An overview of Web Services security

被引:12
|
作者
Kearney, P [1 ]
Chapman, J
Edwards, N
Gifford, M
He, L
机构
[1] BT Exact, Business Syst Res Lab, Secure Syst Res Grp, Secure Web Serv Project, Adastral Pk, England
[2] BT Exact, Secur Technol Res Grp, Adastral Pk, England
关键词
D O I
10.1023/B:BTTJ.0000015493.00504.3c
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Security and Web Services are consistently reported among the top technologies of interest to businesses. Concerns about security are a major deterrent to companies considering use of the technology. This paper attempts to give an overview of the current state of Web Services security. The main body of the paper is a tour through key concepts used in Web Services security. Examples based on software demonstrators built by the authors are used to explain how the ideas are used in combination to achieve particular aims. The state of play as regards standards is also reviewed. The concluding section gives some pointers as to active research topics.
引用
收藏
页码:27 / 42
页数:16
相关论文
共 50 条
  • [31] A performance modelling of web services security
    Tang, Kezhe
    Levy, David
    Chen, Shiping
    Zic, John
    Yan, Bo
    [J]. WEBIST 2007: PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON WEB INFORMATION SYSTEMS AND TECHNOLOGIES, VOL IT: INTERNET TECHNOLOGY, 2007, : 64 - +
  • [32] Towards a Process for Web Services Security
    Gutiérrez, C
    Fernández-Medina, E
    Piattini, M
    [J]. JOURNAL OF RESEARCH AND PRACTICE IN INFORMATION TECHNOLOGY, 2006, 38 (01): : 57 - 67
  • [33] TulaFale: A security tool for web services
    Bhargavan, K
    Fournet, C
    Gordon, AD
    Pucella, R
    [J]. FORMAL METHODS FOR COMPONENTS AND OBJECTS, 2003, 3188 : 197 - 222
  • [34] Web services security, composition, and discovery
    Zhang, Liang-Jie
    [J]. INTERNATIONAL JOURNAL OF WEB SERVICES RESEARCH, 2008, 5 (01) : I - II
  • [35] The subtle security risks of web services
    Herbert H. Thompson
    [J]. Datenschutz und Datensicherheit - DuD, 2006, 30 (10) : 604 - 606
  • [36] A framework for enhancing web services security
    Sidharth, Navya
    Liu, Jigang
    [J]. COMPSAC 2007: THE THIRTY-FIRST ANNUAL INTERNATIONAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE, VOL I, PROCEEDINGS, 2007, : 23 - +
  • [37] Standards for XML and Web services security
    Naedele, M
    [J]. COMPUTER, 2003, 36 (04) : 96 - 98
  • [38] Security and privacy for web databases and services
    Ferrari, E
    Thuraisingham, B
    [J]. ADVANCES IN DATABASE TECHNOLOGY - EDBT 2004, PROCEEDINGS, 2004, 2992 : 17 - 28
  • [39] Security concerns for web services and applications
    Encheva, S
    Tumin, S
    [J]. ADVANCES IN COMPUTER SCIENCE - ASIAN 2005, PROCEEDINGS: DATA MANAGEMENT ON THE WEB, 2005, 3818 : 261 - 262
  • [40] Security personalization for internet and web services
    Yee, George O. M.
    Korba, Larry
    [J]. INTERNATIONAL JOURNAL OF WEB SERVICES RESEARCH, 2008, 5 (01) : 1 - 23