The study outlines a number of security requirements that are typical of a host of Web‐based applications using a case study of a real life online Web‐based customer support system. It subsequently proposes a security solution that employs a combination of Web server security measures and cryptographic techniques. The Web server security measures include the formulation and implementation of a policy for server physical security, configuration control, users’ access control and regular Web server log checks. Login passwords, in conjunction with public key cryptographic techniques and random nonces, are used to achieve user authentication, provide a safeguard against replay attacks, and prevent non‐repudiatory usage of system by users. These techniques, together with the use of session keys, will allow data integrity and confidentiality of the customer support system to be enforced. Furthermore, a number of security guidelines have been observed in the implementation of the relevant software to ensure further safety of the system.
Article navigation
1 March 1999
This article was originally published in
Information Management & Computer Security
Case Report|
March 01 1999
Security considerations in the delivery of Web‐based applications: a case study Available to Purchase
Schubert Foo;
Schubert Foo
School of Applied Science, Nanyang Technological University, Singapore
Search for other works by this author on:
Peng Chor Leong;
Peng Chor Leong
School of Applied Science, Nanyang Technological University, Singapore
Search for other works by this author on:
Siu Cheung Hui;
Siu Cheung Hui
School of Applied Science, Nanyang Technological University, Singapore
Search for other works by this author on:
Shigong Liu
Shigong Liu
School of Applied Science, Nanyang Technological University, Singapore
Search for other works by this author on:
Publisher: Emerald Publishing
Online ISSN: 1758-5805
Print ISSN: 0968-5227
© MCB UP Limited
1999
Information Management & Computer Security (1999) 7 (1): 40–50.
Citation
Foo S, Chor Leong P, Cheung Hui S, Liu S (1999), "Security considerations in the delivery of Web‐based applications: a case study". Information Management & Computer Security, Vol. 7 No. 1 pp. 40–50, doi: https://doi.org/10.1108/09685229910255197
Download citation file:
317
Views
Suggested Reading
Security pitfalls in cryptographic design
Information Management & Computer Security (August,1998)
Removal of all unauthorized access paths in production software
Information Management & Computer Security (December,1996)
Information security in business environments
Information Management & Computer Security (March,1996)
Recall Online, laptop recovery service
Facilities (July,2001)
System Security
OCLC Micro (January,1989)
Related Chapters
Covert Aspects of Surveillance and the Ethical Issues They Raise
Ethical Issues in Covert, Security and Surveillance Research
Palliative LHS Development and API to Ensure Data Privacy
Data Ethics and Digital Privacy in Learning Health Systems for Palliative Medicine
Data Management and Analytics in Finance
Strategic Financial Management: A Managerial Approach
Recommended for you
These recommendations are informed by your reading behaviors and indicated interests.
