Welcome to the Intel® Software Dispatch Subscription Program

Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System
Defining Network XML Threat Perspectives. Traditional protection systems lack the efficiencies to provide a cost-effective and scalable XML threat-protection solution. This white paper describes the security challenges XML Web Services present to traditional network-protection solutions. It then discusses how the new XML Web Services Network IPS can help you address key XML Web Services threat and security requirements.

Building on the global adoption of Transmission Control Protocol/Internet Protocol (TCP/IP) and Hypertext Transfer Protocol (HTTP), a new class of mission critical applications, called Web Services, are emerging in enterprises and governments world wide. Web Services are based on the eXtensible Markup Language (XML). They rely on existing web protocols such as HTTP and portable XML messages (called Simple Object Access Protocol) to enable application-to-application communication for a wide range of mission critical enterprise applications.

However, security has become a main concern of enterprises looking to reap the integration benefits of XML. This is due in part to the open nature of Web Services as well as to their use of port 80 in current network infrastructures. New security technologies have surfaced at the application and network layers to address XML Web Services security requirements. Among them are network based security systems such as Firewalls, NIDS (Intrusion Detection System), and recently NIPS (Intrusion Prevention System). Enterprises are deploying these solutions to protect against XML threats, both known and unknown, and to improve network uptime. Specific application protection technologies such as Web Application Proxy Firewalls have emerged in a network appliance form factor. Increasingly, other network devices such as switches and routers are including security as an integral component as part of layered defense against attacks and vulnerabilities.

Yet these traditional network protection systems fail to provide comprehensive coverage for the new Web Services based threats as indicated in figure 1.1 Unlike the earlier Web enabled applications, which use HTTP on top of IP as the primary source of communication, Web Services use an additional application layer of XML. This additional XML application layer, with its corresponding standards such as Simple Object Access Protocol (SOAP) and Web Services Description Language (WSDL), allows application logic from proprietary applications to easily communicate in a standard fashion. Web services traffic can be used readily by business systems running critical applications, making this problem especially acute for an enterprise, regardless of the traffic volume.



To read more, click link below to subscribe to Intel® Software Dispatch and begin receiving Intel® Software Insight, a quarterly e-zine focused on the topics software-industry leaders care about. Once you subscribe, you will be able to download the pdf continue reading Defining Network XML Threat Protection: Next-Generation XML Network Intrusion Protection System. To read complete article, click download below.

If you're interested in this topic, these articles may be helpful:

XML Web services: the long-term security risks
by Andrew Yang, senior director of project management, Westbridge Tech...
Source code for XML security layers, part 1: basic plumbing technologies
by Manish Verma, principal architect, Second Foundation. First publ...
Introduction to XML
XML, the Extensible Markup Language, has gone from the latest buzzword...
Implementing mobile security
by Jim Geier, principal, Wireless-Nets Ltd. Intel Corp. Learn the t...
Broadband-To-Go: Emerging Trends in Mobility at Intel
by Geoff Koch It’s a profound understatement to say that Intel ...

Related Jobs:

Systems Administrator #1768 - DC - Washington - Management Systems Designers, Inc.
MS Server 2003, MS Exchange, Outlook, MS Active Directory, MS SQL Serv...
Network Architect #2007RSA-RAJUW113922IL33 - DC - Washington - Computer Sciences Corporation
Principal Duties and Essential Job Functions: : Provides highly techn...
Engineer-Sr. #46095656 - OH - Dublin - Checkfree Corporation
CheckFree (NASDAQ: CKFR) is a provider of financial electronic commerc...
Firewall Administrator #3091905 - CA - Seaside - Ajilon
Description : Location: Seaside, CA Duration: 6 months, possible t...
Software Engineer, Lead #6356 - CA - Sunnyvale - Yahoo! Inc.
Software Engineer, Lead Requisition ID 6356 Location Sunnyvale, CA...
Project Implementation Engineer #02-07 JB - PA - Wayne - SunGard
Reference No.: 02-07 JB Opening Date: February 22, 2007 Job Title:...
IT Systems Security Analyst #01638065531 - ID - Boise - ID StateGovt JOBS
Firewall and Virtual Private Network (VPN) Related Responsibilities ...
Sr. Embedded Software Developer #18343BR - MD - Columbia - ManTech International Corporation
The Computer Forensics and Intrusion Analysis Group (CFIA) of ManTech ...
Network Systems Engineer II #221085 - KS - Overland Park - MSI Systems Integrators
Job Purpose: This position, with general supervision and following ac...
Senior Network Engineer #PNV-MASharpe - GA - Alpharetta - SunGard
Reference No.: PNV-MASharpe Opening Date: January 17, 2007 Job Tit...