Font Size: a A A

Research And Implementation Of Single Sign-On System In Information Portal

Posted on:2007-08-27Degree:MasterType:Thesis
Country:ChinaCandidate:L SunFull Text:PDF
GTID:2178360182478017Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
With the development of the network and information portal technology, various applications and services in portal are are popular day by day. If users log in a lot of systems in portal, they not only face many login interfaces, but also remember different usernames and passwords. Each system has their own account management and distrusts each other. System administrator has to maintain the information of users, and guarantee the consistency of all datas. It brings great difficulty to each systematic merger. As the increment of logins, the possibility of making mistakes, destroying illegally, being intercepted, being captured will increase and the security of systems will be reduced correspondingly.Considering the efficiency and security factors, an efficient and safe network authentication system, the SSO technology, is urgently needed. The SSO is a system that once the user successfully passes the identify authentication process, he can get access to the authorized resources without other identity authentication process.This paper deals with identity authentication technology, directory service, Web Services and SOAP protocol in SSO. Through the analysis of the existing SSO principle, a model of SSO which is based on Cookie is put forward and realized, this model solved the problem that the Cookies cannot support across-domain share, furthermore, the security is assured using Cookies and Cookie Server to keep users' credential information, using Kerberos protocol to realize security authentication and apply a request/reponse plan which is based on random number to keep from the replay attack, using directory technology to realize the uniform management of the network users and network applications, using SOAP to encapsulate authentication service to a Web service to realize the transfer of authentication information between the heterogeneous systems and centralize the management of usrs' information, using Java to deal with Cookie, realize directory service interface and identity authentication interface.
Keywords/Search Tags:SSO, LDAP, Web Services, Cookies, identify authentication
PDF Full Text Request
Related items