A Supporting Multi-Mode Application Single Sign-On Scheme Based on PKI/PMI
Dai Zhan-feng
Abstract
Dai Zhan-feng
Abstract
The existing single sign-on(SSO) schemes only support client/server(C/S) mode or browser/server(B/S) mode,but can not support the application of multi-mode hybrid situation.To solve the problems,a multi-mode SSO scheme is proposed based on public key infrastructure/privilege management infrastructure(PKI/PMI).In server side,the authentication,the authorization and the auditing are implemented using middleware,security assertion markup language(SAML) is introduced to exchange authentication and authorization information;in client side,the security cookie,the shared memory and the ticket technology are adopted to realize cross-domain SSO solution.Compared with the current methods,this solution has a higher level of security,more comprehensive problem solving for multi-mode SSO and,furthermore,has the extensive applications.
OpenAlex reports 4 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
The existing single sign-on(SSO) schemes only support client/server(C/S) mode or browser/server(B/S) mode,but can not support the application of multi-mode hybrid situation.To solve the problems,a multi-mode SSO scheme is proposed based on public key infrastructure/privilege management infrastructure(PKI/PMI).In server side,the authentication,the authorization and the auditing are implemented using middleware,security assertion markup language(SAML) is introduced to exchange authentication and authorization information;in client side,the security cookie,the shared memory and the ticket technology are adopted to realize cross-domain SSO solution.Compared with the current methods,this solution has a higher level of security,more comprehensive problem solving for multi-mode SSO and,furthermore,has the extensive applications.
Key concepts: Public key infrastructure, Computer science, Single sign-on, Computer security, Authentication (law), Ticket, Middleware (distributed applications), Scheme (mathematics)