A gateway to web services security - Securing SOAP with proxies

被引:0
|
作者
Brose, G [1 ]
机构
[1] Xtradyne Technol, D-10119 Berlin, Germany
关键词
web services; SOAP message security; security architecture; WS-Security; SAML;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Integrating applications and resources using Web Services increases the exposure of critical resources. Consequently, the introduction of Web Services requires that additional effort be spent on assessing the corresponding risks and establishing appropriate security mechanisms. This paper explains the main challenges for securing Web Services and summarizes emerging standards. The most important of these, WS-Security, defines a message-based security model for SOAP that is suitable for achieving end-to-end security in environments with multiple trust domains. We propose one particular, gateway-based approach to implementing Web Services security, and compare it to other approaches.
引用
收藏
页码:101 / 108
页数:8
相关论文
共 50 条
  • [1] Securing web services with SOAP security proxies
    Brose, G
    [J]. ICWS'03: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON WEB SERVICES, 2003, : 231 - 234
  • [2] Research of SOAP Message Security Model on Web Services
    Pei, Shujun
    Chen, Deyun
    [J]. ADVANCED RESEARCH ON COMPUTER EDUCATION, SIMULATION AND MODELING, PT I, 2011, 175 : 98 - 104
  • [3] Securing SOAP e-services
    E. Damiani
    S. De Capitani di Vimercati
    S. Paraboschi
    P. Samarati
    [J]. International Journal of Information Security, 2002, 1 (2) : 100 - 115
  • [4] SOAP and Web services
    Louridas, Panagiotis
    [J]. IEEE SOFTWARE, 2006, 23 (06) : 62 - 67
  • [5] Securing Web services
    Hondo, M
    Nagaratnam, N
    Nadalin, A
    [J]. IBM SYSTEMS JOURNAL, 2002, 41 (02) : 228 - 241
  • [6] Design of Security System of Portable Device: Securing XML Web Services with ECC
    Gopinath, V
    Bhuvaneswaran, R. S.
    [J]. SECURITY IN COMPUTING AND COMMUNICATIONS, 2014, 467 : 431 - 439
  • [7] An Evaluation of web Services Proxies Solutions
    Landa, Antonio Hidalgo
    Owens, Ian
    Fletcher, Graham
    [J]. PROCEEDINGS OF THE 5TH EUROPEAN CONFERENCE ON INFORMATION MANAGEMENT AND EVALUATION, 2011, : 510 - 519
  • [8] Web Services SOAP Optimization Techniques
    Mohamed, Abdul Wahab
    Zeki, Ahmed M.
    [J]. 2017 4TH IEEE INTERNATIONAL CONFERENCE ON ENGINEERING TECHNOLOGIES AND APPLIED SCIENCES (ICETAS), 2017,
  • [10] A BACnet Gateway for Embedded Web Services
    Altmann, Vlado
    Butzin, Bjoern
    Balla, Robert
    Golatowski, Frank
    Timmermann, Dirk
    [J]. PROCEEDINGS OF 2015 IEEE 20TH CONFERENCE ON EMERGING TECHNOLOGIES & FACTORY AUTOMATION (ETFA), 2015,