摘要
随着互联网技术与应用的发展,基于Web Services(WS)的分布式应用(如电子商务和电子政务等)已成为十分重要的发展方向。为保证WS能够在Internet上得到广泛的应用,必须保证WS的安全。目前,WS正面临着安全问题的挑战,其通信要求保证实现信息的端到端安全保密传输,而传统的安全机制(如加密、数字签名、PKI等)根本无法为WS提供充分的安全保证。在分析WS安全现状、WS架构和WS安全关键技术的基础上,得到解决方法,对WS安全应用具有广泛的通用性和实用参考价值。
As the internet technology and application development,Web Services(WS) based on distributed application(such as electronic commerce and electronic affairs etc) have become a very important to ensure the development direction.WS on internet can find a wide application,we must ensure the safety of WS.At present,WS are faced with the challenge of the security problems,their communication requirements to ensure the realization of end-to-end security and confidentiality of information transmission,but traditional safety mechanisms(for encryption and digital signatures,PKI) couldn't provide security guarantees for WS.The security situation in the analysis WS,WS structure and WS security key technical on the basis of this article in a solution,and the solution has a wide application WS security universality and practical reference value.
出处
《计算机安全》
2010年第10期35-37,共3页
Network & Computer Security