An overview of Web Services security

被引:12
|
作者
Kearney, P [1 ]
Chapman, J
Edwards, N
Gifford, M
He, L
机构
[1] BT Exact, Business Syst Res Lab, Secure Syst Res Grp, Secure Web Serv Project, Adastral Pk, England
[2] BT Exact, Secur Technol Res Grp, Adastral Pk, England
关键词
D O I
10.1023/B:BTTJ.0000015493.00504.3c
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Security and Web Services are consistently reported among the top technologies of interest to businesses. Concerns about security are a major deterrent to companies considering use of the technology. This paper attempts to give an overview of the current state of Web Services security. The main body of the paper is a tour through key concepts used in Web Services security. Examples based on software demonstrators built by the authors are used to explain how the ideas are used in combination to achieve particular aims. The state of play as regards standards is also reviewed. The concluding section gives some pointers as to active research topics.
引用
收藏
页码:27 / 42
页数:16
相关论文
共 50 条
  • [41] Web services security evaluation considerations
    Pimenidis, Elias
    Georgiadis, Christos K.
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2009, 2 (03) : 239 - 252
  • [42] Improving Web Services Security Models
    Abu-Taleb, Sawsan
    Mustafa, Hossam
    INTERNATIONAL ARAB JOURNAL OF INFORMATION TECHNOLOGY, 2010, 7 (04) : 428 - 434
  • [43] XML and Web Services Security Standards
    Nordbotten, Nils Agne
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2009, 11 (03): : 4 - 21
  • [44] Security Enforcement on Web Services Compositions
    Boumlik, Laila
    Mejri, Mohamed
    2019 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2019, : 1010 - 1015
  • [45] Cyber Security for Service Oriented Architectures in a Web 2.0 World: An Overview of SOA Vulnerabilities in Financial Services
    Masood, Adnan
    2013 IEEE INTERNATIONAL CONFERENCE ON TECHNOLOGIES FOR HOMELAND SECURITY (HST), 2013, : 1 - 6
  • [46] Security services: an overview of the French legislation on cryptography
    Quantin, C
    Kerkri, E
    Allaert, FA
    Bouzelat, H
    Dusserre, L
    REVUE D EPIDEMIOLOGIE ET DE SANTE PUBLIQUE, 2000, 48 (01): : 81 - 87
  • [47] Using Web Security Scanners to Detect Vulnerabilities in Web Services
    Vieira, Marco
    Antunes, Nuno
    Madeira, Henrique
    2009 IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS & NETWORKS (DSN 2009), 2009, : 566 - 571
  • [48] Negotiated security policies for E-services and Web services
    Yee, G
    Korba, L
    2005 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, VOLS 1 AND 2, PROCEEDINGS, 2005, : 605 - 612
  • [49] Tools for composite web services: A short overview
    Hull, R
    Su, JW
    SIGMOD RECORD, 2005, 34 (02) : 86 - 95
  • [50] An overview of standards and related technology in Web services
    Tsalgatidou, A
    Pilioura, T
    DISTRIBUTED AND PARALLEL DATABASES, 2002, 12 (2-3) : 135 - 162