Symmetric and asymmetric encryption keys are always created in pairs.
To provide message confidentiality and message integrity, which of the following patterns
need to be applied?
The services in a service inventory have all been built with compatible security
technologies and mechanisms. Now, security policies are being introduced for the first
time. How can security policies become part of the service inventory and its services while
adhering to the application of the Standardized Service Contract principle?
Service A contains a service capability that runs a complex mathematical function, which
results in runtime failure if invalid input values are supplied by a service consumer. Security
needs to be added so that it can be verified that message content received by Service A
has not been altered since the message was sent by a legitimate service consumer. Which
pattern needs to be applied to fulfill this security requirement?
Username and X.509 token profiles can be combined so that a single message can contain
a username token that is digitally signed.
The application of the Service Composability principle dictates that services acting as
composition members be designed to establish and propagate a security context to other
composition members, while services acting as composition controllers be designed so that
they are prepared to join a security context already in progress rather than carrying out
authentication themselves.
The communication between Service A and Service B needs to be kept private. A security
specialist is planning to implement secret key cryptography in order to encrypt the
messages. Which of the following approaches addresses this requirement?
One of the primary industry standards used for the application of the Data Confidentiality
pattern is:
The Data Confidentiality pattern is applied to all of the services in a service inventory. As a
result, all message data must be encrypted.
The Data Confidentiality pattern can be applied using which of the following security
mechanisms?