节点文献

基于应用服务器的企业级应用安全体系的研究

【作者】 刘志强

【导师】 蒋泽军;

【作者基本信息】 西北工业大学 , 计算机应用技术, 2004, 硕士

【摘要】 身份认证是安全系统中的第一道关卡,当用户访问一个系统的时候,首先要向系统表明自己的身份,然后才能进行下一步的访问和控制。单点登录是将多个不同的应用的身份认证和登录系统进行集中管理的系统。对于目前网络应用不断增多的现代企业、政府等单位中,实现多个应用的单点登录是非常有现实意义的,这将大大的方便用户的使用,并在一定的程度上提高系统的安全级别。 本文在分析了国内、外各种单点登录系统地实现模型及其优缺点的基础上,讲述了一套适用于目前多种企业应用的单点登录系统模型。该模型采用了代理人和经纪人相结合的模式,吸取了两种模型的优势。该模型可以支持多种身份认证的方式,并对身份认证的方式采用分级的管理。该系统还有良好的可部署性、管理和安全性。 本文提到的单点登录系统的课题来源于与企业的合作项目。

【Abstract】 Authentication is the first strategic and important step for logging in the security system. Firstly, User should present its identity when he accesses a security system (e.g. mail, database and so on), then he can continue to do next step of visiting and controlling. Single sign-on is the system, which centralized, manages a great deal of different ID authentications and sign-on systems. It is meaningful to use non-Single sign-on method, especially to modern corporations and governments, which is easy for user to use and control, and can improve the system security level in some degree.On the basis of analysis of advantages and shortcomings of applied Single sign-on system models that are popular in home and foreign countries, this article introduces a kind of Single sing-on system model that is more appropriate to different kids of cooperation. This model is well integrated with the advantages of the model of agents and the model of brokers. Also this model can support different kinds of technologies of authentications, and applies the management method of authentications system by classification.The Single sign-on topic, mentioned in this article, comes from the cooperation with enterprises.

【关键词】 身份认证单点登录SSOSSLSPI
【Key words】 AuthenticationSingle sing-onSSLSPI
  • 【分类号】TP393.08
  • 【被引频次】8
  • 【下载频次】138
节点文献中: