Skip to main content

By clicking Submit, you agree to the developerWorks terms of use.

The first time you sign into developerWorks, a profile is created for you. Select information in your developerWorks profile is displayed to the public, but you may edit the information at any time. Your first name, last name (unless you choose to hide them), and display name will accompany the content that you post.

All information submitted is secure.

  • Close [x]

The first time you sign in to developerWorks, a profile is created for you, so you need to choose a display name. Your display name accompanies the content you post on developerworks.

Please choose a display name between 3-31 characters. Your display name must be unique in the developerWorks community and should not be your email address for privacy reasons.

By clicking Submit, you agree to the developerWorks terms of use.

All information submitted is secure.

  • Close [x]

Web Services Trust Language

Contributors:  IBM, BEA Systems, Microsoft, Layer 7 Technologies, Oblix, VeriSign, Actional, Computer Associates, OpenNetwork Technologies, Ping Identity, Reactivity, RSA Security

Summary:  The recently updated Web Services Trust Language (WS-Trust) uses the secure messaging mechanisms of WS-Security to define additional primitives and extensions for security token exchange to enable the issuance and dissemination of credentials within different trust domains.

Date:  04 Oct 2007 (Published 01 May 2004)
Level:  Advanced

Activity:  10759 views
Comments:  

The recently updated Web Services Trust Language (WS-Trust) uses the secure messaging mechanisms of WS-Security to define additional primitives and extensions for security token exchange to enable the issuance and dissemination of credentials within different trust domains.

The Web Services Trust Language (WS-Trust) uses the secure messaging mechanisms of WS-Security to define additional primitives and extensions for the issuance, exchange and validation of security tokens. WS-Trust also enables the issuance and dissemination of credentials within different trust domains.

In order to secure a communication between two parties, the two parties must exchange security credentials (either directly or indirectly). However, each party needs to determine if they can "trust" the asserted credentials of the other party. This specification defines extensions to WS-Security for issuing and exchanging security tokens and ways to establish and access the presence of trust relationships. Using these extensions, applications can engage in secure communication designed to work with the general Web Services framework, including WSDL service descriptions, UDDI businessServices and bindingTemplates, and SOAP messages.

Get the specification and related material

DescriptionDateAccess method
WS-Trust specification (PDF, 443 KB)February 2005HTTP download
WS-Trust XSD February 2005HTTP Web page
WS-Trust WSDL February 2005HTTP Web page

If you would like to contribute technical comments on this specification, please do so through our Feedback page.

You can still view the previous version of this specification by clicking on the following link:


Resources

  • Application Note: Using WS-Trust for Simple and Protected Negotiation Protocol [PDF] describes the usage of the WS-Trust binary negotiation framework to securely establish a common security mechanism (September 2007).

  • Application Note: Using WS-Trust for TLS Handshake [PDF] describes the usage of the WS-Trust binary negotiation framework to securely establish a recipient's identity, securely establish a shared security context between two SOAP nodes, and to optionally establish authenticity of the sender using the sender's WS-Security credentials (September 2007).

  • WS Trust 1.3 [PDF] is now an OASIS Standard. The WS-Trust specifications provided in the links above were used as inputs to the OASIS process.

  • WS-SecureConversation defines extensions that build on WS-Security to provide secure communication.

  • Web Services Addressing defines how to identify services across a network.

  • Web Services Policy Framework defines how to apply policies to control individual services behavior.

  • Web Services Security describes enhancements to SOAP to provide quality of protection through message integrity, confidentiality, and authentication.

  • WS-SecurityPolicy is a building block that is used in conjunction with other Web service and application-specific protocols to accommodate a wide variety of security models.

  • SOAP 1.1 is the basic messaging transport for all Web services while SOAP 1.2 offers enhancements to the message framework.

  • WSDL 1.1 is the current standard language for services description.

  • XML Schema, Part 1 and Part 2 are specifications that explain how schemas are organized in XML documents.

Comments



Help: Update or add to My dW interests

What's this?

This little timesaver lets you update your My developerWorks profile with just one click! The general subject of this content (AIX and UNIX, Information Management, Lotus, Rational, Tivoli, WebSphere, Java, Linux, Open source, SOA and Web services, Web development, or XML) will be added to the interests section of your profile, if it's not there already. You only need to be logged in to My developerWorks.

And what's the point of adding your interests to your profile? That's how you find other users with the same interests as yours, and see what they're reading and contributing to the community. Your interests also help us recommend relevant developerWorks content to you.

View your My developerWorks profile

Return from help

Help: Remove from My dW interests

What's this?

Removing this interest does not alter your profile, but rather removes this piece of content from a list of all content for which you've indicated interest. In a future enhancement to My developerWorks, you'll be able to see a record of that content.

View your My developerWorks profile

Return from help

static.content.url=http://www.ibm.com/developerworks/js/artrating/
SITE_ID=1
Zone=SOA and web services
ArticleID=153098
SummaryTitle=Web Services Trust Language
publish-date=10042007