|
Blogs
Have you ever asked yourself one of the following questions:
If yes, then this session at TechEd 07 is made for you! Here is the agenda of my 2 hours lecture:
As you can see from the agenda, the session is split into two main parts:
The Web Service provider in the scenario is hosted on SAP NetWeaver AS Java 7.0 and implements an interface that allows consumers to track the status of their orders which are uniquely identified by their id in the backend system. From a security perspective, the following threats have to be addressed:
Therefore, both parties possess a cryptographic key pair which is used to digitally sign the messages and identify each other based on public key certificates. During the live demonstration, the requests and responses will be traced using a SOAP Monitor to visualize the secured message flow. If you want to get familiar with security in Enterprise SOA, I recommend the following readings for a brief overview: For information regarding WS-Security interoperability with .NET 2.0 and the Web Services Enhancement (WSE), which is the predecessor of the Windows Communication Foundation (WCF) that is the subject matter of this session, please find the following articles on SDN:
As a mixture of lecture and demonstration, this session will give you practical, hands-on advice on secure and interoperable programming, including techniques for troubleshooting and debugging in an SOA environment. Hope to see you at TechEd! Martin Raepple
|