Security Considerations In A Global Message Service Handler Design

نویسنده

  • Johannes J. van Eeden
چکیده

Web services are generally accepted as the most interoperable application interface today on the Web. In the context of a global electronic marketplace this is an essential factor. In keeping with Services-Oriented Architecture trends, a Web service-based Message Service Handler can provide a global service to all participants in the global marketplace. The main objective of this research is to design a Web service to provide Message Handler Services, using ebXML as the point-of-departure. The focus of this paper is to arrive at a set of pre-specified security standards to promote the goal of interoperability, explaining, with justification, which security mechanisms should be used within the proposed Web service model. The Web service will send messages using the SOAP with Attachments architecture. The use of XML signatures and XML encryption within this SOAP envelope is advised to ensure integrity, authentication and confidentiality. When the actual SOAP envelope is transmitted over the Internet, it will be wrapped within an IPSec packet to ensure further security.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Securing SOAP Messages with a Global Message Handler and a Standardized Envelope

This paper argues that, in a collaboration context, instead of Web services requiring client applications to comply with individual permutations of security configurations, a standardized mechanism should be established to ensure global security-interoperability. Such a solution would facilitate providing Web services in Grid Services contexts as well. A framework is proposed which comprises, i...

متن کامل

Architecture Framework Proposal for Dynamic and Ubiquitous Security in Global SOA

Global Service Oriented Architecture (Global SOA) is about the entire Web being a reusable, shareable, public SOA. This work (in progress) presents a detailed analysis of the security requirements for Global SOA. The main problem in seamless ubiquitous integration of distributed network of web services into one Global Service oriented Architecture is that of security. Our strategy is to work on...

متن کامل

Documentation and Developer's Guide 2 Security Architecture in Hed: Security Handler and Policy De- Cision Point 2.1 Structure of Security Handler and Policy Decision Point

The security framework of the ARC NOX includes two parts of capabilities: security capability embedded in hosting environment, and security capability implemented as plug-ins with well-defined interfaces which can be accessed by hosting environment and applications. The following concerns were employed when designing this framework: ˆ Interoperability and standardization. In consistency with th...

متن کامل

Study of the Service-life Factor and its Effects on Safety and Economic Considerations in Building Design

In the current engineering practices, buildings are commonly designed for an effective lifetime of 50 years. This lifetime can increase the cost of buildings with short lifetimes and can reduce the safety level of buildings with large lifetimes. In this paper, a “service-life factor” has been defined. Applying this factor into the nominal values of live, earthquake, wind, and snow loads, the ef...

متن کامل

Detecting Denial of Service Message Flooding Attacks in SIP based Services

Increasing the popularity of SIP based services (VoIP, IPTV, IMS infrastructure) lead to concerns about its ‎security. The main signaling protocol of next generation networks and VoIP systems is Session Initiation Protocol ‎‎(SIP). Inherent vulnerabilities of SIP, misconfiguration of its related components and also its implementation ‎deficiencies cause some security concerns in SIP based infra...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2004