节点文献
基于Kerberos的Web单点登录研究
Research on Kerberos-based Single Sign-On for Web Applications
【摘要】 该文针对W eb环境中应用Kerberos认证协议存在的两个问题,提出了自己的解决方案。采用基于随机数的质询/响应方式取代基于时间的A uthenticator来解决重放攻击问题,采用Secure Cookies、H ttpSession等来解决W eb环境下服务器间和服务器内的安全会话问题。在此基础上设计并实现了面向W eb应用环境的单点登录系统Ti-SSO。
【Abstract】 This paper presents a single sign-on system named Ti-SSO for web applications,which solves two main problems of applying Kerberos in the web environment.It adopts the random-based request/response method instead of the time-based authenticator to resolve the replay attack problem,and adopts secure cookies and HttpSession to keep secure sessions between and in the web servers.
【关键词】 Kerberos;
Cookies;
单点登录;
身份认证;
HTTP;
【Key words】 Kerberos; Cookies; Single Sign-On(SSO); authentication; HTTP;
【Key words】 Kerberos; Cookies; Single Sign-On(SSO); authentication; HTTP;
【基金】 国家863高技术研究发展计划项目(编号:2003AA4Z3210,2003AA413031)资助
- 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2005年14期
- 【分类号】TP393.09
- 【被引频次】45
- 【下载频次】360