Server-Side Streaming Processing of WS-Security

被引:6
|
作者
Gruschka, Nils [1 ]
Jensen, Meiko [2 ]
Lo Iacono, Luigi [3 ]
Luttenberger, Norbert [4 ]
机构
[1] NEC Labs Europe, D-69115 Heidelberg, Germany
[2] Univ Bochum, D-44780 Bochum, Germany
[3] Cologne Univ Appl Sci, D-50679 Cologne, Germany
[4] Univ Kiel, Inst Informat, D-24098 Kiel, Germany
关键词
Web services; SOAP; WS-Security; streaming processing; DoS robustness; efficient processing;
D O I
10.1109/TSC.2010.61
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With SOAP-based web services leaving the stadium of being an explorative set of new technologies and entering the stage of mature and fundamental building blocks for service-driven business processes-and in some cases even for mission-critical systems-the demand for nonfunctional requirements including efficiency as well as security and dependability commonly increases rapidly. Although web services are capable of coupling heterogeneous information systems in a flexible and cost-efficient way, the processing efficiency and robustness against certain attacks do not fulfill industry-strength requirements. In this paper, a comprehensive stream-based WS-Security processing system is introduced, which enables a more efficient processing in service computing and increases the robustness against different types of Denial-of-Service (DoS) attacks. The introduced engine is capable of processing all standard-conforming applications of WS-Security in a streaming manner. It can handle, e. g., any order, number, and nesting degree of signature and encryption operations, closing the gap toward more efficient and dependable web services.
引用
收藏
页码:272 / 285
页数:14
相关论文
共 50 条
  • [41] SERVER-SIDE RATE ADAPTATION FOR MULTI-USER 360-DEGREE VIDEO STREAMING
    Liu, Chengming
    Kan, Nuowen
    Zou, Junni
    Yang, Qin
    Xiong, Hongkai
    [J]. 2018 25TH IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING (ICIP), 2018, : 3264 - 3268
  • [42] 基于WS-security的数据安全交换
    柳翠寅
    袁继敏
    韩敏
    [J]. 微计算机信息, 2007, (30) : 91 - 93
  • [43] The Problem of Handling Multiple Headers in WS-Security Implementations
    Damiani, Ernesto
    Coviello, Valerio
    Frati, Fulvio
    Santacesaria, Claudio
    [J]. 2014 38TH ANNUAL IEEE INTERNATIONAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE WORKSHOPS (COMPSACW 2014), 2014, : 396 - 400
  • [44] Client-side versus server-side geographic data processing performance comparison: Data and code
    Kulawiak, Marcin
    [J]. DATA IN BRIEF, 2019, 26
  • [45] 基于WS-Security的Web服务安全
    林沐
    [J]. 中国科技信息, 2005, (14) : 20 - 25
  • [46] Server-side parallel data reduction and analysis
    Wang, Daniel L.
    Zender, Charles S.
    Jenks, Stephen F.
    [J]. ADVANCES IN GRID AND PERVASIVE COMPUTING, PROCEEDINGS, 2007, 4459 : 744 - +
  • [47] Building Server-Side Web Language Processors
    Ortiz, Ariel
    [J]. SIGCSE 10: PROCEEDINGS OF THE 41ST ACM TECHNICAL SYMPOSIUM ON COMPUTER SCIENCE EDUCATION, 2010, : 2 - 6
  • [48] Preventing Server-Side Request Forgery Attacks
    Jabiyev, Bahruz
    Mirzaei, Omid
    Kharraz, Amin
    Kirda, Engin
    [J]. 36TH ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, SAC 2021, 2021, : 1626 - 1635
  • [49] Personalized Federated Learning With Server-Side Information
    Song, Jaehun
    Oh, Min-Hwan
    Kim, Hyung-Sin
    [J]. IEEE ACCESS, 2022, 10 : 120245 - 120255
  • [50] Security Testing Methodology for Vulnerabilities Detection of XSS in Web Services and WS-Security
    Salas, M. I. P.
    Martins, E.
    [J]. ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2014, 302 : 133 - 154