Security Considerations In A Global Message Service Handler Design
نویسنده
چکیده
Web services are generally accepted as the most interoperable application interface today on the Web. In the context of a global electronic marketplace this is an essential factor. In keeping with Services-Oriented Architecture trends, a Web service-based Message Service Handler can provide a global service to all participants in the global marketplace. The main objective of this research is to design a Web service to provide Message Handler Services, using ebXML as the point-of-departure. The focus of this paper is to arrive at a set of pre-specified security standards to promote the goal of interoperability, explaining, with justification, which security mechanisms should be used within the proposed Web service model. The Web service will send messages using the SOAP with Attachments architecture. The use of XML signatures and XML encryption within this SOAP envelope is advised to ensure integrity, authentication and confidentiality. When the actual SOAP envelope is transmitted over the Internet, it will be wrapped within an IPSec packet to ensure further security.
منابع مشابه
Securing SOAP Messages with a Global Message Handler and a Standardized Envelope
This paper argues that, in a collaboration context, instead of Web services requiring client applications to comply with individual permutations of security configurations, a standardized mechanism should be established to ensure global security-interoperability. Such a solution would facilitate providing Web services in Grid Services contexts as well. A framework is proposed which comprises, i...
متن کاملArchitecture Framework Proposal for Dynamic and Ubiquitous Security in Global SOA
Global Service Oriented Architecture (Global SOA) is about the entire Web being a reusable, shareable, public SOA. This work (in progress) presents a detailed analysis of the security requirements for Global SOA. The main problem in seamless ubiquitous integration of distributed network of web services into one Global Service oriented Architecture is that of security. Our strategy is to work on...
متن کاملDocumentation and Developer's Guide 2 Security Architecture in Hed: Security Handler and Policy De- Cision Point 2.1 Structure of Security Handler and Policy Decision Point
The security framework of the ARC NOX includes two parts of capabilities: security capability embedded in hosting environment, and security capability implemented as plug-ins with well-defined interfaces which can be accessed by hosting environment and applications. The following concerns were employed when designing this framework: Interoperability and standardization. In consistency with th...
متن کاملStudy of the Service-life Factor and its Effects on Safety and Economic Considerations in Building Design
In the current engineering practices, buildings are commonly designed for an effective lifetime of 50 years. This lifetime can increase the cost of buildings with short lifetimes and can reduce the safety level of buildings with large lifetimes. In this paper, a “service-life factor” has been defined. Applying this factor into the nominal values of live, earthquake, wind, and snow loads, the ef...
متن کاملDetecting Denial of Service Message Flooding Attacks in SIP based Services
Increasing the popularity of SIP based services (VoIP, IPTV, IMS infrastructure) lead to concerns about its security. The main signaling protocol of next generation networks and VoIP systems is Session Initiation Protocol (SIP). Inherent vulnerabilities of SIP, misconfiguration of its related components and also its implementation deficiencies cause some security concerns in SIP based infra...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2004