Application of Web Services Security using travel industry model

被引:0
|
作者
Nakayama, K
Ishizaki, T
Oba, M
机构
来源
2005 SYMPOSIUM ON APPLICATIONS AND THE INTERNET WORKSHOPS, PROCEEDINGS | 2005年
关键词
Web services; security; WS-Security;
D O I
10.1109/SAINTW.2005.1620048
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Web Services Security (WS-Security) is a specification that protects SOAP messages to ensure end-to-end security for web services. WS-Security was approved as the OASIS standard in April 2004 and the first stage of standardization has been completed. Although the interoperability of WS-Security itself has been examined, business applications of WS-Security have not yet been fully investigated. Applying WS-Security to actual businesses is the next step. We conducted a large-scale demonstration experiment with web services using a travel industry model. We applied WS-Security to travel booking transactions and succeeded in ensuring end-to-end security by signing and encrypting credit card numbers. We give an overview of the experiment, point out the problems experienced and provide a possible solution. The experiment revealed that problems still remain with respect to communication via an intermediary.
引用
收藏
页码:358 / 361
页数:4
相关论文
共 50 条
  • [1] A model for application integration using web services
    Harikumar, AK
    Lee, R
    Yang, HS
    Kim, HK
    Kang, B
    Fourth Annual ACIS International Conference on Computer and Information Science, Proceedings, 2005, : 468 - 475
  • [2] Survey on the Web Services Security Specifications
    Zhang, Xiaofen
    Hou, Yi
    Ma, Jialin
    ENGINEERING SOLUTIONS FOR MANUFACTURING PROCESSES, PTS 1-3, 2013, 655-657 : 1809 - +
  • [3] Decoupling security concerns in Web services using Aspects
    Mostefaoui, G. Kouadri
    Narendra, N. C.
    Maamar, Z.
    Sattanathan, S.
    THIRD INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY: NEW GENERATIONS, PROCEEDINGS, 2006, : 20 - +
  • [4] SX-RSRPM: A security integrated model for Web Services
    Rao, Y
    Feng, BQ
    Han, JC
    Li, ZC
    PROCEEDINGS OF THE 2004 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2004, : 2953 - 2958
  • [5] Security management of web services
    Malek, M
    Harmantzis, F
    NOMS 2004: IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, APPLICATION SESSIONS: MANAGING NEXT GENERATION CONVERGENCE NETWORKS AND SERVICES, 2004, : 175 - 189
  • [6] Security Issues in Web Services
    Shade, Kuyoro O.
    Frank, Ibikunle
    Awodele, O.
    Samuel, Okolie O.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2012, 12 (01): : 23 - 27
  • [7] Enhanced enterprise web-based application security using GeoIp services
    Wang, Yong
    Simmons, Dick
    PROCEEDINGS OF THE 10TH IASTED INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND APPLICATIONS, 2006, : 210 - +
  • [8] Security personalization for internet and web services
    Yee, George O. M.
    Korba, Larry
    INTERNATIONAL JOURNAL OF WEB SERVICES RESEARCH, 2008, 5 (01) : 1 - 23
  • [9] XML and web services security standards
    Norwegian Defence Research Establishment, Norway
    IEEE Commun. Surv. Tutor., 2009, 3 (22-36): : 22 - 36
  • [10] Interoperable Security Standards for Web Services
    Lakshminarayanan, Sitaraman
    IT PROFESSIONAL, 2010, 12 (05) : 42 - 47