期刊文献+

一个基于SOAP消息的Web服务综合安全模型 被引量:12

A Colligation Security Model of Web Services Based on SOAP Message
下载PDF
导出
摘要 在通用Web服务模型的基础上,提出一种基于SOAP(简单对象访问协议)消息的Web服务综合安全模型.其中增加两个功能模块:Web服务安全平台,用来生成管理密钥对、数字证书和Web服务双方的身份认证;SOAP消息安全代理包,用来保障Web服务消息的安全性.利用现有的工具包对模型进行了实现,并在一个具体的系统平台上对其进行了安全性测试,结果表明对SOAP消息加密成功,同时实现了证书、密钥的发放和管理.保证了Web服务在一个安全的环境中运行. A new colligation security model of Web services based on SOAP message was designed, and two new function modules were added in the model. Web services security platform (WSSP) which was used to create a pair of manager private key,digital certificate and the authentication of identity; SOAP message security agent (SMSA) was used to ensure the security of Web services message. In the end, we actualized the new model by some tool package which was in existence, and did some security testing for the model in a idiographic system. The result of testing indicated that the SOAP message was encrypted, and the private key and the digital certificate was conferred and managed. It ensured the Web services working in a safety environment.
出处 《武汉大学学报(理学版)》 CAS CSCD 北大核心 2006年第5期570-573,共4页 Journal of Wuhan University:Natural Science Edition
基金 国家自然科学基金(70571056) 河北省科学技术研究与发展计划基金(04213529 04213534)资助项目
关键词 WEB服务 SAML XML 数字签名 XML加密 SOAP Web services, SAML XML digital signature XML encryption SOAP
  • 相关文献

参考文献11

  • 1Ardagna C, Damiani E, Samarati P, et al. A Web Service Architecture for Enforcing Access Control Policies[J]. Electronic Notes in Theoretical Computer Science, 2006,142(1) :47-62.
  • 2IBM and Microsoft. IBM Corporation and Microsoft Corporation. Security in a Web Services World: A Proposed Architecture and Roadmap[EB/OL]. [2002-05-12-04 ]. http://www.106.com/developerworks/library/ws-seemap /.
  • 3IBM. IBM Corporation Web Services Toolkit 3. 2. 2[EB/OL]. [2005-12-04]. http://www.alphaworks.ibm. com / tech / webservicestoolkit/.
  • 4Microsoft. Microsoft Federated Security and Identity Roadmap[EB/OL]. [2005-12-06]. http://msdn.microsoft.com/library/default.asp? url=/library/enus / dnwebsrv/html/wsfederate.asp.
  • 5Jeffrey C, Web Services Description Requirements[EB/OL]. [2005-12-06]. http://www.w3.org/TR/2002.
  • 6Curbera F,Duftler M. Unraveling the Web Services Web[J]. IEEE Internet Computing ,2002,6(2): 86-93.
  • 7Reagle J. W3C's XML Encryption Specification[EB/OL]. [2005-12-11].http://www. w3.org/Signature.
  • 8王继梅,金连甫.Web服务安全问题研究和解决[J].计算机应用与软件,2004,21(2):91-93. 被引量:24
  • 9W3C. XML Signature [EB/OL]. [2005-12-11]. http:// www.w3.org/Signature/.
  • 10W3C. XML Encryption[EB/OL]. [2005-12-06]. http://www.w3.org/Encryption/.

二级参考文献7

  • 1[1]Security in a Web Services World:A Proposed Architecture and Roadmap. http:∥www-106.ibm.com/developerworks/webservices/library/ws-secmap.
  • 2[2]Java and Web Services.http:∥www.javaworld.com/channel-content//jw-web-services-index.shtml.
  • 3[3]Frank Sommerss Web Services column.http:∥www.javaworld.com/columns/jw-web-services-index.shtml.
  • 4[4]"Securing wireless J2ME"Michael Juntao Yuan,Ju Long.http:∥www-106.ibm.com.
  • 5[5]"Securing your J2ME/MIDP apps"Michael Juntao Yuan.http:∥www-106.ibm.com.
  • 6[6]XML Security Suite.http:∥www.alphaworks.ibm.com/tech/xmlsecuritysuite.
  • 7李军怀,张景,周明全,耿国华.基于XML的企业异构数据集成方法研究[J].计算机工程,2002,28(9):63-64. 被引量:24

共引文献24

同被引文献94

引证文献12

二级引证文献18

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部