Database Reference
In-Depth Information
Requirements
Standards
SSL and TLS
Transport layer security
http://tools.ietf.org/html/rfc6101
http://tools.ietf.org/html/rfc5246
XML Encryption
Confidentiality enforcement XML Encryption
http://www.w3.org/standards/techs/xmlenc#w3c_all
XML Signature
Integrity, Non-repudiation, and origin assurance
http://www.w3.org/TR/xmldsig-core/
(SAML, Kerberos, X.509 token profiles)
WS-Security
https://www.oasis-open.org/committees/tc_home.php?wg_abbrev=security
http://www.ietf.org/rfc/rfc4120.txt
WS-Policy
Generic application of rules and conditions
http://www.w3.org/Submission/WS-Policy/
WS-SecurityPolicy
Subset of the policies, related to security
http://docs.oasis-open.org/ws-sx/ws-securitypolicy/200702/ws-
securitypolicy-1.2-spec-os.html
WS-Trust
Brokered trust management (claims, assertions, tokens)
http://docs.oasis-open.org/ws-sx/ws-trust/200512/ws-trust-1.3-os.html
WS-SecureConversation
Governing secure context exchange (tokens during hand-
shake, and so on.)
http://docs.oasis-open.org/ws-sx/ws-secureconversation/200512/ws-securecon-
versation-1.3-os.html
XACML
XML-based Access Control Language
https://www.oasis-open.org/committees/tc_home.php?wg_abbrev=xacml
XKMS
Key management specification
http://www.w3.org/TR/xkms2/
Cryptography standards
PKCS#1, PKCS#7, PKCS#12
Search WWH ::




Custom Search