Optimizing web services security processing models
dc.contributor.author | Suriarachchi, IE | |
dc.contributor.author | Mihindukulasooriya, NS | |
dc.contributor.editor | Nanayakkara, V | |
dc.contributor.editor | Gunasinghe, UP | |
dc.date.accessioned | 2022-11-24T09:59:15Z | |
dc.date.available | 2022-11-24T09:59:15Z | |
dc.date.issued | 2009-07 | |
dc.description.abstract | Security is a major concern of today’s enterprise web services due to its message oriented nature. Web services messages containing confidential information can be transmitted on unsecured networks thus should have proper mechanisms to protect them possible attacks. To cater those requirements, Web Services Security specification defines enhancements to SOAP messaging providing authentication, message integrity and confidentiality without losing the interoperability. Security requirements and capabilities of web services are expressed using Security Policy language. Thus security policy processing plays a vital role in any web service security engine. Security processing model should be efficient and invincible to possible attacks. In this paper, we evaluate the current web service security processing models and discuss their weaknesses. We propose an improved security processing model for web services security which is more efficient and less vulnerable to attacks such as denial of service attacks. | en_US |
dc.identifier.citation | **** | en_US |
dc.identifier.conference | CS & ES Conference 2009 | en_US |
dc.identifier.department | Department of Computer Science and Engineering | en_US |
dc.identifier.faculty | IT | en_US |
dc.identifier.pgnos | pp. 1-6 | en_US |
dc.identifier.place | Colombo, Sri Lanka | en_US |
dc.identifier.proceeding | Proceedings of the CS & ES Conference 2009 | en_US |
dc.identifier.uri | http://dl.lib.uom.lk/handle/123/19593 | |
dc.identifier.year | 2009 | en_US |
dc.language.iso | en | en_US |
dc.publisher | Computer Science & Engineering Society c/o Department of Computer Science and Engineering, University of Moratuwa. | en_US |
dc.subject | Denial of Service Attacks | en_US |
dc.subject | Performance Optimization | en_US |
dc.subject | Security | en_US |
dc.subject | Security Policy | en_US |
dc.subject | Web services | en_US |
dc.title | Optimizing web services security processing models | en_US |
dc.type | Conference-Full-text | en_US |