期刊文献+

基于SAML的Web服务认证技术 被引量:3

Web services authentication technology based on SAML
下载PDF
导出
摘要 为了解决W eb服务中信息之间的安全传输,需要引入一种安全有效的用户身份认证机制。文章首先分析了W eb服务中的安全性问题及传统的W eb服务认证机制,然后引入了解决问题的办法,即安全声明标记语言(SAML),介绍了SAML的三种断言、体系结构及应用现状,给出了利用SAML实现身份认证的系统结构及认证过程,实现了客户方、身份验证方、目标站点方三方之间声明信息的安全传输,最后指出SAML认证技术的优势及其发展前景。 In order to solve the problem of the information safe transmission between Web Services, an effective authentication mechanism needs to be imported. At first the security problems and traditional authentication mechanism in Web Services are analyzed in the paper. A solution to these problems, i.e. Security Assertion Markup Language (SAML) is introduced. Three types of SAML assertions,the architecture of SAML and its applied status are described. The SAML based system configuration and the process which realizes identity authentication is presented, the safe transmission of the assertion information among the client, the identification authority and the destination is realized. Finally,the advantage of SAML based authentication technology and the development prospect are given.
出处 《电力系统通信》 2006年第5期50-53,62,共5页 Telecommunications for Electric Power System
关键词 安全声明标记语言 安全 身份认证 单点登录 Security Assertion Markup Language (SAML) security identity authentication single point log on
  • 相关文献

参考文献7

  • 1Bret Hartman,Donald J.Flinn.杨硕译.全面掌握Web服务安全性[M].北京:清华大学出版社,2004.
  • 2BenGalbraith著.Web服务安全性高级编程[M].北京:清华大学出版社,2003..
  • 3Security Assertion Markup Language(SAML)v1.1[S].OASIS,2003,8.
  • 4Vimala Ranganathan.WS-Security与Java:实用的、深入的、基于消息的安全[DB/OL].http://dev2dev.bea.com.cn/techdoc/200409250.html.2004.9.
  • 5王鹃,李俊娥.安全服务语言SAML分析[J].微型机与应用,2003,22(10):30-32. 被引量:15
  • 6郑芳,程颖,王林平.基于SAML的Web Service安全模型研究[J].计算机与数字工程,2005,33(1):81-84. 被引量:5
  • 7马晓强.WebLogic平台的Web SSO(SAML)解决方案[DB/OL].http:// dev2dev.bea.com.cn/bbs/school/guide/webser/2005070402.htm.2005.7.

二级参考文献10

  • 1[4]Hodges J.Glossary for the OASIS SAML.http://www. oasis-open.org/committees/security , 2002
  • 2[1]Baker P H.Assertions and Protocol for the OASIS Security Assertion Markup Language(SAML).http:// www.oasis-open.org/committees/security , 2002
  • 3[2]Mishra P.Bindings and Profiles for the OASIS.http://www.oasis-open.org/committees/security , 2002
  • 4[3]McLaren C.Security Considerations for the OASIS SAML.http://www.oasis-open.org/committees/security, 2002
  • 5(美)Harvey M.Deitel等著 邱仲潘等译.Java web服务 高级教程[M].机械工业出版社,2003—9..
  • 6Security Assertions Markup Language (SAML) : The Standard XML Framework for Secure Information Exchange Assertions Markup [ EB/ON ]. http://whitepapers. zdnet.co. uk/0, 39025945, 60039909p -39000542q, 00. htm.
  • 7Hallam- Baker, Phillipetal. Web Services Security SAML Token Binding [ EB/ON ]. www. oasis- open. org/committees/wss/documents/WSS- SAML - 04 - NcChgBars. pdf, OASIS Working Draft 05, December 16, 2002.
  • 8Thomas Groβ. Security Analysis of the SAML Single Sign - on Browser/Artifact Profile [ EB/ON ]. http://www.acsae.org/2003/papers/73, pdf.
  • 9Microsoft. net passport review guide[ EB/ON ]. www. microsoft.com/net/downloads/passport _ reviewguide.doc, 2002.
  • 10杨青,怀进鹏,徐枞巍.基于SAML的协同电子商务安全服务系统[J].计算机工程与应用,2002,38(14):228-232. 被引量:20

共引文献31

同被引文献8

引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部