中国IT动力,最新最全的IT技术教程
最新100篇 | 推荐100篇 | 专题100篇 | 排行榜 | 搜索 | 在线API文档 | 网通镜像
首 页 | 程序开发 | 操作系统 | 软件应用 | 图形图象 | 网络应用 | 精文荟萃 | 教育认证 | 硬件维护 | 未整理篇 | 站长教程
ASP JS PHP工程 ASP.NET 网站建设 UML J2EESUN .NET VC VB VFP 网络维护 数据库 DB2 SQL2000 Oracle Mysql
服务器 Win2000 Office C DreamWeaver FireWorks Flash PhotoShop 上网宝典 CorelDraw 协议大全 网络安全 微软认证
硬件维护  CPU  主板  硬盘  内存  显卡  显示器  键盘鼠标  声卡音箱  打印机  机箱电源  BIOS  网卡  C#  Java  Delphi  vs.net2005
  当前位置:> 程序开发 > 编程语言 > Java > Java与XML
DataPower and CA Strengthen Web Services Security @ JDJ
作者:未知 时间:2005-08-10 18:44 出处:Java频道 责编:chinaitpower
              摘要:DataPower and CA Strengthen Web Services Security @ JDJ
DataPower and Computer Associates have extended their existing partnership for providing unified XML Web services security and management by integrating DataPower's XS40 XML Security Gateway with CA's eTrust Identity and Access Management Suite. The solutions enable customers to set Web services access control policies utilizing eTrust, and manage Web services deployments using CA?s Web Services Distributed Management (WSDM) while using the XS40 as a central policy enforcement point for the customer's Web services.

Interoperability with eTrust further enhances DataPower's AAA framework for multimodal authentication and fine-grained authorization of SOAP requests. The technical integration was streamlined by the agility of the XS40 device; the ongoing technical relationship between the two companies; CA's new WSDM 3.1 Observer Development Kit; and CA's openness and support for key Web services standards such as SAML, XACML, and WSDM.

CA's eTrust Identity and Access Management Suite is a complete, standards-based solution for automating and integrating identity and access management across enterprise, customer and partner environments. CA's WSDM is a comprehensive solution for managing Web services across services-oriented architectures. It is the first solution to support ad-hoc XML, CORBA, EDI and other types of SOA in addition to Web services.

Instead of URL-based or connection-level access control, fine-grained authorization allows the XS40 to interrogate every individual SOAP/XML transaction and determine whether it should be allowed through based on payload contents, security policy, and identity information. For example, a purchase order that is: (i) over $500 (ii) digitally signed by the CFO's certificate (iii) targeted for vendor X (iv) sent before 5pm may be allowed through, while one immediately following it would be rejected. SAML, WS-Security, and XACML are key emerging standards for implementing this kind of fine-grained access control in an open, cross-platform environment which joints a variety of policy enforcement points (such as the DataPower XS40 Gateway) and central policy repositories.

For more information, see www.datapower.com.

关闭本页
 
首页 | 投资与合作 | 服务条款 | 隐私政策 | 收藏本站 | 设为首页 | 新用户注册 | 免责声明 | 使用帮助
Copyright ©2005-2008 chinaitpower.com All rights reserved. www.chinaitpower.com 版权所有