Server-Side Streaming Processing of WS-Security

被引:6
|
作者
Gruschka, Nils [1 ]
Jensen, Meiko [2 ]
Lo Iacono, Luigi [3 ]
Luttenberger, Norbert [4 ]
机构
[1] NEC Labs Europe, D-69115 Heidelberg, Germany
[2] Univ Bochum, D-44780 Bochum, Germany
[3] Cologne Univ Appl Sci, D-50679 Cologne, Germany
[4] Univ Kiel, Inst Informat, D-24098 Kiel, Germany
关键词
Web services; SOAP; WS-Security; streaming processing; DoS robustness; efficient processing;
D O I
10.1109/TSC.2010.61
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With SOAP-based web services leaving the stadium of being an explorative set of new technologies and entering the stage of mature and fundamental building blocks for service-driven business processes-and in some cases even for mission-critical systems-the demand for nonfunctional requirements including efficiency as well as security and dependability commonly increases rapidly. Although web services are capable of coupling heterogeneous information systems in a flexible and cost-efficient way, the processing efficiency and robustness against certain attacks do not fulfill industry-strength requirements. In this paper, a comprehensive stream-based WS-Security processing system is introduced, which enables a more efficient processing in service computing and increases the robustness against different types of Denial-of-Service (DoS) attacks. The introduced engine is capable of processing all standard-conforming applications of WS-Security in a streaming manner. It can handle, e. g., any order, number, and nesting degree of signature and encryption operations, closing the gap toward more efficient and dependable web services.
引用
收藏
页码:272 / 285
页数:14
相关论文
共 50 条
  • [21] QoE-Fair DASH Video Streaming Using Server-side Reinforcement Learning
    Altamimi, Sa'di
    Shirmohammadi, Shervin
    ACM TRANSACTIONS ON MULTIMEDIA COMPUTING COMMUNICATIONS AND APPLICATIONS, 2020, 16 (02)
  • [22] Implementation of WS-Security and its performance improvements
    Makino, S
    Tamura, K
    Imamura, T
    Nakamura, Y
    ICWS'03: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON WEB SERVICES, 2003, : 256 - 261
  • [23] Verified reference implementations of WS-security protocols
    Bhargavan, Karthikeyan
    Fournet, Cedric
    Gordon, Andrew D.
    WEB SERVICES AND FORMAL METHODS, PROCEEDINGS, 2006, 4184 : 88 - 106
  • [24] Security issues on server-side credit-based electronic payment systems
    Liu, A
    Shen, VY
    Muppala, JK
    THIRD INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE, PROCEEDINGS, 2002, : 47 - 57
  • [25] Uses and Abuses of Server-Side Requests
    Pellegrino, Giancarlo
    Catakoglu, Onur
    Balzarotti, Davide
    Rossow, Christian
    RESEARCH IN ATTACKS, INTRUSIONS, AND DEFENSES, RAID 2016, 2016, 9854 : 393 - 414
  • [26] Server-Side Dynamic Code Analysis
    Guizani, Wadie
    Marion, Jean-Yves
    Reynaud-Plantey, Daniel
    2009 4TH INTERNATIONAL CONFERENCE ON MALICIOUS AND UNWANTED SOFTWARE (MALWARE 2009), 2009, : 55 - 62
  • [27] Server-side includes made simple
    Fagan, JC
    ELECTRONIC LIBRARY, 2002, 20 (05): : 382 - 389
  • [28] Server-side performance evaluation of NDN
    Marchal, Xavier
    Cholez, Thibault
    Festor, Olivier
    PROCEEDINGS OF THE 2016 3RD ACM CONFERENCE ON INFORMATION-CENTRIC NETWORKING (ACM-ICN '16), 2016, : 148 - 153
  • [29] Server-side scripting in visual basic
    Williams, A
    DR DOBBS JOURNAL, 1997, 22 (09): : 68 - +
  • [30] Server-side visualization of massive datasets
    Beeson, B
    Dwyer, M
    Thompson, D
    First International Conference on e-Science and Grid Computing, Proceedings, 2005, : 542 - 548