

WS Security of XBRL Financial Documents Encoded by SOAP



Extensible Business Reporting Language (XBRL) is developed to provide an efficient and effective means of preparing and exchanging financial information over the Internet to employees, investors, and financial analysts. XBRL financial reporting services are vulnerable in security because there are no regulations of security in XBRL Standard Specification even though the Internet is unsecure in its nature. XBRL financial reporting services need end-to-end, message-level security because XBRL financial documents are transported to an ultimate receiver via multi intermediaries. However, the current security technologies which are transport-level security and point-to-point security such as SSL/TLS, S-HTTP, and VPN, are not sufficient for securing financial information or encrypting only selected portions of an information set. This paper proposes FRWS2 security model which uses WS-Security. XBRL instance documents are first encoded by SOAP and use UsernameToken, timestamp, and nonce to authenticate. FRWS2 is sufficient and effective for Authorization, Integrity, Confidentiality, and non-Repudiation of financial reporting services.


 1. Introduction
 2. XBRL Web Service Framework
 3. FRWS2 Model Design
  3.1. Problems of Conventional Security Technology
  3.2. FRWS2 Model Design
 4. Tests and Results Analysis
 5. Conclusion


  • Il-Sun Park Dept. of General Education Namseoul University, Chung Nam, Korea
  • Seung-Jung Shin Dept. of Information and Technology, Hansei University, Gunpo-City, Korea


자료제공 : 네이버학술정보

    함께 이용한 논문

      ※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

      0개의 논문이 장바구니에 담겼습니다.