{"title":"迈向更安全的web服务——利用和分析XML签名安全问题","authors":"T. Knap, I. Holubová","doi":"10.1109/RCIS.2009.5089267","DOIUrl":null,"url":null,"abstract":"The aim of this paper is to analyze the current security issues of XML Signature - a W3C Recommendation, which is used as a key part of the process of ensuring web services integrity. After introducing the necessary terminology, the problematic issues of the XML Signature W3C Recommendation are divided into several areas, inspected, and the solutions are described and compared. If an appropriate solution does not exist, or is not yet fully standardized, it is marked as an open problem and the solution is proposed.","PeriodicalId":180106,"journal":{"name":"2009 Third International Conference on Research Challenges in Information Science","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-04-22","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":"{\"title\":\"Towards more secure web services - Exploiting and analysing XML signature security issues\",\"authors\":\"T. Knap, I. Holubová\",\"doi\":\"10.1109/RCIS.2009.5089267\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The aim of this paper is to analyze the current security issues of XML Signature - a W3C Recommendation, which is used as a key part of the process of ensuring web services integrity. After introducing the necessary terminology, the problematic issues of the XML Signature W3C Recommendation are divided into several areas, inspected, and the solutions are described and compared. If an appropriate solution does not exist, or is not yet fully standardized, it is marked as an open problem and the solution is proposed.\",\"PeriodicalId\":180106,\"journal\":{\"name\":\"2009 Third International Conference on Research Challenges in Information Science\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2009-04-22\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"8\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2009 Third International Conference on Research Challenges in Information Science\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/RCIS.2009.5089267\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 Third International Conference on Research Challenges in Information Science","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/RCIS.2009.5089267","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Towards more secure web services - Exploiting and analysing XML signature security issues
The aim of this paper is to analyze the current security issues of XML Signature - a W3C Recommendation, which is used as a key part of the process of ensuring web services integrity. After introducing the necessary terminology, the problematic issues of the XML Signature W3C Recommendation are divided into several areas, inspected, and the solutions are described and compared. If an appropriate solution does not exist, or is not yet fully standardized, it is marked as an open problem and the solution is proposed.