Web service security - XKMS (TrustPoint)

被引:0
|
作者
Baer, D [1 ]
Philipp, A [1 ]
Pohlmann, N [1 ]
机构
[1] Gelsenkirchen Univ Appl Sci, Dept Comp Sci, Distributed Syst & Informat Secur, D-45877 Gelsenkirchen, Germany
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Web services have grown up and developed a considerable potential: They are based on an open, dynamic exchange of data. Their openness is their greatest plus and contributed to their wide acceptance. This openness, however, and the resulting lack of security is at the same time the barrier that prevents web services from being used on a broad basis. Web services have to become safe if they are to transmit sensitive data securely. The prerequisites for the secure electronic exchange of data and information are confidentiality, integrity, and reliability. The adequate means to meet these demands are encryption and the digital signature on the basis of cryptographic methods. A Public Key Infrastructure (PKI) provides the adequate software, protocols, and standards. If web services are to be protected comprehensively and on the long run, a PKI is needed. Establishing and operating a PKI, however, is a complex task requiring different protocols on the client side - and not all application programs respectively application terminals are able to meet these requirements. New approaches enable the easy communication with a PKI. Web services and the Simple Object Access Protocol (SOAP are easy means to make use of remote services within a Service Orientated Architecture (SOA). The XML Key Management Specification (XKMS defines a protocol with which keys can be validated and managed on the basis of XML via web services. The resulting advantages make using a PKI easier and leaner. In this work, the XKMS specification is introduced, its functional principle is explained, its advantages and disadvantages are described, and an insight is provided into the realization of a SKMS responder in the framework of the TrustPoint project.
引用
收藏
页码:250 / 258
页数:9
相关论文
共 50 条
  • [1] A XKMS-based security framework for Mobile Grid into the XML Web Services
    Park, N
    Moon, K
    Jang, J
    Sohn, S
    [J]. COMPUTATIONAL SCIENCE - ICCS 2004, PT 3, PROCEEDINGS, 2004, 3038 : 124 - 132
  • [2] Web service security
    Damiani, Ernesto
    Gianini, Gabriele
    Maruyama, Hiroshi
    [J]. COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2006, 21 (05): : 323 - 323
  • [3] A Security Architecture For Web Service
    Luo Fuqiang
    Xiong Yongfu
    [J]. 2ND INTERNATIONAL SYMPOSIUM ON COMPUTER NETWORK AND MULTIMEDIA TECHNOLOGY (CNMT 2010), VOLS 1 AND 2, 2010, : 499 - 502
  • [4] Development of XKMS-based service component for using PKI in XML web services environment
    Park, N
    Moon, K
    Jang, JS
    Sohn, S
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2004, PT 1, 2004, 3043 : 784 - 791
  • [5] 基于XKMS的安全Web应用
    万晨妍
    蔡敏烨
    [J]. 保密科学技术, 2011, (09) : 18 - 20
  • [6] Web service composition: A security perspective
    Carminati, B
    Ferrari, E
    Hung, PCK
    [J]. International Workshop on Challenges in Web Information Retrieval and Integration, Proceedings, 2005, : 248 - 253
  • [7] Semantic Security Policy for Web Service
    He Zheng-qiu
    Wu Li-fa
    Hong Zheng
    Lai Hai-guang
    [J]. 2009 IEEE INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED PROCESSING WITH APPLICATIONS, PROCEEDINGS, 2009, : 258 - 262
  • [8] Security conscious Web service composition
    Carminati, Barbara
    Ferrari, Elena
    Hung, Patrick C. K.
    [J]. ICWS 2006: IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, PROCEEDINGS, 2006, : 489 - +
  • [9] Web Service Security Management Using Semantic Web Techniques
    Guimaraes Garcia, Diego Zuquim
    Felgar de Toledo, Maria Beatriz
    [J]. APPLIED COMPUTING 2008, VOLS 1-3, 2008, : 2256 - 2260
  • [10] Security conscious Web service composition with semantic Web support
    Carminati, Barbara
    Ferrari, Elena
    Bishop, Ryan
    Hung, Patrick C. K.
    [J]. 2007 IEEE 23RD INTERNATIONAL CONFERENCE ON DATA ENGINEERING WORKSHOP, VOLS 1-2, 2007, : 695 - +