期刊文献+

基于SAML的跨域单点登录的设计与实现 被引量:4

Design and Implementation of CD-SSO Based on SAML
下载PDF
导出
摘要 随着网络技术的飞速发展,基于网络平台的应用系统逐渐进入各行各业中,带来巨大收益的同时对安全性提出了更高的要求,需要保证访问其资源的用户具有合法的权限。为了适应多系统平台的发展要求,实现对登录平台的用户信息进行统一认证和管理,文中设计了一个跨域的单点登录系统(CD-SSO),它采用SAML断言作为安全信息定义的标准化格式,通过SOAP消息传递安全元素,利用WS-Security来保障消息的完整性和机密性。它在方便用户访问的同时提供了完善的安全服务机制,可以保证消息和服务的保密性、完整性和有效性。 Because of the network' s openness, systems in the Multisystem Platform (MP) call for a higher security. To solve this problem and provide the users of MP with unified and secure access to resources,it designs a cross-domain single sign-on system (CD-SSO) , with which the users do not need to authenticate identity repeatedly during a multi-service process. It uses SAML assertions as standard- ized format for security information and sends security element through SOAP message and uses WS-Security to protect message integrity and confidentiality. It can guarantee the security while helping users visit.
出处 《计算机技术与发展》 2012年第1期157-160,共4页 Computer Technology and Development
基金 天津市科技支撑计划重点项目(10ZCGYSF01300)
关键词 消息传输 联合认证 跨域单点登录 message delivery unite authentication CD-SSO
  • 相关文献

参考文献11

  • 1Lutz D J, Stiller B. Combining identity federation with payment : the SAML-based payment protocol [ C ]//2010 IEEE? IFIP Network Operations and Management Symposium-NOMS 2010. [s. l. ]: [s. n. ] ,2010:495-502.
  • 2Hughes J, Maler E. Technical Overview of the OASIS Security Assertion Markup Language (SAML) Committee Draft [ M ]. [ s. l. ].National Security Institute ,IEEE ,2003.
  • 3Ha M,Kim Joong-Ho, Oh D,et al. A study of reduced-terminal models for system-level SSO noise analysis[ C]//2010 IEEE 19th Conference on Electrical Performance of Electronic Packaging and Systems. [s. l. ]: [s. n. ] ,2011:49-52.
  • 4沈杰,朱程荣.基于Yale-CAS的单点登录的设计与实现[J].计算机技术与发展,2007,17(12):144-146. 被引量:18
  • 5Wu Kaixing, Yu Xiaolin. A model of unite-authentication single sign-on based on SAML underlying web source [ C]// 2009 2nd International Conference on Information and Computing Science. [ s. l. ] : [ s. n. ] ,2009:211-213.
  • 6陈天玉,谢冬青,杨小红,杨海涛.基于SAML与XKMS的安全单点登录认证模型的研究与实现[J].计算机应用研究,2010,27(3):1019-1021. 被引量:10
  • 7黄滨,周德俭,卫传征.基于SAML的新型单点登陆模型研究[J].计算机技术与发展,2008,18(9):219-221. 被引量:3
  • 8李幼红,梁京章.基于J2EE平台的单点登录模块的设计[J].计算机技术与发展,2006,16(5):232-233. 被引量:1
  • 9Kormann D P, Rubin A D. Risks of the Passport Single Sign on Protocol[J]. Computer Networks ,2009,33 (6) :51-58.
  • 10耿丽丽,余雪丽.基于SOAP的通信协议本体建模[J].计算机技术与发展,2010,20(8):63-66. 被引量:2

二级参考文献34

共引文献26

同被引文献14

引证文献4

二级引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部