1. Authentication Algorithm Based on Hash-Tree for Web Single Sign-On
- Author
-
Dong Ren, Qiang Wei, Rong Hua Tao, and Ze Hui Wu
- Subjects
Challenge-Handshake Authentication Protocol ,Authentication ,Computer science ,Email authentication ,General Medicine ,Multi-factor authentication ,Login ,Computer security ,computer.software_genre ,Hash-based message authentication code ,ComputingMilieux_MANAGEMENTOFCOMPUTINGANDINFORMATIONSYSTEMS ,Generic Bootstrapping Architecture ,Authentication protocol ,Lightweight Extensible Authentication Protocol ,Single sign-on ,Challenge–response authentication ,Algorithm ,computer ,Data Authentication Algorithm - Abstract
During the authentication process of web-based single sign-on system, it is insecure that all authentication messages are forwarded by the browser, and its integrity protection is not comprehensive. This vulnerability can be exploited by attackers to bypass the authentication systems, login any account. In this work we analyze the vulnerability threat model and its root causes in detail, and propose an authentication algorithm based on Hash-tree. This algorithm can not only improve the security of the system, but the processing efficiency of the system is also acceptable according to the simulation results.
- Published
- 2014
- Full Text
- View/download PDF