SAML-Based Single Sign-On for Legacy System

被引:0
|
作者
Nie, Fengming [1 ]
Xu, Feng [1 ]
Qi, Rongzhi [1 ]
机构
[1] Hohai Univ, Coll Comp & Informat, Nanjing, Jiangsu, Peoples R China
关键词
Single Sign-On; Legacy System; SAML; Auto form filling;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Single Sign-On is used for users to solve the logging in and the passwords managing problems in different application systems. However, the traditional SSO system cannot provide an appropriate solution for legacy systems which are independent and hardly modifiable. In order to solve the problem, we present a new SSO method based on the SAML legacy System. In this paper, the structure of the new method is given, the communication protocol between users and identity provider is defined, and the security of the method is analyzed. This method inserts the identity provider between systems and users without modifying them, authenticates the users by the SAML token, and implements the SSO in different application servers systems by auto form filling.
引用
收藏
页码:470 / 473
页数:4
相关论文
共 50 条
  • [1] SAML & single sign-on
    Sivan, SS
    [J]. DR DOBBS JOURNAL, 2003, 28 (11): : 36 - +
  • [2] Security Vulnerabilities in SAML based Single Sign-On Authentication in Cloud
    Kaur, Kirandeep
    Bansal, Divya
    [J]. PROCEEDINGS OF THE 1ST INTERNATIONAL WORKSHOP ON CLOUD COMPUTING AND INFORMATION SECURITY (CCIS 2013), 2013, 52 : 294 - 298
  • [3] A Model of Unite-Authentication Single Sign-On Based on SAML underlying Web
    Wu Kaixing
    Yu Xiaolin
    [J]. ICIC 2009: SECOND INTERNATIONAL CONFERENCE ON INFORMATION AND COMPUTING SCIENCE, VOL 2, PROCEEDINGS: IMAGE ANALYSIS, INFORMATION AND SIGNAL PROCESSING, 2009, : 211 - 213
  • [4] Security analysis of the SAML Single Sign-on Browser Artifact profile
    Gross, T
    [J]. 19TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 2003, : 298 - 307
  • [5] Proposal of Delegation Using Electronic Certificates on Single Sign-On System with SAML-Protocolac
    Komura, Takaaki
    Nagai, Yasuhiro
    Hashimoto, Shoichi
    Aoyagi, Makiko
    Takahashi, Kenji
    [J]. 2009 9TH ANNUAL INTERNATIONAL SYMPOSIUM ON APPLICATIONS AND THE INTERNET, 2009, : 235 - +
  • [6] Single sign-on and the system administrator
    Grubb, MF
    Carter, R
    [J]. PROCEEDINGS OF THE TWELFTH SYSTEMS ADMINISTRATION CONFERENCE (LISA XII), 1998, : 63 - 86
  • [7] SAML Single Sign-On Protocol Development Using Combination of Speech and Speaker Recognition
    Telnoni, Patrick
    Munir, Rinaldi
    Rosmansyah, Yusep
    [J]. 2014 INTERNATIONAL CONFERENCE OF ADVANCED INFORMATICS: CONCEPT, THEORY AND APPLICATION (ICAICTA), 2014, : 299 - 304
  • [8] An implement of single sign-on system based on cookie mechanism
    Cheng Xuexian
    Cheng Chuanhui
    Zhao Pu
    [J]. Advanced Computer Technology, New Education, Proceedings, 2007, : 874 - 876
  • [9] A Security Research on Single Sign-On System Based on CAS
    Zhang Xiao-yin
    Chen Guo-sheng
    [J]. 2011 INTERNATIONAL CONFERENCE ON COMPUTER APPLICATION AND EDUCATION TECHNOLOGY (ICCAET 2011), 2011, : 209 - 212
  • [10] A credential conversion service for SAML-based scenarios
    Cánovas, O
    López, G
    Gómez-Skarmeta, AF
    [J]. PUBLIC KEY INFRASTRUCTURE, PROCEEDINGS, 2004, 3093 : 297 - 305