Two patterns for Web services security

被引:0
|
作者
Fernandez, EB [1 ]
机构
[1] Florida Atlantic Univ, Dept Comp Sci & Engn, Boca Raton, FL 33431 USA
关键词
distributed systems security; object-oriented patterns; SAML; security patterns; XML firewalls;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Patterns are widely used in software engineering where they have been successful in improving analysis and design by encapsulating the experience of many designers. Security patterns are a recent development as a way to encapsulate the accumulated knowledge about secure systems design. We present here two patterns for web services: 1) a Security Assertion Coordination pattern that coordinates authentication and authorization using a Role-Based Control (RBAC) model for access to distributed resources; and 2) A pattern for XML firewalls, that filters XML messages or documents according to institution policies. Because of space restrictions we only describe some sections of the standard template descriptions; more details can be seen in [1] and [7].
引用
收藏
页码:801 / 807
页数:7
相关论文
共 50 条
  • [1] A Survey of Patterns for Web Services Security and Reliability Standards
    Fernandez, Eduardo B.
    Ajaj, Ola
    Buckley, Ingrid
    Delessy-Gassant, Nelly
    Hashizume, Keiko
    Larrondo-Petrie, Maria M.
    FUTURE INTERNET, 2012, 4 (02) : 430 - 450
  • [2] Security of Web services
    Krawczyk, H.
    Wielgus, M.
    DEPCOS-RELCOMEX 2006, 2006, : 183 - +
  • [3] A survey of web services security
    Gutiérrez, C
    Fernández-Medina, E
    Piattini, M
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2004, PT 1, 2004, 3043 : 968 - 977
  • [4] Considerations on web services security
    Gutiérrez, C
    Fernández-Medina, E
    Piattini, M
    IC'04: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INTERNET COMPUTING, VOLS 1 AND 2, 2004, : 999 - 1005
  • [5] XML and Web services security
    Sun, Lili
    Li, Yan
    PROCEEDINGS OF THE 2008 12TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, VOLS I AND II, 2008, : 765 - 770
  • [6] Web services security.
    Gordon, RS
    LIBRARY JOURNAL, 2003, 128 (18) : 119 - 119
  • [7] Security and reliability for web services
    Maeda, T
    Nomura, Y
    Hara, H
    FUJITSU SCIENTIFIC & TECHNICAL JOURNAL, 2003, 39 (02): : 214 - 223
  • [8] Security architecture for web services
    Rao, Y
    Feng, BQ
    Han, JC
    GRID AND COOPERATIVE COMPUTING GCC 2004, PROCEEDINGS, 2004, 3251 : 341 - 347
  • [9] Security Issues in Web Services
    Shade, Kuyoro O.
    Frank, Ibikunle
    Awodele, O.
    Samuel, Okolie O.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2012, 12 (01): : 23 - 27
  • [10] Security management of web services
    Malek, M
    Harmantzis, F
    NOMS 2004: IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, APPLICATION SESSIONS: MANAGING NEXT GENERATION CONVERGENCE NETWORKS AND SERVICES, 2004, : 175 - 189