Share This Event

Security SIG: How To Secure Web Services

REGISTRATIONPriceQuantity
$15.00
$0.00

Description

  • This presentation will focus on securing XML web services built using Microsoft's .NET Frameworks and the ASP.NET web application platform.

     

    Presenter

    Erik Olson, Program Manager - Microsoft .NET Framework 

    Click here to view the meeting presentation.

     

    Presentation Overview

    How To Secure Web Services

    Web services are an exciting new trend in distributed applications. They are built on public protocols and standards and are meant to facilitate information exchange across platforms, languages, and vendors.



    This presentation will focus on securing XML web services built using Microsoft's .NET Frameworks and the ASP.NET web application platform.



    In particular, we'll discuss:

    • Application and request identity in ASP.NET.
    • The ASP.NET runtime event infrastructure as it relates to security.
    • The SOAP interception architecture for building web services on the .NET platform.
    • Authentication strategies and best practices: What authentication forms are supported and which make sense for web services?
    • Authorization strategies and best practices: Covers using platform support for authorization and the extensible role-based security model provided by the .NET Frameworks. Examples of layered authorization checks using business logic on top of platform access checks will be shown.
    • Best practices for web application secret storage: Strategies for storing secrets (e.g. database connection strings) for web applications/services.
    • Using the crypto support in the .Net Frameworks in web applications/services.
    • Guidelines and best practices for implementing and deploying secure web services on the .NET platform.
    • Future directions from Microsoft on web service security: A look at some of the security relevant pieces of Microsoft's Global XML Architecture (GXA).



     

    About the Presenter

    Erik Olson

    Erik Olson is a program manager on Microsoft's .NET Framework team who works on security and the ASP.NET engine. Erik's work interests include scalable web systems, distributed application security, and applied cryptography.



     

    Event Logistics

    Location

    Cubberly Community Center

    4000 Middlefield Road, Room H-1

    Palo Alto, CA

    Agenda

    6:30-7:00pm registration/networking/refreshments/pizza

    7:00-9:00pm presentation and discussion

     

    Cost

    $15 for non-SDForum Members

    No charge for SDForum members and students with ID

    No registration required





    More on the Security SIG....