한국정보처리학회:학술대회논문집 (Proceedings of the Korea Information Processing Society Conference)
- 한국정보처리학회 2010년도 추계학술발표대회
- /
- Pages.1279-1280
- /
- 2010
- /
- 2005-0011(pISSN)
- /
- 2671-7298(eISSN)
DOI QR Code
웹 서비스에서 중요도 기반 보안수준 검증
Importance-Based Security Level Verification in Web Services
- Hung, Pham Phuoc (Department of Computer and Multimedia, Dongguk University) ;
- Nasridinov, Aziz (Department of Computer and Multimedia, Dongguk University) ;
- Byun, Jeongyong (Department of Computer and Multimedia, Dongguk University)
- 발행 : 2010.11.12
초록
There are some cases when SOAP message, where WS-Security and WS-Policy elements are included, may consist of a sensitive and important data. In these cases, the message is highly recommended to be secured. The question exists of how to quickly identify that SOAP message satisfies security requirement and security level of a SOAP message. In this paper, we propose a technique called Bit-Stream which depends on the importance of SOAP elements to automatically identify the vulnerabilities and risks while offering advice for higher security.
키워드