Welcome to the Intel® Software Dispatch Subscription Program

Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System
Defining Network XML Threat Perspectives. Traditional protection systems lack the efficiencies to provide a cost-effective and scalable XML threat-protection solution. This white paper describes the security challenges XML Web Services present to traditional network-protection solutions. It then discusses how the new XML Web Services Network IPS can help you address key XML Web Services threat and security requirements.

Building on the global adoption of Transmission Control Protocol/Internet Protocol (TCP/IP) and Hypertext Transfer Protocol (HTTP), a new class of mission critical applications, called Web Services, are emerging in enterprises and governments world wide. Web Services are based on the eXtensible Markup Language (XML). They rely on existing web protocols such as HTTP and portable XML messages (called Simple Object Access Protocol) to enable application-to-application communication for a wide range of mission critical enterprise applications.

However, security has become a main concern of enterprises looking to reap the integration benefits of XML. This is due in part to the open nature of Web Services as well as to their use of port 80 in current network infrastructures. New security technologies have surfaced at the application and network layers to address XML Web Services security requirements. Among them are network based security systems such as Firewalls, NIDS (Intrusion Detection System), and recently NIPS (Intrusion Prevention System). Enterprises are deploying these solutions to protect against XML threats, both known and unknown, and to improve network uptime. Specific application protection technologies such as Web Application Proxy Firewalls have emerged in a network appliance form factor. Increasingly, other network devices such as switches and routers are including security as an integral component as part of layered defense against attacks and vulnerabilities.

Yet these traditional network protection systems fail to provide comprehensive coverage for the new Web Services based threats as indicated in figure 1.1 Unlike the earlier Web enabled applications, which use HTTP on top of IP as the primary source of communication, Web Services use an additional application layer of XML. This additional XML application layer, with its corresponding standards such as Simple Object Access Protocol (SOAP) and Web Services Description Language (WSDL), allows application logic from proprietary applications to easily communicate in a standard fashion. Web services traffic can be used readily by business systems running critical applications, making this problem especially acute for an enterprise, regardless of the traffic volume.



To read more, click link below to subscribe to Intel® Software Dispatch and begin receiving Intel® Software Insight, a quarterly e-zine focused on the topics software-industry leaders care about. Once you subscribe, you will be able to download the pdf continue reading Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System. To read complete article, click download below.

If you're interested in this topic, these articles may be helpful:

XML Web services: the long-term security risks
by Andrew Yang, senior director of project management, Westbridge Tech...
Implementing mobile security
by Jim Geier, principal, Wireless-Nets Ltd. Intel Corp. Learn the t...
Source code for XML security layers, part 1: basic plumbing technologies
by Manish Verma, principal architect, Second Foundation. First publ...
Broadband-To-Go: Emerging Trends in Mobility at Intel
by Geoff Koch It’s a profound understatement to say that Intel ...
Introduction to XML
XML, the Extensible Markup Language, has gone from the latest buzzword...

Related Jobs:

Networking Engineer #369393 - UT - Salt Lake City - MSI Systems Integrators
Job Duties: 1. Leads base Networking presales activities and assists ...
IT Security Architect #MT-1894 - VA - Rosslyn - Management Systems Designers, Inc.
Successful candidates will possess a mix of the following knowledge, s...
Software Engineer, Lead #6355 - CA - Sunnyvale - Yahoo! Inc.
Software Engineer, Lead Requisition ID 6355 Location Sunnyvale, CA...
Systems Administrator #1768 - DC - Washington - Management Systems Designers, Inc.
MS Server 2003, MS Exchange, Outlook, MS Active Directory, MS SQL Serv...
IT Systems Security Analyst #01638065531 - ID - Boise - ID StateGovt JOBS
Firewall and Virtual Private Network (VPN) Related Responsibilities ...
Applications Prog/Analyst III #153628 - KS - Shawnee - KS StateGovt JOBS
K0211943 Required: Successful completion of 24 hours in computer sc...
Software Engineer, Lead #6356 - CA - Sunnyvale - Yahoo! Inc.
Software Engineer, Lead Requisition ID 6356 Location Sunnyvale, CA...
Sr. Embedded Software Developer #18343BR - MD - Columbia - ManTech International Corporation
The Computer Forensics and Intrusion Analysis Group (CFIA) of ManTech ...
Network Architect #2007RSA-RAJUW113922IL33 - DC - Washington - Computer Sciences Corporation
Principal Duties and Essential Job Functions: : Provides highly techn...
Security Operations Center (SOC) Lead Analyst 0241 #Q08354 - HI - Kailua - BAE Systems
* Description: The SOC Lead provides advanced infrastructu...