Cross-Domain Authentication Model in SOA based on Enterprise Service Bus
Zheng Xiao-rong · 2010
To solve the security issues of cross-domain authentication in SOA, the paper proposed a Cross-Domain Authentication Model in SOA based on Enterprise Service Bus. The CDAM-ESB took use of Enterprise Service Bus as a third-party certification center by Using WS-Federation to build indirect trust relations between service requesters and service providers, which meant that the services distributed in different security domains could use their own IP/STS to establish a trust relation with IP/STS of ESB according to WS-Trust by way of security tokens. At the end of the paper, the policy management, trust management and authentication of Certification Center in the ESB which was the core of CDAM-ESB were elaborated in detail to explain that CDAM-ESB could couple with SOA closely to reduce the complexity of cross-domain authentication.