本文已被:浏览 3118次 下载 4702次
Received:May 03, 2010 Revised:June 21, 2010
Received:May 03, 2010 Revised:June 21, 2010
中文摘要: 深入分析了目前国内外流行的单点登录模型,探讨了对称密钥下Kerberos 协议的局限性,然后结合公钥技术,对Kerberos 认证协议进行改进。设计并实现了基于代理的单点登录子系统,使用二次票据方法保证了单点登录系统的安全性。该方案在可实施性、运行可靠性以及管理等方面都有较好的性能。
中文关键词: 单点登录 Kerberos 协议 身份认证 代理 票据
Abstract:This paper researches existing popular Single Sign-On model and Kerberos authentication protocol, and discusses the limits of Kerberos protocol in symmetric key technology, improves Kerberos protocol with the public key technology. Then it designs and realizes the agent-based single sign-on system, and by the second ticket method, ensures the safety of the SSO system. Meanwhile, the program has better performance in implementation, operating and management.
文章编号: 中图分类号: 文献标志码:
基金项目:
引用文本:
陈丽,于东海.Kerberos 协议在单点登录系统中的改进及应用.计算机系统应用,2011,20(1):36-40
CHEN Li,YU Dong-Hai.Improvement and Application of Kerberos Protocol to Single Sign-On System.COMPUTER SYSTEMS APPLICATIONS,2011,20(1):36-40
陈丽,于东海.Kerberos 协议在单点登录系统中的改进及应用.计算机系统应用,2011,20(1):36-40
CHEN Li,YU Dong-Hai.Improvement and Application of Kerberos Protocol to Single Sign-On System.COMPUTER SYSTEMS APPLICATIONS,2011,20(1):36-40

