论文部分内容阅读
从安全和性能的角度,对现有的单点登录(Single Sign-on简称SSO)模型进行了深入研究和分析,指出相应的风险和需要改进的方面。设计了一个基于JAAS的安全单点登录模型。此模型以LDAP目录作为存储结构,采用JAAS架构集成了改进的Kerberos协议和LDAP目录服务,对用户进行认证和授权服务,极大地提高了系统的安全系数。
From the point of view of security and performance, the existing single sign-on (SSO) model has been deeply studied and analyzed, pointing out the corresponding risks and areas needing improvement. Design a secure single sign-on model based on JAAS. This model uses LDAP directory as the storage structure, integrates improved Kerberos protocol and LDAP directory service with JAAS architecture, and authenticates and authorizes users. This model greatly improves the security factor of the system.