首页> 外文期刊>International journal of communication networks and distributed systems >A study on a secure single sign-on for user authentication information privacy in distributed computing environment
【24h】

A study on a secure single sign-on for user authentication information privacy in distributed computing environment

机译:分布式计算环境中用于用户身份验证信息隐私的安全单点登录研究

获取原文
获取原文并翻译 | 示例

摘要

Difficulties exist in managing password tapping in communication and each server in the existing password authentication scheme. The concept of single sign-on (SSO), which allows one to use linked computing resources and services following only a single authentication, as in general web-based services, was introduced in the distributed computing environment. The major security vulnerabilities for SSO authentication systems are authentication and replay attack. When a user's authentication information is intercepted by an attacker, a normal session can be acquired through a simple replay attack. Accordingly, various studies are being carried out, domestically and internationally, on SSO authentication techniques. For example, some studies use various digital signature methods such as the symmetric key-based algorithm, the RSA signature algorithm, and the Schnorr signature algorithm. Accordingly, this paper proposes a token-based, and NIZK verification-based SSO authentication techniques that provide privacy for user authentication information.
机译:现有的密码认证方案中,通信中的密码窃听和每个服务器的管理存在困难。在分布式计算环境中引入了单点登录(SSO)的概念,该概念允许用户仅通过一次身份验证即可使用链接的计算资源和服务,就像在一般的基于Web的服务中一样。 SSO身份验证系统的主要安全漏洞是身份验证和重播攻击。当攻击者拦截用户的身份验证信息时,可以通过简单的重放攻击来获取正常会话。因此,国内外正在对SSO认证技术进行各种研究。例如,一些研究使用各种数字签名方法,例如基于对称密钥的算法,RSA签名算法和Schnorr签名算法。因此,本文提出了一种基于令牌和基于NIZK验证的SSO身份验证技术,可为用户身份验证信息提供保密性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号