How to use SOAP-DSIG and SSL for non-repudiation?



How to use SOAP-DSIG and SSL for non-repudiation?..

Answer / supra

SOAP-DSIG is used to satisfy the message authentication
requirement. It is important to note that you can use SOAP-
DSIG and SSL simultaneously by exchanging


the above HTTP messages over SSL.





Technology Satisfied security requirements
SSL Confidentiality, sender/recipient authentication, and
message authentication by MAC
SOAP-DSIG Message authentication by digital signature and
MAC


SSL provides confidentiality and sender/recipient
authentication. SSL also has functionality for adding MACs
to transmitted messages. On the other hand,


SOAP-DSIG can be used to add not only MACs but also digital
signatures to transmitted messages, but it is not
sufficient for sender/recipient authentication


because it is vulnerable to attacks such as replay attacks.
Therefore, SOAP-DSIG and SSL complement the functionalities
that the other system lacks.



Remember that in order to satisfy the requirement
of non-repudiation, at a minimum you need to simultaneously
guarantee both message authentication by using a

digital signature and sender authentication.
Therefore, using SOAP-DSIG and SSL (with client
authentication) simultaneously is the first step towards
realizing non- repudiation. Specifically, you use
SOAP-DSIG for message authentication by using a digital
signature and SSL client/server authentication for
sender/recipient authentication.

Is This Answer Correct ?    1 Yes 0 No

Post New Answer

More SOAP Interview Questions

Enlist few syntax rules applicable for soap message?

0 Answers  


Enlist the operation types response used in wsdl?

0 Answers  


Mention the advantages of soap?

0 Answers  


What are the major components that make up a web service - soap (simple object access protocol)?

0 Answers  


What does method list of soap consists of?

0 Answers  






what is the major obstacle faced by the users using SOAP?

0 Answers  


What are the information contained in the service deployment model?

0 Answers  


What are the primary security issues of web service?

0 Answers  


What hierarchy soapui follows to build a proper testing project?

0 Answers  


What are the problems faced by users by using soap?

0 Answers  


Discuss various approaches to develop soap based web service?

0 Answers  


Explain the major obstacle faced by soap users?

0 Answers  


Categories