Font Size: a A A

Research And Design Of Web Single Sign-On Module Based On Kerberos Protocol

Posted on:2007-03-09Degree:MasterType:Thesis
Country:ChinaCandidate:G Q ZhangFull Text:PDF
GTID:2178360212972166Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
With the wide use of web application, traditional identity authentication based on user account and password has fallen far behind need. Fortunately, web single sign-on mechanism provides a secure, unified and concentrative method for accessing web resource on Internet.Aiming at requirements of web single sign-on in an organization, the paper studies the Kerberos authentication protocol, and designs a single sign-on module based on Kerberos authentication protocol in web environment. The module simplifies and improves the Kerberos protocol which is based on C/S structure. And in order to solve problems in using Kerberos protocol in web environment, the module introduces techniques of safe cookies, web redirection, SSL, and Challenge Handshake Authentication Protocol. In the module, it is not needed to extend client running environment, such as no plug-in supported or no user agent needed, and not relied on synchronization of global time. Therefore, the module affords safe, convenient, and reliable single sign-on services to users in web environment.The module is designed and implemented detailedly in this paper. Experiments indicate that the module is feasible, and achieves the prospective effect.
Keywords/Search Tags:Web Single Sing-On, Kerberos, Identity authentication, CHAP
PDF Full Text Request
Related items