DocumentCode :
2258876
Title :
A Scheme for Confidentiality Protection of OpenID Authentication Mechanism
Author :
Ding, Xiangwu ; Wei, Junyin
Author_Institution :
Sch. of Comput. Sci. & Technol., Donghua Univ., Shanghai, China
fYear :
2010
fDate :
11-14 Dec. 2010
Firstpage :
310
Lastpage :
314
Abstract :
Single Sign-On (SSO) means that a user logs in once and gains access to all systems without being prompted to log in again at each of them. As a solution to SSO, OpenID can simplify users´ operation process and reduce the resource provider´s overhead. Its application is becoming popular. However, there are still some security problems in OpenID, such as some confidential resources might be downloaded by some un-granted users. How to implement the confidentiality protection in OpenID authentication mechanism as a problem of multilevel security has become a topic of concern and hence research on the multilevel security of the OpenID is significant. Based on the Single Sign-On solutions, we introduced the basic OpenID infrastructure, including its components, hierarchy and other key issues. Then we proposed a security access control scheme for OpenID based on BLP model, which can be used to solve the problem on access control of multi-level security, and we store the security label in XML document.
Keywords :
authorisation; BLP model; OpenID authentication mechanism; XML document; confidentiality protection; multilevel security; security access control; single sign-on; BLP model; Compatibility; Confidentiality; Multi-level Security; OpenID;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computational Intelligence and Security (CIS), 2010 International Conference on
Conference_Location :
Nanning
Print_ISBN :
978-1-4244-9114-8
Electronic_ISBN :
978-0-7695-4297-3
Type :
conf
DOI :
10.1109/CIS.2010.74
Filename :
5696288
Link To Document :
بازگشت