Title :
Research on Multi-level Security of Shibboleth Authentication Mechanism
Author_Institution :
Sch. of Manage. Sci. & Eng., Shandong Inst. of Bus. & Technol., Yantai, China
Abstract :
Shibboleth, a growing popular solution to Single Sign-On (SSO), can simplify the user´s operation process and reduce the resource provider´s overhead. The multi-level security of Shibboleth has become a topic of concern. The basic Shibboleth infrastructure was introduced based on the current SSO solutions. Then we summarized the BLP model, which is considered the basic security axiom in our work. Based on BLP model we proposed a security access control method for Shibboleth, which can be used to solve the problem on access control of multi-level security.
Keywords :
authorisation; message authentication; BLP model; Bell&LaPadula model; SSO; Shibboleth authentication mechanism; multilevel security; security access control; single sign-on; Access control; Authentication; Browsers; Computational modeling; Mathematical model; Servers; BLP model; Confidentiality; Multi-Level Security; Shibboleth; Single Sign-On;
Conference_Titel :
Information Processing (ISIP), 2010 Third International Symposium on
Conference_Location :
Qingdao
Print_ISBN :
978-1-4244-8627-4
DOI :
10.1109/ISIP.2010.97