【24h】

Logout in Single Sign-on Systems

机译:在单点登录系统中注销

获取原文

摘要

Single sign-on (SSO) helps users to cope with many online services that require authentication. Systems such as OpenID and SAML-based Shibboleth offer federated identity management where an Identity Provider authenticates the user on behalf of the services. Much research concentrates on making authentication stronger, preventing phishing and making the systems more user friendly but less attention has been paid to the termination of the authentication sessions i.e. logout. It is, however, equally important that the sessions do not remain open when, for example, a student using shared computers in a university library leaves the workstation. In this article, we describe challenges related to logout in federated identity management on web based services and give guidelines for implementing reliable logout from services that use single sign-on.
机译:单点登录(SSO)有助于用户应对许多需要身份验证的在线服务。诸如OpenID和基于SAML的Shibboleth的系统提供联合身份管理,其中身份提供者代表服务验证用户。众多研究专注于使认证更强,防止网络钓鱼和使系统更加用户友好但不太关注已终止身份验证会话即可注销。然而,当例如使用大学图书馆中使用共享计算机的学生离开工作站时,会话不会保持打开的情况同样重要的是。在本文中,我们描述了在基于Web服务的联合身份管理中的注销相关的挑战,并为从使用单点登录的服务实现可靠的注销指南。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号