so service participants can understand and prepare for compliance, as defined.
* SOA services to access automated implementations of the Governance Processes.

 _Governance implies management to define and enforce rules and regulations.._ This is elaborated in the inherited Management profile.

 _Governance relies on metrics to define and measure compliance._ This is elaborated in the inherited Metric profile.

*Interaction* Descriptions of  interactions are important for enabling auditability and repeatability, thereby establishing a context for results and support for understanding observed change in performance or results.  Infrastructure services provide mechanisms to support service interaction.

Architectural implications of interactions on the Semantic Infrastructure are reflected in the following capabilities:
* one or more mechanisms to capture, describe, store, discover, and retrieve interaction logs, execution contexts, and the combined interaction descriptions;
* one or more mechanisms for attaching to any results the means to identify and retrieve the interaction description under which the results were generated.
* mediation services such as message and event brokers, providers, and/or buses that  provide message translation/transformation, gateway capability, message persistence,  reliable message delivery, and/or intelligent routing semantics;
* binding services that support translation and transformation of multiple application-level  protocols to standard network transport protocols;
* auditing and logging services that provide a data store and mechanism to record  information related to service interaction activity such as message traffic patterns,  security violations, and service contract and policy violations
* security services that abstract techniques such as public key cryptography, secure  networks, virus protection, etc., which provide protection against common security threats  in a SOA ecosystem;
* monitoring services such as hardware and software mechanisms that both monitor the  performance of systems that host services and network traffic during service interaction,  and are capable of generating regular monitoring reports.

*Interoperability* Descriptions provide up-to-date information on what a resource is, the conditions for interacting with the resource, and the results of such interactions. As such, the description is the source of vital information in establishing willingness to interact with a resource, reachability to make  interaction possible, and compliance with relevant conditions of use.

Architectural implications of  interoperability on the Semantic Infrastructure are reflected in the following capabilities:
* one or more discovery mechanisms that enable searching for described resources that best meet the criteria specified by a service participant, where the discovery mechanism will have access to individual descriptions, possibly through some repository mechanism;
* tools to appropriately track users of the descriptions and notify them when a new version of the description is available.

*Management* Governance implies management to define and enforce rules and regulations.

Management is provided by the following capabilities:
* an information collection site, such as a Web page or portal, where management information is stored and from which the information is always available for access;
* a mechanism to inform participants of significant management events, such as changes in rules or regulations;
* accessible storage of the specifics of processes followed by management.

*Metrics* Artifact Descriptions include references to metrics which describe the operational characteristics of the subjects being described

Architectural implications of metrics on the Semantic Infrastructure are reflected in the following capabilities:
* access to platform infrastructure monitoring and reporting capabilities
* access to metrics information generated or accessible by related services
* mechanisms to catalog and enable discovery of which metrics are available for a described artifact and information on how these metrics can be accessed;
* mechanisms to catalog and enable discovery of compliance records associated with policies, contracts, and constraints that are based on these metrics.

*Policy* Artifact Descriptions include references to policies defining conditions of use and optionally contracts representing agreement on policies and other conditions.

Architectural implications of policy on the Semantic Infrastructure are reflected in the following capabilities:
* descriptions to enable the policy modules to be visible, where the description includes a unique identifier for the policy and a sufficient, and preferably a machine processible, representation of the meaning of terms used to describe the policy, its functions, and its effects;
* one or more discovery mechanisms that enable searching for policies that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual policy descriptions, possibly through some repository mechanism;
* accessible storage of policies and policy descriptions, so service participants can access, examine, and use the policies as defined.

Policy capabilities are specialization of Artifact capabilities.

*PolicyAndContract* While policy and contract descriptions have much of the same architectural implications as Service Descriptions, mechanisms supporting policies and contracts also have the following architectural implications:
* decision procedures which must be able to measure and render decisions on constraints;
* enforcement of decisions;
* measurement and notification of obligation constraints;
* auditability of decisions, enforcement, and obligation measurements;
* administration of policy and contract language artifacts;
* storage of policies and contracts;
* distribution of policies/contracts;
* conflict resolution or elevation of conflicts in policy rules;
* delegation of policy authority to agents acting on behalf of a client;
* decision procedures capable of incorporating roles and/or attributes for rendered decisions.

*PolicyAndContractLanguage* While policy and contract descriptions have much of the same architectural implications as Service Descriptions, languages supporting policies and contracts also have the following architectural implications:


* expression of assertion and commitment policy constraints;
* expression of positive and negative policy constraints;
* expression of permission and obligation policy constraints;
* nesting of policy constraints allowing for abstractions and refinements of a policy constraint;
* definition of alternative policy constraints to allow for the selection of compatible policy  constraints for a consumer and provider;
* composition of policies to combine one or more policies.


h5. Capabilities


* [assembly|#_16_5_1_24a0131_1283703443772_860088_3293]
* [binding|#_16_5_1_24a0131_1283774411368_995660_5431]
* [complianceDiscovery|#_16_5_1_24a0131_1283702219073_894098_3212]
* [componentAcquisition|#_16_5_1_24a0131_1283704509983_673729_3325]
* [compositionArchive|#_16_5_1_24a0131_1283703443770_810122_3292]
* [compositionChange|#_16_5_1_24a0131_1283703443775_178969_3294]
* [configurationManagement|#_16_5_1_24a0131_1283700133655_905377_3117]
* [discovery|#_16_5_1_24a0131_1283714222600_103266_4106]
* [governanceModel|#_16_5_1_24a0131_1283418677626_125372_8996]
* [governanceService|#_16_5_1_24a0131_1283718946661_463032_4374]
* [identity|#_16_5_1_24a0131_1283714222601_506267_4107]
* [interactionLog|#_16_5_1_24a0131_1283703044067_803205_3257]
* [interactionResults|#_16_5_1_24a0131_1283703044069_331285_3258]
* [interoperabilityDiscovery|#_16_5_1_24a0131_1283704952692_78857_3340]
* [logging|#_16_5_1_24a0131_1283774412029_665259_5444]
* [managementInformation|#_16_5_1_24a0131_1283719206847_206279_4421]
* [managementNotification|#_16_5_1_24a0131_1283719206849_873728_4422]
* [managementProcesses|#_16_5_1_24a0131_1283719206851_835373_4423]
* [mediation|#_16_5_1_24a0131_1283774410554_993474_5418]
* [metadata|#_16_5_1_24a0131_1283714222603_853936_4108]
* [metrics|#_16_5_1_24a0131_1283702219069_775824_3210]
* [metricsDiscovery|#_16_5_1_24a0131_1283702219071_411273_3211]
* [monitor|#_16_5_1_24a0131_1283702219067_789210_3209]
* [monitoring|#_16_5_1_24a0131_1283774413444_304515_5470]
* [policyAdministration|#_16_5_1_24a0131_1283709534035_370700_3630]
* [policyAlternative|#_16_5_1_24a0131_1283709354487_144893_3557]
* [policyAssertion|#_16_5_1_24a0131_1283708802840_147328_3513]
* [policyAudit|#_16_5_1_24a0131_1283709534037_796250_3631]
* [policyAuthorityDelegation|#_16_5_1_24a0131_1283710107694_279074_3717]
* [policyComposition|#_16_5_1_24a0131_1283709357663_548317_3568]
* [policyConflictResolution|#_16_5_1_24a0131_1283710104206_368283_3706]
* [policyConstraint|#_16_5_1_24a0131_1283708802845_910120_3515]
* [policyDecision|#_16_5_1_24a0131_1283709534042_669768_3633]
* [policyDecisionProcedures|#_16_5_1_24a0131_1283710110550_888548_3728]
* [policyDistribution|#_16_5_1_24a0131_1283710100788_883107_3695]
* [policyEnforcement|#_16_5_1_24a0131_1283709534033_698521_3629]
* [policyMetrics|#_16_5_1_24a0131_1283709534044_887600_3634]
* [policyObligation|#_16_5_1_24a0131_1283708802843_961852_3514]
* [policyRefinement|#_16_5_1_24a0131_1283708802847_903040_3516]
* [policyStore|#_16_5_1_24a0131_1283709534039_440038_3632]
* [provenance|#_16_5_1_24a0131_1283793030699_512571_7056]
* [security|#_16_5_1_24a0131_1283774412802_440973_5457]
* [serviceChangeNotification|#_16_5_1_24a0131_1283704952697_176583_3341]
* [store|#_16_5_1_24a0131_1283714222609_981432_4109]
* [transition|#_16_5_1_24a0131_1283700246486_44421_3128]
* [versioning|#_16_5_1_24a0131_1283699095521_961509_3106]

h5. Requirements traceability























































|| Requirement || Source || Capability ||
| Service Oriented Architecture is an architectural paradigm for organizing and utilizing distributed capabilities that may be under the control of different ownership domains. Consequently, it is important that organizations that plan to engage in service interactions adopt governance policies and procedures sufficient to ensure that there is standardization across both internal and external organizational boundaries to promote the effective creation and use of SOA-based services.     SOA governance requires numerous architectural capabilities on the Semantic Infrastructure: _Governance is expressed through policies and assumes multiple use of focused policy modules  that can be employed across many common circumstances_ This is elaborated in the inherited Policy profile. _Governance requires that the participants understand the intent of governance, the structures created to define and implement governance, and the processes to be followed to make governance operational.  This is provided by capabilities specialized from the inherited Management Profile._ _Governance policies are made operational through rules and regulations. This is provided by the following capabilities, most of which are specializations of the inherited Artifact Profile:_ \* descriptions to enable the rules and regulations to be visible, where the description includes a unique identifier and a sufficient, and preferably a machine process-able, representation of the meaning of terms used to describe the rules and regulations;  * one or more discovery mechanisms that enable searching for rules and regulations that may apply to situations corresponding to the search criteria specified by the service participant; where the discovery mechanism will have access to the individual descriptions of rules and regulations, possibly through some repository mechanism;  * accessible storage of rules and regulations and their respective descriptions, so service participants can understand and prepare for compliance, as defined.  * SOA services to access automated implementations of the Governance Processes. _Governance implies management to define and enforce rules and regulations.._ This is elaborated in the inherited Management profile. _Governance relies on metrics to define and measure compliance._ This is elaborated in the inherited Metric profile. | Semantic Profile::OASIS SOA::{anchor:_16_5_1_24a0131_1283763638521_214441_4616}Governance Model | [monitor|#_16_5_1_24a0131_1283702219067_789210_3209] *from inherited abstract profile* Metrics[metrics|#_16_5_1_24a0131_1283702219069_775824_3210] *from inherited abstract profile* Metrics[managementInformation|#_16_5_1_24a0131_1283719206847_206279_4421] *from inherited abstract profile* Management[managementNotification|#_16_5_1_24a0131_1283719206849_873728_4422] *from inherited abstract profile* Management[managementProcesses|#_16_5_1_24a0131_1283719206851_835373_4423] *from inherited abstract profile* Management[governanceService|#_16_5_1_24a0131_1283718946661_463032_4374] *from inherited abstract profile* Governance[discovery|#_16_5_1_24a0131_1283714222600_103266_4106] *from inherited abstract profile* Artifact[identity|#_16_5_1_24a0131_1283714222601_506267_4107] *from inherited abstract profile* Artifact[metadata|#_16_5_1_24a0131_1283714222603_853936_4108] *from inherited abstract profile* Artifact[store|#_16_5_1_24a0131_1283714222609_981432_4109] *from inherited abstract profile* Artifact |
| Interaction is the activity involved in using a service to access capability in order to achieve a particular  desired real world effect, where real world effect is the actual result of using a service. An interaction can  be characterized by a sequence of actions. Consequently, interacting with a service, i.e. performing  actions against the service-\--usually mediated by a series of message exchanges-\--involves actions  performed by the service. Different modes of interaction are possible such as modifying the shared state  of a resource. Note that a participant (or agent acting on behalf of the participant) can be the sender of a  message, the receiver of a message, or both.    Interacting with Services has the following architectural implications on mechanisms that facilitate service  interaction: _A well-defined service Information Model, as elaborated in the inherited Information Model profile._ _A well-defined service Behavior Model, as elaborated in the inherited Behavior Model profile._ _Service composition mechanisms to support orchestration of service-oriented business processes and  choreography of service-oriented business collaborations, as elaborated in the inherited Service Composition profile._ _Infrastructure services that provides mechanisms to support service interaction, as elaborated in the inherited Interaction profile._ _A layered and tiered service component architecture that supports multiple message exchange  patterns (MEPs)l, as elaborated in the inherited Message Exchange profile._ | Semantic Profile::OASIS SOA::{anchor:_16_5_1_24a0131_1283763631267_880282_4612}Interacting with Services Model | [interactionLog|#_16_5_1_24a0131_1283703044067_803205_3257] *from inherited abstract profile* Interaction[interactionResults|#_16_5_1_24a0131_1283703044069_331285_3258] *from inherited abstract profile* Interaction[mediation|#_16_5_1_24a0131_1283774410554_993474_5418] *from inherited abstract profile* Interaction[binding|#_16_5_1_24a0131_1283774411368_995660_5431] *from inherited abstract profile* Interaction[logging|#_16_5_1_24a0131_1283774412029_665259_5444] *from inherited abstract profile* Interaction[security|#_16_5_1_24a0131_1283774412802_440973_5457] *from inherited abstract profile* Interaction[monitoring|#_16_5_1_24a0131_1283774413444_304515_5470] *from inherited abstract profile* Interaction |
| Artifact Descriptions include references to policies defining conditions of use and optionally contracts representing agreement on policies and other conditions.     Architectural implications of policy on the Semantic Infrastructure are reflected in the following capabilities:   * descriptions to enable the policy modules to be visible, where the description includes a unique identifier for the policy and a sufficient, and preferably a machine processible, representation of the meaning of terms used to describe the policy, its functions, and its effects;  * one or more discovery mechanisms that enable searching for policies that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual policy descriptions, possibly through some repository mechanism;  * accessible storage of policies and policy descriptions, so service participants can access, examine, and use the policies as defined.     Policy capabilities are specialization of Artifact capabilities. | Semantic Profile::OASIS SOA::{anchor:_16_5_1_24a0131_1283763634379_537776_4614}Policies and Contracts Model | [policyAssertion|#_16_5_1_24a0131_1283708802840_147328_3513] *from inherited abstract profile* PolicyAndContractLanguage[policyObligation|#_16_5_1_24a0131_1283708802843_961852_3514] *from inherited abstract profile* PolicyAndContractLanguage[policyConstraint|#_16_5_1_24a0131_1283708802845_910120_3515] *from inherited abstract profile* PolicyAndContractLanguage[policyRefinement|#_16_5_1_24a0131_1283708802847_903040_3516] *from inherited abstract profile* PolicyAndContractLanguage[policyAlternative|#_16_5_1_24a0131_1283709354487_144893_3557] *from inherited abstract profile* PolicyAndContractLanguage[policyComposition|#_16_5_1_24a0131_1283709357663_548317_3568] *from inherited abstract profile* PolicyAndContractLanguage[policyEnforcement|#_16_5_1_24a0131_1283709534033_698521_3629] *from inherited abstract profile* PolicyAndContract[policyAdministration|#_16_5_1_24a0131_1283709534035_370700_3630] *from inherited abstract profile* PolicyAndContract[policyAudit|#_16_5_1_24a0131_1283709534037_796250_3631] *from inherited abstract profile* PolicyAndContract[policyStore|#_16_5_1_24a0131_1283709534039_440038_3632] *from inherited abstract profile* PolicyAndContract[policyDecision|#_16_5_1_24a0131_1283709534042_669768_3633] *from inherited abstract profile* PolicyAndContract[policyMetrics|#_16_5_1_24a0131_1283709534044_887600_3634] *from inherited abstract profile* PolicyAndContract[policyDistribution|#_16_5_1_24a0131_1283710100788_883107_3695] *from inherited abstract profile* PolicyAndContract[policyConflictResolution|#_16_5_1_24a0131_1283710104206_368283_3706] *from inherited abstract profile* PolicyAndContract[policyAuthorityDelegation|#_16_5_1_24a0131_1283710107694_279074_3717] *from inherited abstract profile* PolicyAndContract[policyDecisionProcedures|#_16_5_1_24a0131_1283710110550_888548_3728] *from inherited abstract profile* PolicyAndContract |
| A service description is an artifact, usually document-based, that defines or references the information  needed to use, deploy, manage and otherwise control a service. This includes not only the information  and behavior models associated with a service to define the service interface but also includes  information needed to decide whether the service is appropriate for the current needs of the service consumer. Thus, the service description will also include information such as service reachability, service functionality, and the policies and contracts associated with a service.    A service description artifact may be a single document or it may be an interlinked set of documents.     Architectural implications of service description on the Semantic Infrastructure are reflected in the following functional decomposition:   * Description will change over time and its contents will reflect changing needs and context.  This is elaborated in the inherited Change profile.  * Description makes use of defined semantics, where the semantics may be used for  categorization or providing other property and value information for description classes. This is elaborated in the inherited Semantic Model profile.  * Descriptions include reference to policies defining conditions of use and optionally contracts  representing agreement on policies and other conditions.  This is elaborated in the inherited Policy profile.  * Descriptions include references to metrics which describe the operational characteristics of the  subjects being described.  This is elaborated in the inherited Metrics profile.  * Descriptions of the interactions are important for enabling auditability and repeatability, thereby  establishing a context for results and support for understanding observed change in performance  or results.  This is elaborated in the inherited Interaction profile.  * Descriptions may capture very focused information subsets or can be an aggregate of numerous  component descriptions. Service description is an example of a likely aggregate for which  manual maintenance of all aspects would not be feasible. This is elaborated in the inherited Composition profile.  * Descriptions provide up-to-date information on what a resource is, the conditions for interacting with the resource, and the results of such interactions. As such, the description is the source of vital information in establishing willingness to interact with a resource, reachability to make  interaction possible, and compliance with relevant conditions of use.  This is elaborated in the inherited Interoperability profile.      Policy capabilities are specialization of Artifact capabilities. | Semantic Profile::OASIS SOA::{anchor:_16_5_1_24a0131_1283763560612_868976_4608}Service Description Model | [versioning|#_16_5_1_24a0131_1283699095521_961509_3106] *from inherited abstract profile* Change[configurationManagement|#_16_5_1_24a0131_1283700133655_905377_3117] *from inherited abstract profile* Change[transition|#_16_5_1_24a0131_1283700246486_44421_3128] *from inherited abstract profile* Change[discovery|#_16_5_1_24a0131_1283714222600_103266_4106] *from inherited abstract profile* Artifact[identity|#_16_5_1_24a0131_1283714222601_506267_4107] *from inherited abstract profile* Artifact[metadata|#_16_5_1_24a0131_1283714222603_853936_4108] *from inherited abstract profile* Artifact[store|#_16_5_1_24a0131_1283714222609_981432_4109] *from inherited abstract profile* Artifact[monitor|#_16_5_1_24a0131_1283702219067_789210_3209] *from inherited abstract profile* Metrics[metrics|#_16_5_1_24a0131_1283702219069_775824_3210] *from inherited abstract profile* Metrics[metricsDiscovery|#_16_5_1_24a0131_1283702219071_411273_3211] *from inherited abstract profile* Metrics[complianceDiscovery|#_16_5_1_24a0131_1283702219073_894098_3212] *from inherited abstract profile* Metrics[interactionLog|#_16_5_1_24a0131_1283703044067_803205_3257] *from inherited abstract profile* Interaction[interactionResults|#_16_5_1_24a0131_1283703044069_331285_3258] *from inherited abstract profile* Interaction[compositionArchive|#_16_5_1_24a0131_1283703443770_810122_3292] *from inherited abstract profile* Composition[assembly|#_16_5_1_24a0131_1283703443772_860088_3293] *from inherited abstract profile* Composition[compositionChange|#_16_5_1_24a0131_1283703443775_178969_3294] *from inherited abstract profile* Composition[componentAcquisition|#_16_5_1_24a0131_1283704509983_673729_3325] *from inherited abstract profile* Composition[interoperabilityDiscovery|#_16_5_1_24a0131_1283704952692_78857_3340] *from inherited abstract profile* Interoperability[serviceChangeNotification|#_16_5_1_24a0131_1283704952697_176583_3341] *from inherited abstract profile* Interoperability |
| Service policies help establish constraints on the service specifications and mandate an approach. Policies can be specified around governance, access control and other design and runtime constraints. | Semantic Infrastructure Requirements::Service Discovery and Governance::{anchor:_16_5_1_24a0131_1283090104172_319688_4563

...

}Service Policies | [governanceModel|#_16_5_1_24a0131_

...

1283418677626_

...

governanceModel

...

One of the key requirements for participants interacting with each other in the context of a SOA is achieving visibility: before services can interoperate, the participants have to be visible to each other using whatever means are appropriate. The Reference Model analyzes visibility in terms of awareness, willingness, and reachability. Visibility in a SOA ecosystem has the following architectural implications on mechanisms providing support for awareness, willingness, and reachability: Mechanisms providing support for awareness will likely have the following minimum capabilities: * creation of Description, preferably conforming to a standard Description format and structure; * publishing of Description directly to a consumer or through a third party mediator; * discovery of Description, preferably conforming to a standard for Description discovery; * notification of Description updates or notification of the addition of new and relevant Descriptions; * classification of Description elements according to standardized classification schemes. In a SOA ecosystem with complex social structures, awareness may be provided for specific communities of interest. The architectural mechanisms for providing awareness to communities of interest will require support for: * policies that allow dynamic formation of communities of interest; * trust that awareness can be provided for and only for specific communities of interest, the bases of which is typically built on keying and encryption technology. The architectural mechanisms for determining willingness to interact will require support for: * verification of identity and credentials of the provider and/or consumer; * access to and understanding of description; * inspection of functionality and capabilities; * inspection of policies and/or contracts. The architectural mechanisms for establishing reachability will require support for: * the location or address of an endpoint; * verification and use of a service interface by means of a communication protocol; * determination of presence with an endpoint which may only be determined at the point interaction but may be further aided by the use of a presence protocol for which the endpoints actively participate.

...

125372_8996]\\ |
| One of the key requirements for participants interacting with each other in the context of a SOA is  achieving visibility: before services can interoperate, the participants have to be visible to each other  using whatever means are appropriate. The Reference Model analyzes visibility in terms of awareness,  willingness, and reachability.    Visibility in a SOA ecosystem has the following architectural implications on mechanisms providing  support for awareness, willingness, and reachability: _Mechanisms providing support for awareness will likely have the following minimum capabilities:_ \* creation of Description, preferably conforming to a standard Description format and structure;  * publishing of Description directly to a consumer or through a third party mediator;  * discovery of Description, preferably conforming to a standard for Description discovery;  * notification of Description updates or notification of the addition of new and relevant Descriptions;  * classification of Description elements according to standardized classification schemes. _In a SOA ecosystem with complex social structures, awareness may be provided for specific communities of interest. The architectural mechanisms for providing awareness to communities of interest will require support for:_ \* policies that allow dynamic formation of communities of interest;  * trust that awareness can be provided for and only for specific communities of interest, the bases of which is typically built on keying and encryption technology. _The architectural mechanisms for determining willingness to interact will require support for:_ \* verification of identity and credentials of the provider and/or consumer;  * access to and understanding of description;  * inspection of functionality and capabilities;  * inspection of policies and/or contracts. _The architectural mechanisms for establishing reachability will require support for:_ \* the location or address of an endpoint;  * verification and use of a service interface by means of a communication protocol;  * determination of presence with an endpoint which may only be determined at the point  interaction but may be further aided by the use of a presence protocol for which the endpoints  actively participate. | Semantic Profile::OASIS SOA::{anchor:_16_5_1_24a0131_1283763628053_328597_4610

...

}Service Visibility Model | [discovery|#_16_5_1_24a0131_

...

1283714222600_

...

discovery from inherited abstract profile Artifact

...

103266_4106] *from inherited abstract profile* Artifact |


h5. {anchor:_16_5_1_24a0131_1283703443772_860088_3293

...

Description

Tools to facilitate identifying description elements that are to be aggregated to assemble the composite description.

Requirements addressed
Overview of possible operations

...

}assembly


h5. Description

Tools to facilitate identifying description elements that are to be aggregated to assemble the composite description.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_

...

1283763560612_

...

868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283774411368_995660_5431

...

Description

binding services that support translation and transformation of multiple application-level protocols to standard network transport protocols;

Requirements addressed
Overview of possible operations

...

}binding


h5. Description

binding services that support translation and transformation of multiple application-level  protocols to standard network transport protocols;

h5. Requirements addressed

* [Interacting with Services Model|#_16_5_1_24a0131_

...

1283763631267_

...

880282_4612]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283702219073_894098_3212

...

Description

Mechanisms to catalog and enable discovery of compliance records associated with policies, contracts, and constraints that are based on these metrics.

Requirements addressed
Overview of possible operations

...

}complianceDiscovery


h5. Description

Mechanisms to catalog and enable discovery of compliance records associated with policies, contracts, and constraints that are based on these metrics.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_

...

1283763560612_

...

868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283704509983_673729_3325

...

Description

Tools to facilitate identifying the sources of information to associate with the description elements.

Requirements addressed
Overview of possible operations

...

}componentAcquisition


h5. Description

Tools to facilitate identifying the sources of information to associate with the description elements.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283703443770_810122_3292

...

Description

Tools to collect the identified description elements and their associated sources into a standard, referenceable format that can support general access and understanding.

Requirements addressed
Overview of possible operations

...

}compositionArchive


h5. Description

Tools to collect the identified description elements and their associated sources into a standard, referenceable format that can support general access and understanding.

h5. Requirements addressed

* [Service Description Model|#_16_5_1

...

_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283703443775_178969_3294

...

Description

Tools to automatically update the composite description as the component sources change, and to consistently apply versioning schemes to identify the new description contents and the type and significance of change that occurred.

Requirements addressed
Overview of possible operations

...

}compositionChange


h5. Description

Tools to automatically update the composite description as the component sources change, and to consistently apply versioning schemes to identify the new description contents and the type and significance of change that occurred.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131

...

_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283700133655_905377_3117

...

Description

Mechanisms to support the storage, referencing, and access to normative definitions of one or more versioning schemes that may be applied to identify different aggregations of descriptive information, where the different schemes may be versions of a versioning scheme itself.

Requirements addressed
Overview of possible operations

...

}configurationManagement


h5. Description

Mechanisms to support the storage, referencing, and access to normative definitions of one or more versioning schemes that may be applied to identify different aggregations of descriptive information, where the different schemes may be versions of a versioning scheme itself.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283714222600_103266_4106

...

Description

One or more discovery mechanisms that enable searching for artifacts that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual artifact descriptions, possibly through some repository mechanism.

Requirements addressed
Overview of possible operations

...

}discovery


h5. Description

One or more discovery mechanisms that enable searching for artifacts that best meet the search criteria specified by the service participant; where the discovery mechanism will have access to the individual artifact descriptions, possibly through some repository mechanism.

h5. Requirements addressed

* [Service Visibility Model|#_16_5_1_24a0131_1283763628053_328597_4610]
* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]
* [Governance Model|#_16_5_1_24a0131_

...

1283763638521_

...

214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283418677626_125372_8996

...

Description

Governance Model with capabilities to create, destroy, edit, maintain governance policy.

The Governance Model implementation includes the following capabilities:

  • unique identification for each policy the Governance meta-model describing term representations, functions, and effects of a policy description (model)
  • services enabling access, examination, and use of the policies.
  • notifications to inform participants of significant governance events, such as changes in policies, rules, or regulations;
  • comprehensive, accessible, Governance Model;
  • services to access implementations of the Governance Processes
  • Rules and regulation models are accessible from the Governance model; they all have meta-models describing their terms, functions, effects; they all have discovery and search mechanisms accessible through some repository
    Requirements addressed
Overview of possible operations

...

}governanceModel


h5. Description

Governance Model with capabilities to create, destroy, edit, maintain governance policy.

The Governance Model implementation includes the following capabilities:
* unique identification for each policy the Governance meta-model describing term representations, functions, and effects of a policy description (model)
* services enabling access, examination, and use of the policies.
* notifications to inform participants of significant governance events, such as changes in policies, rules, or regulations;
* comprehensive, accessible,  Governance Model;
* services to access implementations of the Governance Processes
* Rules and regulation models are accessible from the Governance model; they all have meta-models describing their terms, functions, effects; they all have  discovery and search mechanisms accessible through some repository
h5. Requirements addressed

* [Service Policies|#_16_5_1_24a0131_

...

1283090104172_

...

319688_4563]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283718946661_463032_4374

...

Description

SOA services to access automated implementations of the Governance Processes.

Requirements addressed
Overview of possible operations

...

}governanceService


h5. Description

SOA services to access automated implementations of the Governance Processes.

h5. Requirements addressed

* [Governance Model|#_16_5_1_24a0131

...

_1283763638521_214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283714222601_506267_4107

...

Description

Descriptions which include a unique identifier for the artifact.

Requirements addressed
Overview of possible operations

...

}identity


h5. Description

Descriptions which include a unique identifier for the artifact.

h5. Requirements addressed

* [Governance Model|#_16_5_1_24a0131_1283763638521_214441_4616]
* [Service Description Model|#_16_5_1_24a0131_

...

1283763560612_

...

868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283703044067_803205_3257

...

Description

One or more mechanisms to capture, describe, store, discover, and retrieve interaction logs, execution contexts, and the combined interaction descriptions.

Requirements addressed
Overview of possible operations

...

}interactionLog


h5. Description

One or more mechanisms to capture, describe, store, discover, and retrieve interaction logs, execution contexts, and the combined interaction descriptions.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]
* [Interacting with Services Model|#_16_5_1_24a0131_

...

1283763631267_

...

880282_4612]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283703044069_331285_3258

...

Description

One or more mechanisms for attaching to any results the means to identify and retrieve the interaction description under which the results were generated.

Requirements addressed
Overview of possible operations

...

}interactionResults


h5. Description

One or more mechanisms for attaching to any results the means to identify and retrieve the interaction description under which the results were generated.

h5. Requirements addressed

* [Interacting with Services Model|#_16_5_1_24a0131_1283763631267_880282_4612]
* [Service Description Model|#_16_5_1_24a0131

...

_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283704952692_78857_3340

...

Description

One or more discovery mechanisms that enable searching for described resources that best meet the criteria specified by a service participant, where the discovery mechanism will have access to individual descriptions, possibly through some repository mechanism.

Requirements addressed
Overview of possible operations

...

}interoperabilityDiscovery


h5. Description

One or more discovery mechanisms that enable searching for described resources that best meet the criteria specified by a service participant, where the discovery mechanism will have access to individual descriptions, possibly through some repository mechanism.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283774412029_665259_5444

...

Description

auditing and logging services that provide a data store and mechanism to record information related to service interaction activity such as message traffic patterns, security violations, and service contract and policy violations

Requirements addressed
Overview of possible operations

...

}logging


h5. Description

auditing and logging services that provide a data store and mechanism to record  information related to service interaction activity such as message traffic patterns,  security violations, and service contract and policy violations

h5. Requirements addressed

* [Interacting with Services Model|#_16_5_1_24a0131_1283763631267_880282_4612]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283719206847_206279_4421

...

Description

An information collection site, such as a Web page or portal, where management information is stored and from which the information is always available for access.

Requirements addressed
Overview of possible operations

...

}managementInformation


h5. Description

An information collection site, such as a Web page or portal, where management information is stored and from which the information is always available for access.

h5. Requirements addressed

* [Governance Model|#_16_5_1

...

_24a0131_1283763638521_214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283719206849_873728_4422

...

Description

A mechanism to inform participants of significant management events, such as changes in rules or regulations.

Requirements addressed
Overview of possible operations

...

}managementNotification


h5. Description

A mechanism to inform participants of significant management events, such as changes in rules or regulations.

h5. Requirements addressed

* [Governance Model|#_16_5_1_24a0131_

...

1283763638521_

...

214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283719206851_835373_4423

...

Description

Accessible storage of the specifics of processes followed by management.

Requirements addressed
Overview of possible operations

...

}managementProcesses


h5. Description

Accessible storage of the specifics of processes followed by management.

h5. Requirements addressed

* [Governance Model|#_16_5_1_24a0131_

...

1283763638521_

...

214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283774410554_993474_5418

...

Description

...

}mediation


h5. Description

mediation services such as message and event brokers, providers, and/or buses that  provide message translation/transformation, gateway capability, message persistence,  reliable message delivery, and/or intelligent routing semantics;

...



h5. Requirements addressed

...



* [Interacting with Services

...

Overview of possible operations

...

 Model|#_16_5_1_24a0131_

...

1283763631267_

...

880282_4612]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283714222603_853936_4108

...

Description

A representation of the meaning of terms used to describe the artifact, its functions, and its effects.

Requirements addressed
Overview of possible operations

...

}metadata


h5. Description

A representation of the meaning of terms used to describe the artifact, its functions, and its effects.

h5. Requirements addressed

* [Governance Model|#_16_5_1_24a0131_1283763638521_214441_4616]
* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283702219069_775824_3210

...

}metrics


h5. Description

Access to metrics information generated or accessible by related services

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_

...

1283763560612_

...

Description

Access to metrics information generated or accessible by related services

Requirements addressed
Overview of possible operations

...

868976_4608]
* [Governance Model|#_16_5_1_24a0131_

...

1283763638521_

...

214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283702219071_411273_3211

...

Description

Mechanisms to catalog and enable discovery of which metrics are available for a described artifact and information on how these metrics can be accessed.

Requirements addressed
Overview of possible operations

...

}metricsDiscovery


h5. Description

Mechanisms to catalog and enable discovery of which metrics are available for a described artifact and information on how these metrics can be accessed.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_

...

1283763560612_

...

868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283702219067_789210_3209

...

Description

Access to platform infrastructure monitoring and reporting capabilities.

Requirements addressed
Overview of possible operations

...

}monitor


h5. Description

Access to platform infrastructure monitoring and reporting capabilities.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]
* [Governance Model|#_16_5_1_24a0131_

...

1283763638521_

...

214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283774413444_304515_5470

...

Description

monitoring services such as hardware and software mechanisms that both monitor the performance of systems that host services and network traffic during service interaction, and are capable of generating regular monitoring reports.

Requirements addressed
Overview of possible operations

...

}monitoring


h5. Description

monitoring services such as hardware and software mechanisms that both monitor the  performance of systems that host services and network traffic during service interaction,  and are capable of generating regular monitoring reports.

h5. Requirements addressed

* [Interacting with Services Model|#_16_5_1_24a0131_

...

1283763631267_

...

880282_4612]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709534035_370700_3630

...

Description

Administration of policy and contract language artifacts.

Requirements addressed
Overview of possible operations

...

}policyAdministration


h5. Description

Administration of policy and contract language artifacts.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1

...

_24a0131_1283763634379_537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709354487_144893_3557

...

Description

Definition of alternative policy constraints to allow for the selection of compatible policy constraints for a consumer and provider.

Requirements addressed
Overview of possible operations

...

}policyAlternative


h5. Description

Definition of alternative policy constraints to allow for the selection of compatible policy  constraints for a consumer and provider.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283708802840_147328_3513

...

Description

Expression of assertion and commitment policy constraints.

Requirements addressed
Overview of possible operations

...

}policyAssertion


h5. Description

Expression of assertion and commitment policy constraints.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709534037_796250_3631

...

Description

Auditability of decisions, enforcement, and obligation measurements.

Requirements addressed
Overview of possible operations

...

}policyAudit


h5. Description

Auditability of decisions, enforcement, and obligation measurements.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283710107694_279074_3717

...

Description

Delegation of policy authority to agents acting on behalf of a client.

Requirements addressed
Overview of possible operations

...

}policyAuthorityDelegation


h5. Description

Delegation of policy authority to agents acting on behalf of a client.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_1283763634379_537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709357663_548317_3568

...

Description

Composition of policies to combine one or more policies.

Requirements addressed
Overview of possible operations

...

}policyComposition


h5. Description

Composition of policies to combine one or more policies.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283710104206_368283_3706

...

Description

Conflict resolution or elevation of conflicts in policy rules.

Requirements addressed
Overview of possible operations

...

}policyConflictResolution


h5. Description

Conflict resolution or elevation of conflicts in policy rules.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283708802845_910120_3515

...

Description

Expression of positive and negative policy constraints.

Requirements addressed
Overview of possible operations

...

}policyConstraint


h5. Description

Expression of positive and negative policy constraints.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709534042_669768_3633

...

Description

Decision procedures which must be able to measure and render decisions on constraints.

Requirements addressed
Overview of possible operations

...

}policyDecision


h5. Description

Decision procedures which must be able to measure and render decisions on constraints.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131

...

_1283763634379_537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283710110550_888548_3728

...

Description

...

}policyDecisionProcedures


h5. Description

Decision procedures capable of incorporating roles and/or attributes for rendered decisions.

h5.

...

 Requirements addressed

...



* [Policies and Contracts

...

Overview of possible operations

...

 Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283710100788_883107_3695

...

Description

Distribution of policies/contracts.

Requirements addressed
Overview of possible operations

...

}policyDistribution


h5. Description

Distribution of policies/contracts.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709534033_698521_3629

...

Description

Enforcement of decisions.

Requirements addressed
Overview of possible operations

...

}policyEnforcement


h5. Description

Enforcement of decisions.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_1283763634379_537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709534044_887600_3634

...

Description

Measurement and notification of obligation constraints.

Requirements addressed
Overview of possible operations

...

}policyMetrics


h5. Description

Measurement and notification of obligation constraints.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283708802843_961852_3514

...

Description

Expression of permission and obligation policy constraints.

Requirements addressed
Overview of possible operations

...

}policyObligation


h5. Description

Expression of permission and obligation policy constraints.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283708802847_903040_3516

...

Description

Nesting of policy constraints allowing for abstractions and refinements of a policy constraint.

Requirements addressed
Overview of possible operations

...

}policyRefinement


h5. Description

Nesting of policy constraints allowing for abstractions and refinements of a policy constraint.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283709534039_440038_3632

...

Description

Storage of policies and contracts.

Requirements addressed
Overview of possible operations

...

}policyStore


h5. Description

Storage of policies and contracts.

h5. Requirements addressed

* [Policies and Contracts Model|#_16_5_1_24a0131_

...

1283763634379_

...

537776_4614]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283793030699_512571_7056

...

Description

While the Resource identity provides the means to know which subject and subject description are being considered, Provenance as related to the Description class provides information that reflects on the quality or usability of the subject. Provenance specifically identifies the entity (human, defined role, organization, ...) that assumes responsibility for the resource being described and tracks historic information that establishes a context for understanding what the resource provides and how it has changed over time. Responsibilities may be directly assumed by the Stakeholder who owns a Resource or the Owner may designate Responsible Parties for the various aspects of maintaining the resource and provisioning it for use by others. There may be more than one entity identified under Responsible Parties; for example, one entity may be responsible for code maintenance while another is responsible for provisioning of the executable code. The historical aspects may also have multiple entries, such as when and how data was collected and when and how it was subsequently processed, and as with other elements of description, may provide links to other assets maintained by the Resource owner.

Requirements addressed
Overview of possible operations

...

}provenance


h5. Description

While the Resource identity provides the means to know which subject and subject description are  being considered, Provenance as related to the Description class provides information that reflects on the  quality or usability of the subject. Provenance specifically identifies the entity (human, defined role,  organization, ...) that assumes responsibility for the resource being described and tracks historic  information that establishes a context for understanding what the resource provides and how it has  changed over time. Responsibilities may be directly assumed by the Stakeholder who owns a Resource  or the Owner may designate Responsible Parties for the various aspects of maintaining the resource and  provisioning it for use by others. There may be more than one entity identified under Responsible Parties;  for example, one entity may be responsible for code maintenance while another is responsible for provisioning of the executable code. The historical aspects may also have  multiple entries, such as when  and how data was collected and when and how it was subsequently processed, and as with other  elements of description, may provide links to other assets maintained by the Resource owner.

h5. Requirements addressed


h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283774412802_440973_5457

...

Description

security services that abstract techniques such as public key cryptography, secure networks, virus protection, etc., which provide protection against common security threats in a SOA ecosystem;

Requirements addressed
Overview of possible operations

...

}security


h5. Description

security services that abstract techniques such as public key cryptography, secure  networks, virus protection, etc., which provide protection against common security threats  in a SOA ecosystem;

h5. Requirements addressed

* [Interacting with Services Model|#_16_5_1_24a0131_1283763631267_880282_4612]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283704952697_176583_3341

...

Description

Tools to appropriately track users of the descriptions and notify them when a new version of the description is available.

Requirements addressed
Overview of possible operations

...

}serviceChangeNotification


h5. Description

Tools to appropriately track users of the descriptions and notify them when a new version of the description is available.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_

...

1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283714222609_981432_4109

...

Description

Accessible storage of artifacts and artifact descriptions, so service participants can access, examine, and use the artifacts as defined.

Requirements addressed
Overview of possible operations

...

}store


h5. Description

Accessible storage of artifacts and artifact descriptions, so service participants can access, examine, and use the artifacts as defined.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]
* [Governance Model|#_16_5_1_24a0131_1283763638521_214441_4616]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283700246486_44421_3128

...

Description

One or more mechanisms to support the storage, referencing, and access to conversion relationships between versioning schemes, and the mechanisms to carry out such conversions.

Requirements addressed
Overview of possible operations

...

}transition


h5. Description

One or more mechanisms to support the storage, referencing, and access to conversion relationships between versioning schemes, and the mechanisms to carry out such conversions.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



h5. {anchor:_16_5_1_24a0131_1283699095521_961509_3106

...

Description

Configuration management mechanisms to capture the contents of the each aggregation and apply a unique identifier in a manner consistent with an identified versioning scheme.

Requirements addressed
Overview of possible operations

...

}versioning


h5. Description

Configuration management mechanisms to capture the contents of the each aggregation and apply a unique identifier in a manner consistent with an identified versioning scheme.

h5. Requirements addressed

* [Service Description Model|#_16_5_1_24a0131_1283763560612_868976_4608]

h5. Overview of possible operations



{scrollbar:icons=false}