DOI QR코드

DOI QR Code

웹 서비스에서 중요도 기반 보안수준 검증

Importance-Based Security Level Verification in Web Services

  • 밤복흥 (동국대학교 컴퓨터멀티미디어학부) ;
  • 아지즈 (동국대학교 컴퓨터멀티미디어학부) ;
  • 변정용 (동국대학교 컴퓨터멀티미디어학부)
  • Hung, Pham Phuoc (Department of Computer and Multimedia, Dongguk University) ;
  • Nasridinov, Aziz (Department of Computer and Multimedia, Dongguk University) ;
  • Byun, Jeongyong (Department of Computer and Multimedia, Dongguk University)
  • 발행 : 2010.11.12

초록

There are some cases when SOAP message, where WS-Security and WS-Policy elements are included, may consist of a sensitive and important data. In these cases, the message is highly recommended to be secured. The question exists of how to quickly identify that SOAP message satisfies security requirement and security level of a SOAP message. In this paper, we propose a technique called Bit-Stream which depends on the importance of SOAP elements to automatically identify the vulnerabilities and risks while offering advice for higher security.

키워드