首页> 外文会议>International Conference on Web Services(ICWS'03); 20030623-26; Las Vegas,NV(US) >Illustrating Conflict of Interest Assertions in WS-Policy with A Financial Application Example
【24h】

Illustrating Conflict of Interest Assertions in WS-Policy with A Financial Application Example

机译:用财务应用示例说明WS-Policy中的利益冲突声明

获取原文
获取原文并翻译 | 示例

摘要

A Web service is defined as an autonomous unit of application logic that provides either some business functionality or information to other applications through an Internet connection. Web services are based on a set of XML standards such as Simple Object Access Protocol (SOAP), Universal Description, Discovery and Integration (UDDI) and Web Services Description Language (WSDL). The benefits of adopting Web services over traditional business-to-business applications include faster time to production, convergence of disparate business functionalities, a significant reduction in total cost of development, and easy to deploy business applications for trading partners. However, security concerns are the major barrier that prevents many business organisations from implementing or employing Web services. This paper discusses one of the classical security policies that deal with Conflict of Interest (CIR) - the Chinese wall security policy. In the example of financial applications, this paper then extends this concept into specifying and implementing conflict of interest assertions in the newly developed WS-Policy. WS-Policy is an XML representation that provides a grammar for expressing Web services policies, to allow service locators to have a common interpretation of security requirements for the matchmaking process between Web services and activities. By using C# in .Net framework, this paper also describes a prototype Web service called "CIRDetector" for supporting conflict of interest assertions discussed in this paper.
机译:Web服务被定义为应用程序逻辑的自治单元,它通过Internet连接向其他应用程序提供某些业务功能或信息。 Web服务基于一组XML标准,例如简单对象访问协议(SOAP),通用描述,发现和集成(UDDI)和Web服务描述语言(WSDL)。与传统的企业对企业应用程序相比,采用Web服务的好处包括更快的生产时间,不同业务功能的融合,显着降低了开发的总成本以及易于为贸易伙伴部署业务应用程序。但是,安全问题是阻止许多业务组织实现或使用Web服务的主要障碍。本文讨论了处理利益冲突(CIR)的经典安全策略之一-中国墙安全策略。在金融应用程序示例中,本文随后将这一概念扩展到在新开发的WS-Policy中指定和实现利益冲突声明。 WS-Policy是一种XML表示形式,提供了用于表达Web服务策略的语法,以允许服务定位器对Web服务与活动之间的匹配过程的安全性要求具有共同的解释。通过在.Net框架中使用C#,本文还描述了一个名为“ CIRDetector”的原型Web服务,用于支持本文所讨论的利益冲突声明。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号