节点文献

基于SAML与XKMS的安全单点登录认证模型的研究与实现

Research and implementation of security SSO authentication model based on SAML and XKMS

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 陈天玉谢冬青杨小红杨海涛

【Author】 CHEN Tian-yu1,XIE Dong-qing1,2,YANG Xiao-hong1,YANG Hai-tao1(1.College of Software,Hunan University,Changsha 410082,China;2.School of Computer Science & Educational Software,Guangzhou University,Guangzhou 510006,China)

【机构】 湖南大学软件学院广州大学计算机科学与教育软件学院

【摘要】 针对Browser/Artifact方式进行单点登录时存在的安全性问题,设计出一种基于SAML与XKMS的安全单点登录认证模型。它采用一种结合传统PKI与XML密钥管理规范(XKMS)的统一密钥管理子层来提供密钥管理,使用XML数字签名和加密技术来保证SAML声明传递的安全性。通过在J2EE平台上实现,证明了该模型可以很好地解决Browser/Artifact方式传递SAML声明存在的安全性问题。

【Abstract】 For the security problem existing in the process of SSO which used Browser/Artifact mode,this paper designed a security SSO authentication model based on SAML and XKMS.It used a key management layer which combined traditional PKI with XKMS to provide the key management service,at the same time,this model applied XML digital signature technology and XML encryption technology to ensure the security of sending SAML statement message.Through the implementation on the platform of J2EE,the result proves that the security SSO model can be a very good solution to the security problem in the deli-very of SAML statement by Browser/Artifact mode.

【基金】 国家自然科学基金资助项目(60673156);国家教育部科学技术研究重点基金资助项目(105129)
  • 【文献出处】 计算机应用研究 ,Application Research of Computers , 编辑部邮箱 ,2010年03期
  • 【分类号】TP393.08
  • 【被引频次】25
  • 【下载频次】202
节点文献中: 

本文链接的文献网络图示:

本文的引文网络