首页> 外文会议>2010 International Conference on Computational Intelligence and Security >A Scheme for Confidentiality Protection of OpenID Authentication Mechanism
【24h】

A Scheme for Confidentiality Protection of OpenID Authentication Mechanism

机译:OpenID认证机制的机密保护方案

获取原文

摘要

Single Sign-On (SSO) means that a user logs in once and gains access to all systems without being prompted to log in again at each of them. As a solution to SSO, OpenID can simplify usersȁ9; operation process and reduce the resource providerȁ9;s overhead. Its application is becoming popular. However, there are still some security problems in OpenID, such as some confidential resources might be downloaded by some un-granted users. How to implement the confidentiality protection in OpenID authentication mechanism as a problem of multilevel security has become a topic of concern and hence research on the multilevel security of the OpenID is significant. Based on the Single Sign-On solutions, we introduced the basic OpenID infrastructure, including its components, hierarchy and other key issues. Then we proposed a security access control scheme for OpenID based on BLP model, which can be used to solve the problem on access control of multi-level security, and we store the security label in XML document.
机译:单一登录(SSO)意味着用户一次登录并获得对所有系统的访问权限,而不会提示他们在每个系统上再次登录。作为SSO的解决方案,OpenID可以简化用户9;操作过程并减少资源提供者的9开销。它的应用正变得越来越流行。但是,OpenID中仍然存在一些安全问题,例如某些未经授权的用户可能会下载一些机密资源。作为多级安全性问题,如何在OpenID认证机制中实现机密性保护已成为人们关注的课题,因此对OpenID的多级安全性的研究具有重要意义。基于单点登录解决方案,我们介绍了基本的OpenID基础结构,包括其组件,层次结构和其他关键问题。然后提出了一种基于BLP模型的OpenID安全访问控制方案,可以用来解决多级安全访问控制的问题,并将安全标签存储在XML文档中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号