Security for Service Oriented Architectures (Paperback)
暫譯: 面向服務的架構安全性 (平裝本)

Walter Williams

  • 出版商: Auerbach Publication
  • 出版日期: 2014-04-24
  • 售價: $2,990
  • 貴賓價: 9.5$2,841
  • 語言: 英文
  • 頁數: 340
  • 裝訂: Paperback
  • ISBN: 1466584025
  • ISBN-13: 9781466584020
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

相關主題

商品描述

Although integrating security into the design of applications has proven to deliver resilient products, there are few books available that provide guidance on how to incorporate security into the design of an application. Filling this need, Security for Service Oriented Architectures examines both application and security architectures and illustrates the relationship between the two.

Supplying authoritative guidance on how to design distributed and resilient applications, the book provides an overview of the various standards that service oriented and distributed applications leverage, including SOAP, HTML 5, SAML, XML Encryption, XML Signature, WS-Security, and WS-SecureConversation. It examines emerging issues of privacy and discusses how to design applications within a secure context to facilitate the understanding of these technologies you need to make intelligent decisions regarding their design.

This complete guide to security for web services and SOA considers the malicious user story of the abuses and attacks against applications as examples of how design flaws and oversights have subverted the goals of providing resilient business functionality. It reviews recent research on access control for simple and conversation-based web services, advanced digital identity management techniques, and access control for web-based workflows.

Filled with illustrative examples and analyses of critical issues, this book provides both security and software architects with a bridge between software and service-oriented architectures and security architectures, with the goal of providing a means to develop software architectures that leverage security architectures.

It is also a reliable source of reference on Web services standards. Coverage includes the four types of architectures, implementing and securing SOA, Web 2.0, other SOA platforms, auditing SOAs, and defending and detecting attacks.

商品描述(中文翻譯)

雖然將安全性整合到應用程式設計中已被證明能夠提供韌性的產品,但目前可用於指導如何將安全性納入應用程式設計的書籍卻不多。為了填補這一需求,面向服務的架構安全性探討了應用程式和安全架構,並說明了兩者之間的 關係。

本書提供權威的指導,教導如何設計分散式和韌性的應用程式,並概述了面向服務和分散式應用程式所依賴的各種標準,包括SOAP、HTML 5、SAML、XML加密、XML簽名、WS-Security和WS-SecureConversation。它探討了隱私的緊迫問題,並討論如何在安全的背景下設計應用程式,以便幫助理解這些技術,從而做出明智的設計決策。

這本針對網路服務和SOA的安全性完整指南考慮了惡意使用者的故事,舉例說明了對應用程式的濫用和攻擊如何顯示設計缺陷和疏忽如何破壞提供韌性商業功能的目標。它回顧了最近關於簡單和基於對話的網路服務的存取控制、先進的數位身份管理技術以及基於網路的工作流程的存取控制的研究。

本書充滿了插圖示例和關鍵問題的分析,為安全和軟體架構師提供了軟體和面向服務的架構與安全架構之間的橋樑,目標是提供一種開發利用安全架構的軟體架構的方法。

它也是有關網路服務標準的可靠參考來源。內容涵蓋四種架構類型、實施和保護SOA、Web 2.0、其他SOA平台、審計SOA以及防禦和檢測攻擊。