[go: up one dir, main page]

Gesellschaft für Informatik e.V.

Lecture Notes in Informatics


4. DFN-Forum Kommunikationstechnologien P-187, 91-100 (2011).

Gesellschaft für Informatik, Bonn
2011


Copyright © Gesellschaft für Informatik, Bonn

Contents

Polybius: secure web single-sign-on for legacy applications

Pascal Gienger and Marcel Waldvogel

Abstract


Web-based interfaces to applications in all domains of university life are surging. Given the diverse demands in and the histories of universities, combined with the rapid IT industry developments, all attempts at a sole all-encompassing platform for single-sign-on (SSO) will remain futile. In this paper, we present an architecture for a meta-SSO, which is able to seamlessly integrate with a wide variety of existing local sign-in and SSO mechanisms. It is therefore an excellent candidate for a university-wide all-purpose SSO system. Among the highlights are: No passwords are ever stored on disk, neither in the browser nor in the gateway; its basics have been implemented in a simple, yet versatile Apache module; and it can help reducing the impact of security problems anywhere in the system. It could even form the basis for secure inter-university collaborations and mutual outsourcing.


Full Text: PDF

Gesellschaft für Informatik, Bonn
ISBN 978-3-88579-281-9


Last changed 04.10.2013 18:36:00