WS-Security

Invoking Secured Web Services with WSO2 Mashup Server

When you write a complex mashup with WSO2 Mashup Server which aggregate several external web services, you will definitely need to communicate with secured web services. It is very easy with WSO2 Mashup Server as it does this with service composition. In this article, we will discuss how WSO2 Mashup Server allows you to invoke services secured with advanced security scenarios.

Mon, 12th Dec, 2011 - 05.24 PST

Understanding XACML Policy Language - XACML (Extended Assertion Markup Language) - Part 2

We learned lot of theory about XACML policies in Part 1. In this section we will define a sample XACML policy using the concepts we learned in Part 1. In addition to that, this article describes how you can test and validate policies using “WSO2 Identity Server”.

Dealing with XML is sometimes very tedious. In the last section of this article, we will discuss how you can use XACML “simple UI ” to define XACML policies.

Sun, 4th Dec, 2011 - 03.28 PST

Understanding XACML Policy Language - XACML (Extended Assertion Markup Language) - Part 1

XACML is the widely used authorization mechanisms for web services. XACML provides fine grained authorization. In which one can define authorization based on very finer details. This finer information is stated in the policy as attributes. XACML also defines set of functions, which can be used in authorization logic evaluation. Due to detailed behavior, some believe XACML policies are esoteric and complicated. In this article I will elaborate XACML policies and will give you an idea as how XACML policy evaluation is taking place.

Wed, 16th Nov, 2011 - 19.28 PST

Fine-Grained Authorization to RESTful Services with XACML

XACML, shortened for extensible access control markup language, provides a flexible, fine-grained and scalable way of achieving policy-based access control. WSO2 carbon product platform provides a fine-grained access management solution with Policy Based Access Control (PBAC) based on XACML.

This article walks you through a sample scenario on how to build up a solution to control access to a RESTful service with XACML using WSO2 product stack.

Tue, 23rd Aug, 2011 - 12.08 PDT

Security Challenges in the Cloud

Cloud computing has gained tremendous popularity among business owners and service providers in the enterprise software markets. Among the cloud’s numerous advantages and benefits are also considerable challenges, most of which are related to security, data privacy and trust. This article investigates some of the most common security concerns of the cloud today.

Sun, 21st Aug, 2011 - 19.11 PDT

Securing Web Service Integration

Security is one of the key aspects of any software system. Authentication and Authorization are basic security requirement of any software system. In an SOA environment which most of the time is realized using web services, Username Token and HTTP basic authentication can be used to authenticate the users. Then XCMAL policy based authorization provides centralized authorization. Therefore this article describes such a SOA system written using WSO2 Enterprise Service Bus (ESB), further protecting the back end services using mutual authentication.

Tue, 5th Jul, 2011 - 21.55 PDT

Crypto Caching for Web Services hosted in WSO2 Carbon Platform

All products of WSO2 platform uses the Apache Rampart to provide security for Web Services. As a result, all features of Apache Rampart are inherited by the WSO2 products. Crypto objects are used to store properties that required to perform signature/encryption. Crypto objects have information such as as crypto provider, keystore and its password. Until now, Crypto objects were initialized on per call basis.

Thu, 30th Jun, 2011 - 11.04 PDT

WSO2 Carbon Studio: How to specify the namespace to a synapse artifact (endpoint/sequence/proxy/local entry)

Synapse changed it default namespace from "http://ws.apache.org/ns/synapse" to "http://synapse.apache.org/ns/2010/04/configuration" with its version 2.0 release. So when you are going to create a synapse artifact you need to decide which namespace you are going to use and how to specify it. This short KB tell you how to get it done in easy steps.

Thu, 21st Oct, 2010 - 22.48 PDT
Syndicate content
library project main code
Learn Cloud
Learn
Cloud

The WSO2 Application Server is a reliable application server that can host your enterprise web applications. The WSO2 Application Server as a Service is offered in StratosLive, the WSO2 Platform as a Service. This article explains how a simple web application can be developed and deployed from Carbon Studio to the WSO2 Application Server...

Latest Webinar
Different groups within an organization need to monitor different Key Performance Indicators (KPIs) - An operations team will be interested in the response times of business services and loads of each service,..
Thursday, February 9th 2012, 09.00 AM (PST)

Thursday, February 9th 2012, 10.00 AM (GMT)