Application of Web Services Security using travel industry model

被引:0
|
作者
Nakayama, K
Ishizaki, T
Oba, M
机构
来源
2005 SYMPOSIUM ON APPLICATIONS AND THE INTERNET WORKSHOPS, PROCEEDINGS | 2005年
关键词
Web services; security; WS-Security;
D O I
10.1109/SAINTW.2005.1620048
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Web Services Security (WS-Security) is a specification that protects SOAP messages to ensure end-to-end security for web services. WS-Security was approved as the OASIS standard in April 2004 and the first stage of standardization has been completed. Although the interoperability of WS-Security itself has been examined, business applications of WS-Security have not yet been fully investigated. Applying WS-Security to actual businesses is the next step. We conducted a large-scale demonstration experiment with web services using a travel industry model. We applied WS-Security to travel booking transactions and succeeded in ensuring end-to-end security by signing and encrypting credit card numbers. We give an overview of the experiment, point out the problems experienced and provide a possible solution. The experiment revealed that problems still remain with respect to communication via an intermediary.
引用
收藏
页码:358 / 361
页数:4
相关论文
共 50 条
  • [41] Smart Travel Planner: A mashup of travel-related web services
    Jafri, Rabia
    Alkhunji, Amal Saad
    Alhader, Ghada Khaled
    Alrabeiah, Hanan Rabeiah
    Alhammad, Noura Abdullah
    Alzahrani, Sara Khader
    PROCEEDINGS OF THE 2013 INTERNATIONAL CONFERENCE ON CURRENT TRENDS IN INFORMATION TECHNOLOGY (CTIT), 2013, : 181 - 185
  • [42] Web services security evaluation considerations
    Pimenidis, Elias
    Georgiadis, Christos K.
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2009, 2 (03) : 239 - 252
  • [43] Security development in Web Services environment
    Chou, DC
    Yurov, K
    COMPUTER STANDARDS & INTERFACES, 2005, 27 (03) : 233 - 240
  • [44] Security-by-Contract for Web Services
    Dragoni, Nicola
    Massacci, Fabio
    SWS'07: PROCEEDINGS OF THE 2007 ACM WORKSHOP ON SECURE WEB SERVICES, 2007, : 90 - 98
  • [45] Information Security for Web and SQL Services
    Iacob, Nicoleta Magdalena
    PROCEEDINGS OF THE 9TH INTERNATIONAL CONFERENCE ON VIRTUAL LEARNING, 2014, : 408 - 412
  • [46] Design and Security Analysis of web application based and web services based Patient Management System (PMS)
    Rajput, Sahil
    Vadivel, S.
    Shetty, Sujala D.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2010, 10 (03): : 22 - 28
  • [47] Automation of Detection of Security Vulnerabilities in Web Services using Dynamic Analysis
    Kumar, Rahul
    Indraveni, K.
    Goel, Aakash Kumar
    2014 9TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2014, : 334 - 336
  • [48] Web Services Specific Security Standards
    Cristescu, Marian Pompiliu
    Stoica, Eduard Alexandru
    Ciovica, Laurentiu Vasile
    21ST INTERNATIONAL ECONOMIC CONFERENCE OF SIBIU 2014, IECS 2014 PROSPECTS OF ECONOMIC RECOVERY IN A VOLATILE INTERNATIONAL CONTEXT: MAJOR OBSTACLES, INITIATIVES AND PROJECTS, 2014, 16 : 597 - 602
  • [49] A Study on the Security Mechanism for Web Services
    Kou Hongzhao
    WORLD CONGRESS ON ENGINEERING AND COMPUTER SCIENCE, VOLS 1 AND 2, 2010, : 93 - 96
  • [50] Security Testing Methodology for Vulnerabilities Detection of XSS in Web Services and WS-Security
    Salas, M. I. P.
    Martins, E.
    ELECTRONIC NOTES IN THEORETICAL COMPUTER SCIENCE, 2014, 302 : 133 - 154