Protection against denial of service and input manipulation vulnerabilities in service oriented architecture

dc.contributor.authorPais, A.R.
dc.contributor.authorDeepak, D.J.
dc.contributor.authorChandavarkar, B.R.
dc.date.accessioned2026-02-06T06:40:40Z
dc.date.issued2011
dc.description.abstractOrganizations are increasingly adopting Service Oriented Architecture (SOA) to build their distributed applications. SOA is a computing paradigm, emphasizing dynamic service discovery composition and interoperability. Web services are a technology that can be used to implement SOA and are increasingly becoming the SOA implementation of choice. Because a Web service relies on some of the same underlying HTTP and Web-based architecture as common Web applications, it is susceptible to similar threats and vulnerabilities. There are many vulnerabilities in web services such as SQL injection, Denial of Service, etc. that cannot be detected by web service standards and conventional firewalls. In this paper, we present a detailed design of XML firewall that can be used to prevent different vulnerabilities by validating the input xml documents before being processed by the web services. Also the XML firewall does the function of authentication, authorization and session management. We designed a modular architecture for XML firewall where each module checks for a particular vulnerability. We have also developed methods to detect and prevent SQL injection and Denial of Service vulnerabilities. © 2011 Springer-Verlag.
dc.identifier.citationCommunications in Computer and Information Science, 2011, Vol.196 CCIS, , p. 331-343
dc.identifier.issn18650929
dc.identifier.urihttps://doi.org/10.1007/978-3-642-22540-6_32
dc.identifier.urihttps://idr.nitk.ac.in/handle/123456789/33077
dc.subjectDenial of service (DOS)
dc.subjectInput manipulation
dc.subjectService Oriented Architecture
dc.subjectSOAP
dc.subjectSQL Injection
dc.subjectWeb Service Security
dc.subjectWeb services
dc.subjectXDOS
dc.subjectXML firewall
dc.titleProtection against denial of service and input manipulation vulnerabilities in service oriented architecture

Files