{"title":"基于转发信任的Web服务安全会话建立协议","authors":"Jun Wang","doi":"10.1109/ICWS.2006.20","DOIUrl":null,"url":null,"abstract":"In large distributed monitoring and management systems that involve a large number of entities across multiple trust domains, the problem of establishing a secure conversation effectively between any two entities is outstanding when these two entities do not have a direct trust relationship. In this paper, we present a conversation establishment protocol that uses forwarded trust relationships to solve this problem. In this protocol, security assertion markup language (SAML) based authentication assertions are used to encapsulate the conversation context as well as the conversation target identity authentication information into a secure context token. Our protocol is conformant to the emerging Web services standards of WS-trust and WS-secure conversation. The implementation of this framework on Java platform and its application to secure a Web services based grid monitoring system are presented","PeriodicalId":408032,"journal":{"name":"2006 IEEE International Conference on Web Services (ICWS'06)","volume":"71 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-09-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":"{\"title\":\"A Web Services Secure Conversation Establishment Protocol Based on Forwarded Trust\",\"authors\":\"Jun Wang\",\"doi\":\"10.1109/ICWS.2006.20\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In large distributed monitoring and management systems that involve a large number of entities across multiple trust domains, the problem of establishing a secure conversation effectively between any two entities is outstanding when these two entities do not have a direct trust relationship. In this paper, we present a conversation establishment protocol that uses forwarded trust relationships to solve this problem. In this protocol, security assertion markup language (SAML) based authentication assertions are used to encapsulate the conversation context as well as the conversation target identity authentication information into a secure context token. Our protocol is conformant to the emerging Web services standards of WS-trust and WS-secure conversation. The implementation of this framework on Java platform and its application to secure a Web services based grid monitoring system are presented\",\"PeriodicalId\":408032,\"journal\":{\"name\":\"2006 IEEE International Conference on Web Services (ICWS'06)\",\"volume\":\"71 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2006-09-18\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"5\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2006 IEEE International Conference on Web Services (ICWS'06)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICWS.2006.20\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2006 IEEE International Conference on Web Services (ICWS'06)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICWS.2006.20","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
A Web Services Secure Conversation Establishment Protocol Based on Forwarded Trust
In large distributed monitoring and management systems that involve a large number of entities across multiple trust domains, the problem of establishing a secure conversation effectively between any two entities is outstanding when these two entities do not have a direct trust relationship. In this paper, we present a conversation establishment protocol that uses forwarded trust relationships to solve this problem. In this protocol, security assertion markup language (SAML) based authentication assertions are used to encapsulate the conversation context as well as the conversation target identity authentication information into a secure context token. Our protocol is conformant to the emerging Web services standards of WS-trust and WS-secure conversation. The implementation of this framework on Java platform and its application to secure a Web services based grid monitoring system are presented