TY - GEN
T1 - Securing multi-tiered web applications
AU - Mathew, George
AU - Du, Xiaojiang
PY - 2010
Y1 - 2010
N2 - Multi-tiered architecture is very common in today's enterprise web applications. It is necessary to secure channels in each tier in order to secure a multi-tiered web application. For a non-HTTP based channel, there are several options to secure the channel. These security options have been used in a number of applications. However, it is not clear which option has better performance (such as delay, security strength, etc). In our research, we conducted real-network experiments to study the performances of several popular security protocols that are being used for securing multi-tiered web applications. Our experimental results provide several useful insights and guidelines for the design and deployment of secure multi-tiered web application.
AB - Multi-tiered architecture is very common in today's enterprise web applications. It is necessary to secure channels in each tier in order to secure a multi-tiered web application. For a non-HTTP based channel, there are several options to secure the channel. These security options have been used in a number of applications. However, it is not clear which option has better performance (such as delay, security strength, etc). In our research, we conducted real-network experiments to study the performances of several popular security protocols that are being used for securing multi-tiered web applications. Our experimental results provide several useful insights and guidelines for the design and deployment of secure multi-tiered web application.
KW - Multi-tiered applications
KW - Security
KW - Web applications
UR - http://www.scopus.com/inward/record.url?scp=77957668710&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=77957668710&partnerID=8YFLogxK
U2 - 10.1109/WCINS.2010.5541830
DO - 10.1109/WCINS.2010.5541830
M3 - Conference contribution
AN - SCOPUS:77957668710
SN - 9781424458516
T3 - Proceedings - 2010 IEEE International Conference on Wireless Communications, Networking and Information Security, WCNIS 2010
SP - 505
EP - 509
BT - Proceedings - 2010 IEEE International Conference on Wireless Communications, Networking and Information Security, WCNIS 2010
T2 - 2010 IEEE International Conference on Wireless Communications, Networking and Information Security, WCNIS 2010
Y2 - 25 June 2010 through 27 June 2010
ER -