节点文献

基于Kerberos的Web单点登录研究

Research on Kerberos-based Single Sign-On for Web Applications

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 丁立新赵曦滨顾明

【Author】 Ding Lixin1 Zhao Xibin2,1 Gu Ming11(School of Software,Tsinghua University,Beijing 100084)2(School of Computer Science and Telecommunications Engineering,Jiangsu University,Zhenjiang,Jiangsu 212013)

【机构】 清华大学软件学院,江苏大学计算机科学与通信工程学院,清华大学软件学院 北京100084,镇江212013清华大学软件学院,北京100084,北京100084

【摘要】 该文针对W eb环境中应用Kerberos认证协议存在的两个问题,提出了自己的解决方案。采用基于随机数的质询/响应方式取代基于时间的A uthenticator来解决重放攻击问题,采用Secure Cookies、H ttpSession等来解决W eb环境下服务器间和服务器内的安全会话问题。在此基础上设计并实现了面向W eb应用环境的单点登录系统Ti-SSO。

【Abstract】 This paper presents a single sign-on system named Ti-SSO for web applications,which solves two main problems of applying Kerberos in the web environment.It adopts the random-based request/response method instead of the time-based authenticator to resolve the replay attack problem,and adopts secure cookies and HttpSession to keep secure sessions between and in the web servers.

【关键词】 KerberosCookies单点登录身份认证HTTP
【Key words】 KerberosCookiesSingle Sign-On(SSO)authenticationHTTP
【基金】 国家863高技术研究发展计划项目(编号:2003AA4Z3210,2003AA413031)资助
  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2005年14期
  • 【分类号】TP393.09
  • 【被引频次】45
  • 【下载频次】360
节点文献中: