• DocumentCode
    2258876
  • Title

    A Scheme for Confidentiality Protection of OpenID Authentication Mechanism

  • Author

    Ding, Xiangwu ; Wei, Junyin

  • Author_Institution
    Sch. of Comput. Sci. & Technol., Donghua Univ., Shanghai, China
  • fYear
    2010
  • fDate
    11-14 Dec. 2010
  • Firstpage
    310
  • Lastpage
    314
  • Abstract
    Single Sign-On (SSO) means that a user logs in once and gains access to all systems without being prompted to log in again at each of them. As a solution to SSO, OpenID can simplify users´ operation process and reduce the resource provider´s overhead. Its application is becoming popular. However, there are still some security problems in OpenID, such as some confidential resources might be downloaded by some un-granted users. How to implement the confidentiality protection in OpenID authentication mechanism as a problem of multilevel security has become a topic of concern and hence research on the multilevel security of the OpenID is significant. Based on the Single Sign-On solutions, we introduced the basic OpenID infrastructure, including its components, hierarchy and other key issues. Then we proposed a security access control scheme for OpenID based on BLP model, which can be used to solve the problem on access control of multi-level security, and we store the security label in XML document.
  • Keywords
    authorisation; BLP model; OpenID authentication mechanism; XML document; confidentiality protection; multilevel security; security access control; single sign-on; BLP model; Compatibility; Confidentiality; Multi-level Security; OpenID;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Security (CIS), 2010 International Conference on
  • Conference_Location
    Nanning
  • Print_ISBN
    978-1-4244-9114-8
  • Electronic_ISBN
    978-0-7695-4297-3
  • Type

    conf

  • DOI
    10.1109/CIS.2010.74
  • Filename
    5696288