Font Size: a A A

Research And Application On XML Security

Posted on:2006-02-15Degree:MasterType:Thesis
Country:ChinaCandidate:Y YuFull Text:PDF
GTID:2168360152475504Subject:Applied Mathematics
Abstract/Summary:PDF Full Text Request
The extensible markup language (XML) is fit for describingsemi-structured information in E-business. When XML is widely used toencode for Web applications, it is very important to ensure the securityof the information described by XML language. Many security schemes onXML encryption, XML signature, XML access control and XML digitaltime-stamp ing are studied in this paper. The main results are as follows:1) The syntax and creating process of XML encryption and XML signatureare studied, which are the bases of XML security. The existingtime-stamping schemes are described in detail. Billing servicequestion in time-stamping schemes is studied. In other words, how theTime-Stamping Service will bill the service to its customers when theyask it for a digital time stamp. Based on blind signature, a new schemesolving the problem is presented in this article. Compared with theexisting schemes, an issuing entity of tickets is introduced to solvebilling service question. Based on RSA signature, an integrated time-stamping system is constructed in this article.2) We can certify whether a document was created or signed before a given time with a digital time stamp. Based on XML Signature and existing time stamp protocols, an XML format for time stamp linking model is proposed. Finally, we apply our XML format to linear linking scheme and give a concrete example.3) We go deep into study the XML access control specification (XACML) and propose the main constitution of XACML and the model of policy language. XML Key Management Specification is generalized and the two parts of XACML are introduced: XML Key Information Service Specification (X-KISS) and XML Key Register Service Specification (X-KRSS).
Keywords/Search Tags:XML, XML signature, XML encryption, XML access control, digital time stamp
PDF Full Text Request
Related items