基于转发信任的Web服务安全会话建立协议

Jun Wang
{"title":"基于转发信任的Web服务安全会话建立协议","authors":"Jun Wang","doi":"10.1109/ICWS.2006.20","DOIUrl":null,"url":null,"abstract":"In large distributed monitoring and management systems that involve a large number of entities across multiple trust domains, the problem of establishing a secure conversation effectively between any two entities is outstanding when these two entities do not have a direct trust relationship. In this paper, we present a conversation establishment protocol that uses forwarded trust relationships to solve this problem. In this protocol, security assertion markup language (SAML) based authentication assertions are used to encapsulate the conversation context as well as the conversation target identity authentication information into a secure context token. Our protocol is conformant to the emerging Web services standards of WS-trust and WS-secure conversation. The implementation of this framework on Java platform and its application to secure a Web services based grid monitoring system are presented","PeriodicalId":408032,"journal":{"name":"2006 IEEE International Conference on Web Services (ICWS'06)","volume":"71 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-09-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":"{\"title\":\"A Web Services Secure Conversation Establishment Protocol Based on Forwarded Trust\",\"authors\":\"Jun Wang\",\"doi\":\"10.1109/ICWS.2006.20\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In large distributed monitoring and management systems that involve a large number of entities across multiple trust domains, the problem of establishing a secure conversation effectively between any two entities is outstanding when these two entities do not have a direct trust relationship. In this paper, we present a conversation establishment protocol that uses forwarded trust relationships to solve this problem. In this protocol, security assertion markup language (SAML) based authentication assertions are used to encapsulate the conversation context as well as the conversation target identity authentication information into a secure context token. Our protocol is conformant to the emerging Web services standards of WS-trust and WS-secure conversation. The implementation of this framework on Java platform and its application to secure a Web services based grid monitoring system are presented\",\"PeriodicalId\":408032,\"journal\":{\"name\":\"2006 IEEE International Conference on Web Services (ICWS'06)\",\"volume\":\"71 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2006-09-18\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"5\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2006 IEEE International Conference on Web Services (ICWS'06)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICWS.2006.20\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2006 IEEE International Conference on Web Services (ICWS'06)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICWS.2006.20","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 5

摘要

在涉及跨多个信任域的大量实体的大型分布式监控和管理系统中,当任意两个实体之间没有直接信任关系时,如何在这两个实体之间有效地建立安全对话是一个突出的问题。在本文中,我们提出了一个使用转发信任关系的会话建立协议来解决这个问题。在此协议中,使用基于安全断言标记语言(SAML)的身份验证断言将会话上下文以及会话目标身份验证信息封装到安全上下文令牌中。我们的协议符合WS-trust和WS-secure会话的新兴Web服务标准。介绍了该框架在Java平台上的实现及其在基于Web服务的网格监控系统中的应用
本文章由计算机程序翻译,如有差异,请以英文原文为准。
A Web Services Secure Conversation Establishment Protocol Based on Forwarded Trust
In large distributed monitoring and management systems that involve a large number of entities across multiple trust domains, the problem of establishing a secure conversation effectively between any two entities is outstanding when these two entities do not have a direct trust relationship. In this paper, we present a conversation establishment protocol that uses forwarded trust relationships to solve this problem. In this protocol, security assertion markup language (SAML) based authentication assertions are used to encapsulate the conversation context as well as the conversation target identity authentication information into a secure context token. Our protocol is conformant to the emerging Web services standards of WS-trust and WS-secure conversation. The implementation of this framework on Java platform and its application to secure a Web services based grid monitoring system are presented
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信