- Extending Xen* with Intel® Virtualization Technology
- ENERGY STAR* System Implementation
- Competitive Comparison: Dual-Core Intel® Xeon®: Processor-based Platforms vs. AMD Opteron*
- CMP Implementation in Systems Based on the Intel® Core™ Duo processor
- Software Company Plans for Multi-Core: How Epic Games, Adobe Systems, and IBM use Multi-Core Capability
- How to use all of CPUID for x64 platforms under Microsoft Visual Studio .NET 2005
- Flash and .NET Integration using ASP.NET
- Build and consume an ASP.NET Web service
- Multithreaded .NET Web service clients: threads and responsiveness
- High performance image processing and visualization in .NET client applications: Intel Integrated Performance Primitives (IPP)
Welcome to the Intel® Software Dispatch Subscription Program
Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System
Introduction
Building on the global adoption of Transmission Control Protocol/Internet Protocol (TCP/IP) and Hypertext Transfer Protocol (HTTP), a new class of mission critical applications, called Web Services, are emerging in enterprises and governments world wide. Web Services are based on the eXtensible Markup Language (XML). They rely on existing web protocols such as HTTP and portable XML messages (called Simple Object Access Protocol) to enable application-to-application communication for a wide range of mission critical enterprise applications.
However, security has become a main concern of enterprises looking to reap the integration benefits of XML. This is due in part to the open nature of Web Services as well as to their use of port 80 in current network infrastructures. New security technologies have surfaced at the application and network layers to address XML Web Services security requirements. Among them are network based security systems such as Firewalls, NIDS (Intrusion Detection System), and recently NIPS (Intrusion Prevention System). Enterprises are deploying these solutions to protect against XML threats, both known and unknown, and to improve network uptime. Specific application protection technologies such as Web Application Proxy Firewalls have emerged in a network appliance form factor. Increasingly, other network devices such as switches and routers are including security as an integral component as part of layered defense against attacks and vulnerabilities.
Yet these traditional network protection systems fail to provide comprehensive coverage for the new Web Services based threats as indicated in figure 1.1 Unlike the earlier Web enabled applications, which use HTTP on top of IP as the primary source of communication, Web Services use an additional application layer of XML. This additional XML application layer, with its corresponding standards such as Simple Object Access Protocol (SOAP) and Web Services Description Language (WSDL), allows application logic from proprietary applications to easily communicate in a standard fashion. Web services traffic can be used readily by business systems running critical applications, making this problem especially acute for an enterprise, regardless of the traffic volume.
Like its TCP/IP and HTTP predecessors, XML has become an important communication standard for the enterprise2. However, there are some key differences that make protecting XML Web Services flows especially challenging.
To read more, click link below to subscribe to Intel® Software Dispatch and begin receiving Intel® Software Insight, a quarterly e-zine focused on the topics software-industry leaders care about. Once you fill out the brief subscription form, you will be able to download the pdf and continue reading Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System . To read complete article, click download below.
Building on the global adoption of Transmission Control Protocol/Internet Protocol (TCP/IP) and Hypertext Transfer Protocol (HTTP), a new class of mission critical applications, called Web Services, are emerging in enterprises and governments world wide. Web Services are based on the eXtensible Markup Language (XML). They rely on existing web protocols such as HTTP and portable XML messages (called Simple Object Access Protocol) to enable application-to-application communication for a wide range of mission critical enterprise applications.
However, security has become a main concern of enterprises looking to reap the integration benefits of XML. This is due in part to the open nature of Web Services as well as to their use of port 80 in current network infrastructures. New security technologies have surfaced at the application and network layers to address XML Web Services security requirements. Among them are network based security systems such as Firewalls, NIDS (Intrusion Detection System), and recently NIPS (Intrusion Prevention System). Enterprises are deploying these solutions to protect against XML threats, both known and unknown, and to improve network uptime. Specific application protection technologies such as Web Application Proxy Firewalls have emerged in a network appliance form factor. Increasingly, other network devices such as switches and routers are including security as an integral component as part of layered defense against attacks and vulnerabilities.
Yet these traditional network protection systems fail to provide comprehensive coverage for the new Web Services based threats as indicated in figure 1.1 Unlike the earlier Web enabled applications, which use HTTP on top of IP as the primary source of communication, Web Services use an additional application layer of XML. This additional XML application layer, with its corresponding standards such as Simple Object Access Protocol (SOAP) and Web Services Description Language (WSDL), allows application logic from proprietary applications to easily communicate in a standard fashion. Web services traffic can be used readily by business systems running critical applications, making this problem especially acute for an enterprise, regardless of the traffic volume.
Like its TCP/IP and HTTP predecessors, XML has become an important communication standard for the enterprise2. However, there are some key differences that make protecting XML Web Services flows especially challenging.
- Real-time threats for XML and Web Services are more complex than those of network protocols, making XML threats much more difficult to investigate. XML can be considered executable rather than static and carries with it a unique combination of semantic and structural threats. Also, the variation in file sizes (up to hundreds of megabytes), the lack of a single Figure 2. Web Services Architecture XML Threat Exposure โstandardโ? RFC to check against, and the unique message layer XML encryption and digital signatures all add to the complexity of XML security.
To read more, click link below to subscribe to Intel® Software Dispatch and begin receiving Intel® Software Insight, a quarterly e-zine focused on the topics software-industry leaders care about. Once you fill out the brief subscription form, you will be able to download the pdf and continue reading Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System . To read complete article, click download below.
![]()
If you're interested in this topic, these articles may be helpful:
![]() | XMLSpy Home Edition 2005 from Altova Altova XMLSpy 2005 Home Edition is a free entry level X... |
![]() | Core Foundation XML parser from Apple Inc. Core Foundation provides a nonvalidating parser t... |
![]() | A guide to securing XML and Web services by Jason Bloomberg and Ronald Schmelzer, senior analysts, ZapThink LLC... |
![]() | Determine the correct XML parser type for a Java application by Padma Apparao, senior performance architect, Software Solutions Gro... |
![]()
Related Jobs:


