Authenticated web services: A WS-Security based implementation

被引:0
|
作者
Auletta, Vincenzo [1 ]
Blundo, Carlo [1 ]
Cimato, Stelvio [2 ]
De Cristofaro, Emiliano [1 ]
Raimato, Guerriero [1 ]
机构
[1] Univ Salerno, Dipartimento Informat & Applicaz, Via Ponte Don Melillo, I-84084 Fisciano, SA, Italy
[2] Univ Milan, Dipartimento Tecnol Informazione, Milan, Italy
关键词
D O I
10.1007/978-1-4020-6270-4_45
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Web Services technology provides software developers with a wide range of tools and models to produce innovative distributed applications. After the initial diffusion of the standard technology the attention of the developers has focused on the ways to secure the information flows between client,, and service providers. For this purpose several standards have been proposed and adopted. Another important issue is how to count the number of accesses to a given service in order to develop standard business models, in which the providers get paid for the offered resources. In this paper we propose an implementation, based on WS-Security, of an existing framework for authenticated Web metering, and compare it with an ad-hoc implementation. Our analysis shows that WS-Security is mature enough to provide a flexible and dynamic layer to underlie complex and interactive applications which require security management, without the need of developing ad-hoc solutions for each provided feature
引用
收藏
页码:541 / +
页数:3
相关论文
共 50 条
  • [1] Evaluating WS-Security and XACML in Web Services-Based Network Management
    Zanette Rohr, Estevao Miguel
    Granville, Lisandro Zambenedetti
    Tarouco, Liane Margarida R.
    [J]. 2009 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009) VOLS 1 AND 2, 2009, : 188 - 194
  • [2] Security Testing Methodology for Vulnerabilities Detection of XSS in Web Services and WS-Security
    Salas, M. I. P.
    Martins, E.
    [J]. ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2014, 302 : 133 - 154
  • [3] Apply the technology of RBAC and WS-Security for secure Web services environment in campus
    He, Feng
    Le, Jia-Jin
    [J]. PROCEEDINGS OF 2006 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2006, : 4406 - +
  • [4] Comparison of performance of Web services, WS-Security, RMI and RMI-SSL
    Juric, Matjaz B.
    Rozman, Ivan
    Brumen, Bostjan
    Colnaric, Matjaz
    Hericko, Marjan
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2006, 79 (05) : 689 - 700
  • [5] Implementation of WS-Security and its performance improvements
    Makino, S
    Tamura, K
    Imamura, T
    Nakamura, Y
    [J]. ICWS'03: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON WEB SERVICES, 2003, : 256 - 261
  • [6] Web Service security -: Vulnerabilities and threats within the context of WS-security
    Holgersson, J
    Söderström, E
    [J]. PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON STANDARDIZATION AND INNOVATION IN INFORMATION TECHNOLOGY, 2005, : 147 - 155
  • [7] 基于WS-Security的Web服务安全
    林沐
    [J]. 中国科技信息, 2005, (14) : 20 - 25
  • [8] 基于WS-Security的Web服务安全的实现
    李瑞
    陶明
    [J]. 计算机与现代化, 2008, (12) : 131 - 133
  • [9] 基于WS-Security安全规范的Web服务设计
    张维勇
    程俊
    王建新
    [J]. 合肥工业大学学报(自然科学版), 2006, (08) : 972 - 975
  • [10] 基于WS-Security的web服务安全性探讨
    罗洪
    杨杰
    [J]. 西南民族大学学报(自然科学版), 2007, (04) : 941 - 943