Design of a scalable single sign-on for web service

被引:0
|
作者
Huang, He [1 ]
Liu, Qingwen
Zhao, Liang
Liu, Fengchen
机构
[1] Beijing Univ Aeronaut & Astronaut, Coll Software, Beijing 100013, Peoples R China
[2] Beijing Univ Sci & Technol, Dept Comp Sci, Beijing 100013, Peoples R China
关键词
web service; single sign-on; SAML assertion; identity federation;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Web service is a kind of SOA (Service Oriented Architecture) and single sign-on is one of the key technologies in web service. Single sign-on enables a use to log in only once and get all the services it wants in a distributed system. This paper proposes a scalable single sign-on scheme, which can support identity federation and work in a standard way. The web service system is divided into multiple security domains where the SAML assertion is used as security token in the system for authentication and authorization. Identity federation based on SAML assertion and Web Service Security Trust enables web service clients both inside and outside their security domains to access the services in a simple and secure way.
引用
下载
收藏
页码:384 / 388
页数:5
相关论文
共 50 条
  • [41] Single sign-on and the system administrator
    Grubb, MF
    Carter, R
    PROCEEDINGS OF THE TWELFTH SYSTEMS ADMINISTRATION CONFERENCE (LISA XII), 1998, : 63 - 86
  • [42] A Survey on Single Sign-On Techniques
    Radha, V.
    Reddy, D. Hitha
    2ND INTERNATIONAL CONFERENCE ON COMPUTER, COMMUNICATION, CONTROL AND INFORMATION TECHNOLOGY (C3IT-2012), 2012, 4 : 134 - 139
  • [43] Grid single sign-on in CCLRC
    Jensen, Jens
    Spence, David
    Viljoen, Matthew
    PROCEEDINGS OF THE UK E-SCIENCE ALL HANDS MEETING 2006, 2006, : 273 - +
  • [44] Investigating Users' Perspectives of Web Single Sign-On: Conceptual Gaps and Acceptance Model
    Sun, San-Tsai
    Pospisil, Eric
    Muslukhov, Ildar
    Dindar, Nuray
    Hawkey, Kirstie
    Beznosov, Konstantin
    ACM TRANSACTIONS ON INTERNET TECHNOLOGY, 2013, 13 (01)
  • [45] A single sign-on protocol for distributed Web applications based on standard Internet mechanisms
    Gantner, Julian
    Geyer-Schulz, Andreas
    Thede, Anke
    E-BUSINESS AND TELECOMMUNICATION NETWORKS, 2006, : 167 - +
  • [46] Enabling Single Sign-On Authentication for Web Repositories using Domain Directory Services
    Kurian, Jayan C.
    Goh, Dion Hoe-Lian
    Htoo, Tint Hla Hla
    Wheeler, Lynn
    Hazel, Loh
    INTERNATIONAL SYMPOSIUM OF INFORMATION TECHNOLOGY 2008, VOLS 1-4, PROCEEDINGS: COGNITIVE INFORMATICS: BRIDGING NATURAL AND ARTIFICIAL KNOWLEDGE, 2008, : 48 - +
  • [47] MoSCAN: A Model-Based Vulnerability Scanner for Web Single Sign-On Services
    Wei, Hanlin
    Hassanshahi, Behnaz
    Bai, Guangdong
    Krishnan, Padmanabhan
    Vorobyov, Kostyantyn
    ISSTA '21: PROCEEDINGS OF THE 30TH ACM SIGSOFT INTERNATIONAL SYMPOSIUM ON SOFTWARE TESTING AND ANALYSIS, 2021, : 678 - 681
  • [48] Open Source in Web-Based Applications: A Case Study on Single Sign-On
    Ardagna, Claudio Agostino
    Frati, Fulvio
    Gianini, Gabriele
    INTERNATIONAL JOURNAL OF INFORMATION TECHNOLOGY AND WEB ENGINEERING, 2006, 1 (03) : 81 - 94
  • [49] A Model of Unite-Authentication Single Sign-On Based on SAML underlying Web
    Wu Kaixing
    Yu Xiaolin
    ICIC 2009: SECOND INTERNATIONAL CONFERENCE ON INFORMATION AND COMPUTING SCIENCE, VOL 2, PROCEEDINGS: IMAGE ANALYSIS, INFORMATION AND SIGNAL PROCESSING, 2009, : 211 - 213
  • [50] The Design Of High Available Single Sign-on Server Of Nginx-Based
    Shao, Qifeng
    Yang, Tianchi
    Hou, Wei
    INDUSTRIAL INSTRUMENTATION AND CONTROL SYSTEMS, PTS 1-4, 2013, 241-244 : 2411 - 2416