Research Catalog

Security for Web services and service-oriented architectures

Title
Security for Web services and service-oriented architectures / Elisa Bertino [and others].
Publication
Heidelberg [Germany] ; New York : Springer, ©2010.

Items in the Library & Off-site

Filter by

1 Item

StatusFormatAccessCall NumberItem Location
TextUse in library QA76.9.A25 S42 2010Off-site

Details

Additional Authors
Bertino, Elisa.
Description
xii, 226 pages : illustrations; 25 cm
Summary
"Covers all relevant standards such as XML Encryption, WS-Security, SAML, XACML, and related others, and puts them into a conceptual framework Introduces a reference framework for future research and developments along security dimensions such as integrity, confidentiality, and availability. Web services based on the eXtensible Markup Language (XML), the Simple Object Access Protocol (SOAP), and related standards, and deployed in Service-Oriented Architectures (SOA), are the key to Web-based interoperability for applications within and across organizations. It is crucial that the security of services and their interactions with users is ensured if Web services technology is to live up to its promise. However, the very features that make it attractive - such as greater and ubiquitous access to data and other resources, dynamic application configuration and reconfiguration through workflows, and relative autonomy - conflict with conventional security models and mechanisms. Elisa Bertino and her coauthors provide a comprehensive guide to security for Web services and SOA. They cover in detail all recent standards that address Web service security, including XML Encryption, XML Signature, WS-Security, and WS-SecureConversation, as well as recent research on access control for simple and conversation-based Web services, advanced digital identity management techniques, and access control for Web-based workflows. They explain how these implement means for identification, authentication, and authorization with respect to security aspects such as integrity, confidentiality, and availability."--Publisher's web site
Subject
  • Web services > Security measures
  • Application software > Security measures
  • Service-oriented architecture (Computer science) > Security measures
  • Computer networks > Security measures
  • Identitätsverwaltung
  • Zugriffskontrolle
  • Sicherheit
  • Web Services
  • Serviceorientierte Architektur
  • Kryptoanalyse
  • Datensicherung
Bibliography (note)
  • Includes bibliographical references and index.
Contents
Introduction -- Web service technologies, principles, architectures, and standards -- Web services threats, vulnerabilities, and countermeasures -- Standards for web services security -- Digital identity management and trust negotiation -- Access control for web services -- Secure publishing techniques -- Access control for business processes -- Emerging research trends -- Access control.
ISBN
  • 354087741X
  • 9783540877417
  • 9783540877424
  • 3540877428
LCCN
2009936010
OCLC
  • ocn268931371
  • 268931371
  • SCSB-9177413
Owning Institutions
Princeton University Library