Title :
SSL/TLS Session-Aware User Authentication
Author :
Oppliger, Rolf ; Hauser, Ralf ; Basin, David
fDate :
3/1/2008 12:00:00 AM
Abstract :
Overall, transport layer security with session-aware user authentication offers a promising approach to solving man-in-the-middle attack problems by leveraging the legacy authentication mechanisms and systems that the general public has become accustomed to using.
Keywords :
electronic commerce; message authentication; electronic commerce; legacy authentication; man-in-the-middle attack problem; secure sockets layer; session-aware user authentication; transport layer security; Authentication; Banking; Communication channels; Internet; Protection; Protocols; Public key; Relays; Sockets; Web server; SSL/TLS protocols; man-in-the-middle (MITM) attacks; security; user authentication;