首页> 外文会议>Advanced Communication Technology, 2009 11th International Conference on >Design of Lock-Keeper federated authentication gateway
【24h】

Design of Lock-Keeper federated authentication gateway

机译:Lock-Keeper联合身份验证网关的设计

获取原文

摘要

This paper proposes a new federated authentication platform based on the Lock-Keeper system, which is a simple implementation of the high level security concept, “Physical Separation”. An integrated federated authentication gateway is realized within the Lock-Keeper components and deployed on the border between different security domains, which enables users to use their own digital identities for accessing services provided by external collaborating partners. User identities, credentials and all kinds of security tokens required by the authentication can be handled well by being physically isolated with outside. All the direct network connections to the target security domain are disabled by the Lock-Keeper''s inherent sluice principle as well as normal electronic transactions and businesses can still be performed through the corresponding Lock-Keeper application modules. A number of known standards related to Web Service security are implemented and can be reliably enforced in the isolated environment of the proposed framework.
机译:本文提出了一种基于Lock-Keeper系统的新的联合身份验证平台,该平台是对高级别安全概念“物理隔离”的简单实现。集成的联合身份验证网关在Lock-Keeper组件中实现,并部署在不同安全域之间的边界上,这使用户可以使用自己的数字身份来访问外部协作伙伴提供的服务。通过与外界物理隔离,可以很好地处理身份验证所需的用户身份,凭据和各种安全令牌。 Lock-Keeper固有的闸门原理以及正常的电子交易均禁用了到目标安全域的所有直接网络连接,并且仍可以通过相应的Lock-Keeper应用程序模块来执行业务。实现了许多与Web Service安全性相关的已知标准,并且可以在所建议框架的隔离环境中可靠地实施这些标准。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号