Font Size: a A A

Research And Implement Of Centralized Identity Authentication System Based On AOP

Posted on:2009-12-27Degree:MasterType:Thesis
Country:ChinaCandidate:Y Y PanFull Text:PDF
GTID:2178360242990013Subject:Computer applications
Abstract/Summary:PDF Full Text Request
With the rapid development of electronic communications and computer technology, the size of communication network is gradually increasing, and network resources security has become an increasingly prominent issue.Telecom operators desire an efficient and secure management of their large numbers of network devices and hosts.Identity Authentication, as the first gate of protecting network information resource,takes an important position in security system.The idea of Centralized Identity Authentication, which includes the concepts of Authentication, Authorization , Audit and SSO(Single Sign On) is becoming the trend of development.Although many mature protocols, such as RADIUS, TACACS+, have been developed for network device Centralized Identity Authentication, there are devices from different vendors, supporting different protocols, which becomes a problem for centralized and efficient management in the real network environment.According to the information mentioned before, this thesis offered a platform which provides centralized Authentication, Authorization, Audit for accessing to network devices and hosts. At the same time, in order to improve the flexibility, scalability of the system, also to improve the efficiency of developing and maintenance, this thesis designed and implemented a Centralized Identity Authentication based on AOP.Firstly, this thesis introduced the current status and developing trend of identity authentication technology in telecom network, analyzed the telecom operators' real network environment, then promote the idea of implementing centralized identity authentication system based on AOP.Subsequently, discussed the protocols and key technologies, including protocols related with Centralized Indentity Authentication (RADIUS and TACACS+), and AOP technology. This part of this thesis introduced the work theory and key features of RADIUS and TACACS+, along with the history, theory and popular implements of AOP technology.After that, this thesis gave the whole design of Centralized Identity Authentication system based on AOP, including the solution of key funtion points (Authentication, Authorization, Audit and SSO) and crosscutting concerns (Exception Handling, Transaction Management and Log Collecting). Then the AOP-based implementation of the most important part of the whole system, i.e. Centralized Configuration Management sub-system, was introduced.Finally, run the system in real environment and give the related conclusion.
Keywords/Search Tags:Authentication, Authorization, Audit, SSO, AOP, Spring, Struts, Hibernate, DWR
PDF Full Text Request
Related items