Gaps in the IBM SOA Security Reference Architecture - Part III
Is it necessary to have an advanced and mature SOA Stack in order to have centralized security policy creation and enforcement? If a SOA Stack is not at a stage where Composite Applications are proliferating, is centralized security still required?
You need centralized security policy creation and enforcementet quite early in your SOA program. The first step in your SOA initiative will be to decide what level of granularity your services should be at. It is very easy to create webservices using built-in wizards found in many IDEs as well as wizards offered in products like databases and portals.
Continue reading "Gaps in the IBM SOA Security Reference Architecture - Part III" »
