A SRP based handler for web service access control
Flávio de Oliveira Silva, J.A.A. Pacheco, Pedro Frosi Rosa · 2004
Security is a critical issue. The wide use of Internet applications has tremendous benefits, but a security fail can expose confidential data. Web services is a software application that can be remotely accessed over Internet using interoperable standards based on XML. At this time, there are no broadly adopted specifications for Web services security and we present an extension to the SRP (Secure Remote Password) protocol in order to apply access control to a Web service as an independent layer. This additional independent layer can be built on any available Web service platform. We have used Apache AXIS for this end.