Secure XML:
The New Syntax for Signatures and Encryption
Résumé
For many developers, Extensible Markup Language (XML) is
the environment of choice for creating today's
technologically sophisticated and security-sensitive Web
applications. This hands-on guide combines a strong
foundation in XML with proven, practical techniques for
enabling the secure transmission of data across the
Web.
Broad-based and comprehensive, Secure XML fully documents
every feature and issue involved with XML security. This
hands-on guide begins with a complete introduction to XML,
the book goes on to cover authentication, canonicalization,
keying, encryption, and algorithms in comprehensive detail.
The book's practical focus intertwines helpful notes,
historical background information, illuminating guidelines,
and "soapbox" or heretical comments. In all, this book
features the most comprehensive roadmap to digital security
and XML encryption available.
Topics covered in-depth include:
- XML basics—documents, namespaces, structures, and stylesheets
- Document type definitions and schemas
- XPath, XPointer, and SOAP
- Digital cryptography basics—secret and public key ciphers, asymmetric keys, digital signatures, and certificates
- XML canonicalization, signatures, and authentication
- Key management and combining encryption with signatures
- Cryptographic algorithms and non-cryptographic algorithms
Contents
Part I Introduction
- 1. XML and Security
- 2. Digital Cryptography Basics
Part II XML Basics
- 3. The Extensible Markup Language
- 4. XML Document Type Definitions
- 5. XML Schema
- 6. XPath: A Basic Building Block
- 7. URIs, xmhbase, and XPointer
- 8. SOAP
Part III Canonicalization and Authentication
- 9. XML Canonicalization: The Key to Robustness
- 10. XML Signatures and Authentication
- 11. Profiling XMLDSIG for Applications
- 12. ETSI "Advanced" XML Signatures
Part IV Keying
- 13. The Keylnfo Element
- 14. XKMS: XML Key Management
Part V Encryption
- 15. XML Encryption
- 16. Combining Encryption and Signature
- Part VI Algorithms
- 17. Overview of Algorithms
- 18. Cryptographic Algorithms
- 19. Non-cryptographic Algorithms
Appendixes
- Appendix A XML Security Implementations
- Appendix B The W3C and W3C Documents
- Appendix C The IETF and IETF Documents
- Appendix D The NIST and NIST Documents
- Appendix E The Paper and Protocol Points of View
- Appendix F SOAP Encoding Schema
L'auteur - Donald Eastlake
Donald E. Eastlake III, is the co-chairman of the joint
IETF/W3C XML Digital Signature working group, a member of
the W3C Encryption and W3C XML Key Management System
working groups, and co-author of the XML Digital Signature,
XML Encryption, and XML Exclusive Canonicalization
standards. He has been deeply involved in network and
financial transaction security for many years with IBM,
CyberCash, and Digital Equipment Corporation, and is now at
Motorola as a Distinguished Member of Technical Staff. He
was the principal author of the current IETF Domain Name
System security standard and is chairman of the e-Commerce
oriented IETF TRADE working group. He has four
patents.
Earlier efforts in his three decades of work with computer
technology include contributions to the Greenblatt Chess
Program at MIT, the first computer program to plan chess in
tournament competition and be granted a chess rating, and
project management of the Data Computer at Computer
Corporation of America, the first general purpose terabit
data management system on the Internet.
Caractéristiques techniques
PAPIER | |
Éditeur(s) | Addison Wesley |
Auteur(s) | Donald Eastlake, Kitty Niles |
Parution | 22/08/2002 |
Nb. de pages | 532 |
Format | 18,5 x 23,2 |
Couverture | Broché |
Poids | 835g |
Intérieur | Noir et Blanc |
EAN13 | 9780201756050 |
Avantages Eyrolles.com
Consultez aussi
- Les meilleures ventes en Graphisme & Photo
- Les meilleures ventes en Informatique
- Les meilleures ventes en Construction
- Les meilleures ventes en Entreprise & Droit
- Les meilleures ventes en Sciences
- Les meilleures ventes en Littérature
- Les meilleures ventes en Arts & Loisirs
- Les meilleures ventes en Vie pratique
- Les meilleures ventes en Voyage et Tourisme
- Les meilleures ventes en BD et Jeunesse
- Informatique Développement d'applications Conception et développement web
- Informatique Développement d'applications Conception et développement web Services Web
- Informatique Développement d'applications Langages HTML
- Informatique Développement d'applications Langages XML
- Informatique Développement d'applications Langages XSLT