웹 표준을 준수하는 인증서기반 통합 인증 프로토콜.

Autor: 윤종필, 김종현, 이광수
Zdroj: Journal of the Korea Institute of Information & Communication Engineering; Aug2016, Vol. 20 Issue 8, p1466-1477, 12p
Abstrakt: Public key infrastructure(PKI), principle technology of the certificate, is a security technology providing functions such as identification, non-repudiation, and anti-forgery of electronic documents on the Internet. Our government and financial organizations use PKI authentication using ActiveX to prevent security accident on the Internet service. However, like ActiveX, plug-in technology is vulnerable to security and inconvenience since it is only serviceable to certain browser. Therefore, the research on HTML5 authentication system has been conducted actively. Recently, domestic bank introduced PKI authentication complying with web standard for the first time. However, it still has inconvenience to register a certification on each website because of same origin policy of web storage. This paper proposes the certificate based SSO protocol that complying with web standard to provide user authentication using certificate on several sites by going around same origin policy and its security proof. [ABSTRACT FROM AUTHOR]
Databáze: Complementary Index