A Single Sign-On Scheme for Cross Domain Web Applications Based on SOA

被引:0
|
作者
He, Enze [1 ]
Wen, Qiaoyan [1 ]
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100876, Peoples R China
来源
INTERNET OF THINGS-BK | 2012年 / 312卷
关键词
single sign-on; SOA; cross-domain authentication;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The SSO (Single Sign On) is one of the most popular enterprise business integrated solutions. The SSO means that users could only login once to access all the mutual trusted applications. The existing SSO schemes lead into much modification to original system when adding SSO to new application, which means high coupling relation between applications. In this paper, we proposed a SSO scheme based on SOA which would make business system. authentication proxy. and authentication authority management as separate services. The proposed scheme uses enterprise service bus (ESB) to accomplish information interaction, ticket transmission and implement cross domain SSO. The login authentication of business system cloud use authentication proxy to realize different forms of authentication. The scheme is based on PKI/PMI, which achieves strong identity authority and flexible permission management. The result shows our scheme is a high secure, broad perspective solution to the problem of high coupling in SSO.
引用
收藏
页码:581 / 589
页数:9
相关论文
共 50 条
  • [1] A Single Sign-On Model for Web Services based on Password Scheme
    Kiran, Lata
    Sood, Sandeep
    Singh, Kuldip
    [J]. 2009 1ST INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE, COMMUNICATION SYSTEMS AND NETWORKS(CICSYN 2009), 2009, : 308 - 313
  • [2] A single sign-on framework for web-services-based distributed applications
    Hillenbrand, M
    Götze, J
    Müller, J
    Müller, P
    [J]. CONTEL 2005: PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS, VOLS 1 AND 2, 2005, : 273 - 279
  • [3] Single Sign-On Assistant: An Authentication Broker for Web Applications
    Zhu, Fei
    Diao, Hongjun
    [J]. THIRD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING: WKDD 2010, PROCEEDINGS, 2010, : 146 - 149
  • [4] Design on a Single Sign-On Scheme
    Lei, Wen
    Liang, Xingjian
    Zhang, Hong
    [J]. ADVANCES IN SCIENCE AND ENGINEERING, PTS 1 AND 2, 2011, 40-41 : 531 - 536
  • [5] A single sign-on protocol for distributed Web applications based on standard Internet mechanisms
    Gantner, Julian
    Geyer-Schulz, Andreas
    Thede, Anke
    [J]. E-BUSINESS AND TELECOMMUNICATION NETWORKS, 2006, : 167 - +
  • [6] Open Source in Web-Based Applications: A Case Study on Single Sign-On
    Ardagna, Claudio Agostino
    Frati, Fulvio
    Gianini, Gabriele
    [J]. INTERNATIONAL JOURNAL OF INFORMATION TECHNOLOGY AND WEB ENGINEERING, 2006, 1 (03) : 81 - 94
  • [7] Single sign-on for Java Web Start applications using MyProxy
    National Center for Supercomputing Applications, 1205 W. Clark St., Urbana, IL 61801, United States
    [J]. ACM SIGSAC, 1600, 95-101 (2006):
  • [8] SSOScan: Automated Testing of Web Applications for Single Sign-On Vulnerabilities
    Zhou, Yuchen
    Evans, David
    [J]. PROCEEDINGS OF THE 23RD USENIX SECURITY SYMPOSIUM, 2014, : 495 - 510
  • [9] GridCertLib: A Single Sign-on Solution for Grid Web Applications and Portals
    Murri, Riccardo
    Kunszt, Peter Z.
    Maffioletti, Sergio
    Tschopp, Valery
    [J]. JOURNAL OF GRID COMPUTING, 2011, 9 (04) : 441 - 453
  • [10] GridCertLib: A Single Sign-on Solution for Grid Web Applications and Portals
    Riccardo Murri
    Peter Z. Kunszt
    Sergio Maffioletti
    Valery Tschopp
    [J]. Journal of Grid Computing, 2011, 9 : 441 - 453