• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2012, Vol. 34 ›› Issue (2): 41-44.

• 论文 • Previous Articles     Next Articles

Design and Implementation of a TicketBased  Single SignOn Protocol

LI Fan1,2,WANG Liuyi3   

  1. (1.School of Information Engineering,Wuhan University of Technology,Wuhan 4300702.School of Computer Science,Chengdu University of Information Technology,Chengdu 610225;3.R&C Center of Aostar Information Technologies Co.,Ltd.,Chengdu 610016,China)
  • Received:2011-07-22 Revised:2011-10-30 Online:2012-02-25 Published:2012-02-25

Abstract:

With the rapid development of the enterprise informatization construction, the enterprise information applications are built in increasing numbers. It is an inevitable trend to establish a unified identity management system to provide single signon among the enterprise applications. The user is able to access different enterprise applications securely and smoothly by providing his or her identity information only once in enterprise identity authentication center. In this paper, a ticketbased single signon protocol and the design of a protocol reference implementation are proposed. The new protocol improves the limitation of the classical ticketbased single signon protocol such as Kerberos. It is easier and safer to implement single signon for enterprise applications with a lot of legacy accounts.

Key words: single signon;identity authentication;access management