Skip to Content


Home > XML > Security, Trust & Privacy

Security, Trust & Privacy

Links

Verisign: XML Trust Services

http://www.verisign.com/developer/xml/

Verisign's XML Trust Services pages giving an overview of the XML security standards and their relationship to Verisign products.

Review It Rate It

XNSORG

http://www.xns.org/

The XNS Public Trust Organization (XNSORG) manages XNS (eXtensible Name Service), a new XML-based open platform for universal data exchange with global identity, privacy, and permission management.

Review It Rate It

Liberty Alliance

http://www.projectliberty.org/

The Liberty Alliance Project is an alliance formed to deliver and support a federated network identity solution for the Internet that enables single sign-on for consumers as well as business users in an open, federated way.

Review It Rate It

ISTPA

http://www.istpa.org/

The International Security, Trust, and Privacy Alliance (ISTPA) is a global alliance of companies and technology providers working together to clarify and resolve existing and evolving issues related to security, trust, and privacy.

Review It Rate It

SAML: Oasis Home Page

http://www.oasis-open.org/committees/security/

OASIS home page for XML-Based Security Services TC (SSTC), Security Assertion Markup Language (SAML)

Review It Rate It

W3C: XML Key Management Specification (XKMS)

http://www.w3.org/TR/xkms/

W3C home page for XKMS. The XML Key Management Specification (XKMS) comprises two parts -- the XML Key Information Service Specification (X-KISS) and the XML Key Registration Service Specification (X-KRSS).

Review It Rate It

P3P Public Overview

http://www.w3.org/P3P/

The Platform for Privacy Preferences Project (P3P), developed by the World Wide Web Consortium, is emerging as an industry standard providing a simple, automated way for users to gain more control over the use of personal information on Web sites they visit. At its most basic level, P3P is a standardized set of multiple-choice questions, covering all the major aspects of a Web site's privacy policies. Taken together, they present a clear snapshot of how a site handles personal information about its users. P3P-enabled Web sites make this information available in a standard, machine-readable format. P3P enabled browsers can "read" this snapshot automatically and compare it to the consumer's own set of privacy preferences. P3P enhances user control by putting privacy policies where users can find them, in a form users can understand, and, most importantly, enables users to act on what they see.

Review It Rate It

SAML: Netegrity Resource Centre

http://www.netegrity.com/products/index.cfm?leveltwo=SAML

Provides an overview of SAML and how it relates to the Netegrity product architecture

Review It Rate It

XML Signatures: IETF Home Page

http://www.ietf.org/html.charters/xmldsig-charter.html

Digital signatures provide integrity, signature assurance and non-repudiatability over Web data. Such features are especially important for documents that represent commitments such as contracts, price lists, and manifests. In view of recent Web technology developments, the proposed work will address the digital signing of documents (any Web resource addressable by a URI) using XML syntax. This capability is critical for a variety of electronic commerce applications, including payment tools.

Review It Rate It

ContentGuard

http://www.contentguard.com/

XrML - eXtensible rights Markup Language - provides a universal method for specifying rights and issuing conditions (licenses) associated with the use and protection of content.

Review It Rate It

Web Services Trust Resources

http://www.entrust.com/trustwebservices/resources.htm

Hosted by Entrust, discussion papers, explanations and links related to XML security standards.

Review It Rate It

XWSS.org

http://www.xwss.org/

9 out of 10 stars (1 vote)

XWSS.org is a forum which offers security professionals, application developers, product managers, system auditors and IT operations staff a way to exchange ideas and share information about XML Web Services and security issues. Includes discussion forums, news, articles, white papers and links.

Review It Rate It

W3C: XML Key Management Specification (XKMS)

http://www.w3.org/TR/xkms/

The XML Key Management Specification (XKMS) comprises two parts -- the XML Key Information Service Specification (X-KISS) and the XML Key Registration Service Specification (X-KRSS).

Review It Rate It

XML Trust Center

http://www.xmltrustcenter.org/

The XML Trust Center is designed to aggregate information about advances in XML and public key infrastructure technologies, and to provide a common forum for the discussion and elaboration of issues related to interoperable trust in XML. The Trust Center offers developer tools, documentation, and an interactive community in which developers can share ideas and debate emerging technologies. Sponsored by Verisign

Review It Rate It

SAML: XML Cover Pages

http://xml.coverpages.org/saml.html

The XML Cover Pages Security Assertion Markup Language (SAML) resources

Review It Rate It

W3C: XML Signature Home Page

http://www.w3.org/Signature/

The mission of this working group is to develop an XML compliant syntax used for representing the signature of Web resources and portions of protocol messages (anything referencable by a URI) and procedures for computing and verifying such signatures. This is a joint Working Group of the IETF and W3C

Review It Rate It

Platform for Internet Content Selection (PICS)

http://www.w3.org/PICS/

The PICS specification enables labels (metadata) to be associated with Internet content. It was originally designed to help parents and teachers control what children access on the Internet, but it also facilitates other uses for labels, including code signing and privacy. The PICS platform is one on which other rating services and filtering software have been built.

Review It Rate It