Application of Web Services Security using travel industry model

被引:0
|
作者
Nakayama, K
Ishizaki, T
Oba, M
机构
关键词
Web services; security; WS-Security;
D O I
10.1109/SAINTW.2005.1620048
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Web Services Security (WS-Security) is a specification that protects SOAP messages to ensure end-to-end security for web services. WS-Security was approved as the OASIS standard in April 2004 and the first stage of standardization has been completed. Although the interoperability of WS-Security itself has been examined, business applications of WS-Security have not yet been fully investigated. Applying WS-Security to actual businesses is the next step. We conducted a large-scale demonstration experiment with web services using a travel industry model. We applied WS-Security to travel booking transactions and succeeded in ensuring end-to-end security by signing and encrypting credit card numbers. We give an overview of the experiment, point out the problems experienced and provide a possible solution. The experiment revealed that problems still remain with respect to communication via an intermediary.
引用
收藏
页码:358 / 361
页数:4
相关论文
共 50 条
  • [31] XML and Web services security
    Sun, Lili
    Li, Yan
    PROCEEDINGS OF THE 2008 12TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, VOLS I AND II, 2008, : 765 - 770
  • [32] Web services security.
    Gordon, RS
    LIBRARY JOURNAL, 2003, 128 (18) : 119 - 119
  • [33] Security and reliability for web services
    Maeda, T
    Nomura, Y
    Hara, H
    FUJITSU SCIENTIFIC & TECHNICAL JOURNAL, 2003, 39 (02): : 214 - 223
  • [34] Security architecture for web services
    Rao, Y
    Feng, BQ
    Han, JC
    GRID AND COOPERATIVE COMPUTING GCC 2004, PROCEEDINGS, 2004, 3251 : 341 - 347
  • [35] Security Issues in Web Services
    Shade, Kuyoro O.
    Frank, Ibikunle
    Awodele, O.
    Samuel, Okolie O.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2012, 12 (01): : 23 - 27
  • [36] Security management of web services
    Malek, M
    Harmantzis, F
    NOMS 2004: IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, APPLICATION SESSIONS: MANAGING NEXT GENERATION CONVERGENCE NETWORKS AND SERVICES, 2004, : 175 - 189
  • [37] An overview of Web Services security
    Kearney, P
    Chapman, J
    Edwards, N
    Gifford, M
    He, L
    BT TECHNOLOGY JOURNAL, 2004, 22 (01) : 27 - 42
  • [38] Systematic review of web application security development model
    Bala Musa Shuaibu
    Norita Md Norwawi
    Mohd Hasan Selamat
    Abdulkareem Al-Alwani
    Artificial Intelligence Review, 2015, 43 : 259 - 276
  • [39] Network and web services security concepts using Java']Java
    Srinivas, R
    FIRST LATIN AMERICAN WEB CONGRESS, PROCEEDINGS, 2003, : 238 - 238
  • [40] Systematic review of web application security development model
    Shuaibu, Bala Musa
    Norwawi, Norita Md
    Selamat, Mohd Hasan
    Al-Alwani, Abdulkareem
    ARTIFICIAL INTELLIGENCE REVIEW, 2015, 43 (02) : 259 - 276