The Processing Methods for the Partially Encrypted Data in Multi-hop Web Services
Kojiro Nakayama, Michiko Oba, Michitaka Aramoto, Norihisa Komoda · IEEJ Transactions on Electronics Information and Systems · 2007
Message layer security is necessary to ensure the end-to-end security of web services. To provide the confidentiality against the intermediaries along the message path, XML Encryption is used to partially encrypt the message. Because the data structure is changed by the partial encryption, the encrypted message is no longer valid with respect to the original schema definition. So, the problems occur regarding the processing of the schema validation and the data binding by the intermediary. In this paper, we discuss the two possible methods to solve these problems. The first method is to transform the original schema definition. The second is to transform the received message. We examined these methods by applying them to demonstration experiment of web services.