Home | Business News | Browse by Publication | X | XML Journal

XML within the enterprise: benefits, opportunities ... and risk. (Security).

Publication: XML Journal
Publication Date: 01-JAN-03
Format: Online - approximately 1493 words
Delivery: Immediate Online Access

Article Excerpt
One of XML's quieter (or at least less-hyped) success stories is its use as a tool for enterprise application integration (EAI). XML markup is being used as a common data format, and XML-based Web services are achieving success as a "protocol stack" for existing applications to integrate.

Unified EAI can provide significant cost savings that reach directly to the bottom line. One of the most notable and public examples is a leading financial services company that was able to remove 10% of their back-end servers once they moved to an all-XML messaging structure.

While this can bring economic benefits and enable new business opportunities, there are a number of risks associated with XML. As XML applications increase direct access and remote procedure calls to back-end systems, mission-critical data, and information stores--first to select partners, perhaps over a VPN, and then to a general audience over the Internet--the risks of XML become more worrisome.

We can divide these risks into two general classes: the risk of malformed XML and the risk of insecure XML.

Malformed XML

XML supports a number of different encodings of the Unicode character set. An XML document can start with a Byte Order Mark (BOM) to indicate the encoding used (see Appendix F of the XML Specification, www.w3.org/TR/ REC-xml). Currently, the most common encoding is UTF-8, which isn't a BOM,...

View this article FREE - Now for a Limited Time, try Goliath Business News
Free for 3 Days!



More articles from XML Journal
Real-world use of XSL-FO: the promise of XML in printing. (XSL-FO)., January 01, 2003
Signing XML using XML signatures: A C# .NET example. (XML & .NET)., January 01, 2003
DataPower, Contivo offer complete standards-based XML integration solu..., January 01, 2003
First public release of Apache Forrest. (XML News).(Brief Article), January 01, 2003
Sarvega announces availability of Sarvega XPE 2000. (XML News).(Brief ..., January 01, 2003

Looking for additional articles?
Search our database of over 3 million articles.

Looking for more in-depth information on this industry?
Search our complete database of Industry & Market reports by text, subject, publication name or publication date.

About Goliath
Whether you're looking for sales prospects, competitive information, company analysis or best practices in managing your organization, Goliath can help you meet your business needs.

Our extensive business information databases empower business professionals with both the breadth and depth of credible, authoritative information they need to support their business goals. Whether it be strategic planning, sales prospecting, company research or defining management best practices - Goliath is your leading source for accurate information.