This document describes a general framework to enable XML-based security tokens to be used with WS-Security.
This document describes a general framework to enable XML-based security tokens to be used with WS-Security. Two profiles that use this general framework are provided: one for the Security Assertion Markup Language (SAML) and another for the eXtensible rights Markup Language (XrML). Note that this specification does not endorse any particular XML security token standard -- the description of SAML and XrML are provided to show the mechanisms by which the bindings should be performed. Additional XML token formats may be added to this specification in future revisions as needed.
| Description | Date | Access method |
|---|---|---|
| WS-Security Profile for XML-based Tokens (PDF, 77 KB) | August 2002 | HTTP download |
- Learn more about the Web Services Security model in "Security in a Web Services World: A proposed architecture and roadmap" (developerWorks, April 2002).
-
Web Services Security describes enhancements to SOAP to provide quality of protection through message integrity, confidentiality, and authentication.
-
Web services standards roadmap.