TY - JOUR
T1 - Towards the homogeneous access and use of PKI solutions: design and implementation of a WS-XKMS server
AU - Alcaraz Calero, Jose M.
AU - López Millán, Gabriel
AU - Martínez Pérez, Gregorio
AU - Gomez Skarmeta, Antonio F.
PY - 2009/4
Y1 - 2009/4
N2 - Nowadays, there exists certain important scenarios where different WS-* security related protocols and technologies are being used, such as e-commerce, resource control, or secure access to grid nodes. Additionally, most of these scenarios require the interaction with a trust management infrastructure (such as a PKI -Public Key Infrastructure-), usually to validate the digital certificates provided by communication peers belonging, in most cases, to different administrative domains. For doing this with WS-enabled technologies the W3C proposed the XKMS (XML Key Management Specification) standard a few years ago. However, few implementations exist so far of this standard, and most of them with important limitations. This paper presents an open-source WS-enabled implementation of the XKMS standard named Open XKMS, certain key scenarios where it can be used and the details of how it has been designed and implemented. This paper tries to motivate and foster the use of the XKMS standard and describe a software solution that can help to designers and developers of WS-based security scenarios.
AB - Nowadays, there exists certain important scenarios where different WS-* security related protocols and technologies are being used, such as e-commerce, resource control, or secure access to grid nodes. Additionally, most of these scenarios require the interaction with a trust management infrastructure (such as a PKI -Public Key Infrastructure-), usually to validate the digital certificates provided by communication peers belonging, in most cases, to different administrative domains. For doing this with WS-enabled technologies the W3C proposed the XKMS (XML Key Management Specification) standard a few years ago. However, few implementations exist so far of this standard, and most of them with important limitations. This paper presents an open-source WS-enabled implementation of the XKMS standard named Open XKMS, certain key scenarios where it can be used and the details of how it has been designed and implemented. This paper tries to motivate and foster the use of the XKMS standard and describe a software solution that can help to designers and developers of WS-based security scenarios.
KW - XKMS service
KW - Secure web services
KW - HOmogeneous access to PKI services
UR - https://www.sciencedirect.com/science/article/pii/S1383762108001483
U2 - 10.1016/j.sysarc.2008.10.004
DO - 10.1016/j.sysarc.2008.10.004
M3 - Article
SN - 1383-7621
VL - 55
SP - 289
EP - 297
JO - Journal of Systems Architecture
JF - Journal of Systems Architecture
IS - 4
ER -