Security Enhancement of Single Sign on Mechanism for Distributed Computer Networks

نویسندگان

  • Jean Jacob
  • Mary John
چکیده

Single sign-on mechanisms allow users to sign on only once and have their identities automatically verified by each application or service they want to access afterwards. There are few practical and secure single sign-on models, even though it is of great importance to current distributed application environments. Most of current application architectures require the user to memorize and utilize a different set of credentials (eg, username/password or tokens) for each application he/she wants to access. However, this approach is inefficient and insecure with the exponential growth in the number of applications and services a user has to access both inside corporative environments and at the Internet. Single sign-on (SSO) is a new authentication mechanism that enables a legal user with a single credential to be authenticated by multiple service providers in distributed computer networks. Recently, Chang and Lee proposed a new SSO scheme and claimed its security by providing well-organized security arguments. In this paper, however, it is shown that their scheme is actually insecure as it fails to meet security during communication. This paper shows the Chang & Lee scheme and it aims to enhance security using AES encryption and decryption. Implementation is done using socket programming in Java.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Security Analysis of a Single Sign-On Mechanism For Distributed Computer Networks

Single sign on mechanisms allow users to sign on only once and have their identities automatically verified by each application or service they want to access afterwards. There are few practical and secure single sign on models, even though it is of great importance to current distributed application environments. Most of current application architectures require the user to memorize and utiliz...

متن کامل

Parallel Encryption Technique Combined With Secure Single Sign-On Mechanism for Distributed Computer Networks

These security-enhanced communication tools in a wide-area Globus test bed that we are constructing, called GUSTO (Guidance Utilizing Stable Timing Oscillator). This deployment will allow largescale application experiments and hence provide feedback on how our security mechanisms work in practical situations. It seems certain that encryption performance will be a bottleneck in many situations. ...

متن کامل

Improved ECC hybrid Encryption Scheme for Security Analysis of a Single Sign-On Mechanism in Distributed Computer Networks

Single sign-on (SSO) is definitely an authentication mechanism that enables any legal user which has a one credential being authenticated by means of many distributed computer networks. Recently Chang and Lee proposed the latest SSO structure in addition to state their safety measures by providing well-organized safety measures quarrels. In another attack, an outsider without any credential mig...

متن کامل

Single Sign on (sso) Mechanism Enhanced with Firewall Security in Multiple Service Provider

Single sign-on (SSO) is a new authentication mechanism that enables a legal user with a single credential to be authenticated by multiple service providers in a distributed computer network. Recently, Chang and Lee proposed a new SSO scheme and claimed its security by providing well-organized security arguments. To demonstrative that their scheme is actually insecure as it fails to meet credent...

متن کامل

Improving the Security of SSO in Distributed Computer Network using Digital Certificate and one Time Password (OTP)

A Single Sign–on is a new authentication mechanism for user to use multiple services provided by service provider in distributed computer network. It is a one type of application in that allows users to log in once and access to multiple independent applications without being asked to log in again at every application. It enables a legal user with a single credential to be authenticated by mult...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2013