Title :
Single sign-on authentication model using MAS(multiagent system)
Author :
Seo, Dae-Hee ; Lee, Im-Yeong ; Chae, Soo-Young ; Kim, Choon-Soo
Author_Institution :
Div. of Inf. Technol. Eng., SoonChunHyang Univ., South Korea
Abstract :
The rapid expansion of the Internet has provided users with a diverse range of services. Most Internet users create many different IDs and passwords to subscribe to various Internet services. Thus, the SSO system has been proposed to supplement vulnerable security that may arise from inefficient management system where administrators and users manage a number of IDs. The SSO system can provide heightened efficiency and security to users and administrators. Recently commercialized SSO systems integrate a single agent with the broker authentication model. However, this hybrid authentication system cannot resolve problems such as those involving user preregistration and anonymous users. It likewise cannot provide nonrepudiation service between joining objects. Consequently, the hybrid system causes considerable security vulnerability. Since it cannot provide security service for the agent itself, the user´s private information and SSO system may have significant security vulnerability. This paper proposed an authentication model that integrates a broker authentication model, out of various authentication models of the SSO system, with a multiagent system. The proposed method adopts a secure multiagent system that supplements the security vulnerability of an agent applied to the existing hybrid authentication system. The method proposes an SSO authentication model that satisfies various security requirements not provided by existing broker authentication models and hybrid authentication systems.
Keywords :
Internet; cryptography; data integrity; message authentication; multi-agent systems; Internet; Internet service; Internet user; broker authentication model; computer security; cryptography; data integrity; hybrid authentication system; multiagent system; security requirement; single sign-on authentication system; supplement vulnerable security; system administrator; system user; user ID; user password; Authentication; Commercialization; Cryptography; Information security; Information technology; Intrusion detection; Multiagent systems; National security; Web and internet services; Web services;
Conference_Titel :
Communications, Computers and signal Processing, 2003. PACRIM. 2003 IEEE Pacific Rim Conference on
Print_ISBN :
0-7803-7978-0
DOI :
10.1109/PACRIM.2003.1235875