dc.contributorLuna Encalada, Washington Gilberto
dc.contributorEspinoza Tinoco, Lady Marieliza
dc.contributorBuenaño Pesantez, Carlos Volter
dc.creatorTayupanda Tacuri, Luis Rodrigo
dc.date.accessioned2022-10-04T16:28:59Z
dc.date.accessioned2022-10-20T19:21:55Z
dc.date.available2022-10-04T16:28:59Z
dc.date.available2022-10-20T19:21:55Z
dc.date.created2022-10-04T16:28:59Z
dc.date.issued2022-09-09
dc.identifierTayupanda Tacuri, Luis Rodrigo. (2022). Desarrollo de una interfaz web, que permita mejorar la seguridad en la transferencia de estados de servicios web, basado en autenticación y autorización mediante el estándar Json Web Token. Escuela Superior Politécnica de Chimborazo. Riobamba.
dc.identifierhttp://dspace.espoch.edu.ec/handle/123456789/17304
dc.identifier.urihttps://repositorioslatinoamericanos.uchile.cl/handle/2250/4589758
dc.description.abstractThe present research work was carried out with the purpose of investigating and mitigating the vulnerabilities that occur daily in web-oriented services. Computer security is one of the fundamental pillars that must be taken into account when implementing REST-type web services, in order to maintain the integrity of the information in the state transfers or consumption of the services. For this reason, REST web services have been developed together with the Json Web Token security standard in the academic system of the Escuela Superior Politécnica de Chimborazo (ESPOCH). In the present investigation the following scenarios were carried out, in scenario 1 the REST type web services of the academic system were implemented without the use of the Json Web Token (JWT) security standard, and scenario 2 the REST type web services of the academic system were implemented with authentication and the Json Web Token security standard, for the transfer of states with each of the GET, POST, PUT, and DELETE methods. The following hypothesis, the implementation of a Web interface with the Json Web Token security standard guarantees the access and secure authorization to the web services of the academic system of the Escuela Superior Politécnica de Chimborazo, applying the observation based on the evaluated parameters, 92.5% of optimization in the level of satisfaction was obtained. 5% of optimization in the level of satisfaction, and in turn applying the Vooki pentesting tool was obtained an 80% optimization of vulnerability numbers detected in the state transfer, it is concluded that the proposed standard optimizes the level of security in web services that REST type and the proper configuration for the generation of the security token is recommended.
dc.languagespa
dc.publisherEscuela Superior Politécnica de Chimborazo
dc.relationUDCTIPEC;20T01593
dc.rightshttps://creativecommons.org/licenses/by-nc-sa/3.0/ec/
dc.rightsinfo:eu-repo/semantics/openAccess
dc.subjectSEGURIDAD INFORMÁTICA
dc.subjectJSON WEB TOKEN (JWT)
dc.subjectPROTOCOLO SEGURO DE TRANSFERENCIA DE HIPERTEXTO (HTTP)
dc.subjectSERVICIO WEB REST
dc.subjectVOOKI
dc.subjectVULNERABILIDAD
dc.titleDesarrollo de una interfaz web, que permita mejorar la seguridad en la transferencia de estados de servicios web, basado en autenticación y autorización mediante el estándar Json Web Token.
dc.typeTesis


Este ítem pertenece a la siguiente institución