Information Technology Reference
In-Depth Information
Research of SOAP Message Security Model on Web
Services
Shujun Pei and Deyun Chen
Computer Science and Technology
Harbin University of Science and Technology
150080 Harbin, China
peisj@hrbust.edu.cn, chendy@hrbust.edu.cn
Abstract. Based on .NET platform, the paper researches the security of Web
services and presents the methods of implementation. A Web Services Security
model is brought forward based on .NET platform with the use of its security
mechanism and WS-Security specification. The methods of identification,
digital signature, encryption and decryption, SOAP information authority are
given, the problems of the end to end SOAP information security between
applicants and offers are solved, and its secrecy, integrity, non-negation,
identity identification and authority are ensured.
Keywords: End to End, SOAP Message, Web Services Security, .NET
Platform.
1 Introduction
The rapid development of information technology requires higher security of
information system. As the Internet has created an ideal space for information
transmission, the security of network is becoming more and more important. Among
them, for some special industries or important departments, their Web service security
is a critical and complex problem. Their security system requires detailed planning,
and the site administrators and programmers must have a clear understanding of how
to ensure the security of the site and service.
For message-based architecture, the industry has got a set of ready-made and
widely accepted transport-layer security mechanisms. The existing security
mechanisms can not provide adequate security within the Web service model due to
lack of end to end protection, non-repudiation, selective protection, flexible
authentication and protection of message level. On the basis of .NET platform, this
paper puts forward a Web service security model which is on .NET platform, giving
the implementation methods by taking advantages of security mechanism and
WS-Security specification of .NET platform.
 
Search WWH ::




Custom Search