public marks

PUBLIC MARKS from nhoizey with tags microsoft & sécurité

2007

NTLM HTTP Authentication is insecure by design

This write-up discusses a problem inherent to the situation of a connection-oriented authentication - authorization protocol (e.g. NTLM authentication) used with a proxy server that shares TCP connections among several clients

The NTLM Authentication Protocol

This article seeks to describe NTLM at an intermediate to advanced level of detail, suitable as a reference for implementors.

Web Services Security Interoperability Using Web Services Enhancement 2.0 and Systinet Server 5.0 for Java

This article shows Interoperability based on OASIS WS-Security 1.0 between Microsoft WSE 2.0 and Systinet Server for Java 5.0. The walkthroughs in this article will take you through all you need to know to configure the two environments for securely signing and encrypting SOAP requests and responses using X509 certificates.

2005

Web Services Home: Web Services Security Language (WS-Security)

La première version de WS-Security chez Microsoft, pas compatible avec celle de IBM ni celle de OASIS !