SOA Related Exams
S90.18 Exam
Service A is owned by Organization A. Service A sends a message containing confidential data to Service B, which is owned by Organization B. Service B sends the message to Service C, which is also owned by Organization B. Organization A trusts Organization B, which means there is no requirement to protect messages from intermediaries and after a message is received by Service B (and as long as the message remains within the boundary of Organization B), there is no requirement to keep the message data confidential. Which of the following approaches will fulfill these security requirements with the least amount of performance degradation?
The use of XML-Encryption supports the application of the Service Abstraction principle because the actual message remains hidden from the attacker.
When using a single sign-on mechanism, security contexts are____________.