• Title/Summary/Keyword: SSO

Search Result 140, Processing Time 0.031 seconds

A Study on Authentication Management Technique Used of SSO (Single Sign-On을 이용한 인증 관리 기법에 관한 연구)

  • Choi, Jin-Tak
    • Journal of the Korean Society for Industrial and Applied Mathematics
    • /
    • v.10 no.1
    • /
    • pp.61-69
    • /
    • 2006
  • SSO (Single Sign On), which allows users to have an access to a various systems through a single authentication, has been receiving much attention from many enterprises due to the user convience through a single authentication and the recent security features based on PKI. An emerging authentication management system called EAM has further enhanced the efficiency and stability of the enterprise IT infrastructrure systems. In this article, the basic concept and characteristics of the existing SSO systems are analyzed and a new SSO model, based on PKI where authentication load is balanced via multiple circulators, is presented.

  • PDF

App-based 2-channel User Authentication Scheme for Multiple Application Systems (다중 응용시스템용 앱기반 2-채널 사용자 인증방안)

  • Song, Tae-Gi;Jo, In-June
    • The Journal of the Korea Contents Association
    • /
    • v.18 no.9
    • /
    • pp.141-148
    • /
    • 2018
  • Currently, the user authentication technology used by users to access multiple applications within an organization is being applied with ID/PW-based SSO technology. These user authentication methods have the fundamental disadvantages of ID/PW and SSO. This means that security vulnerabilities in ID/PW can lead to periodic changes in PWs and limits on the number of incorrect PW inputs, and SSO adds high cost of the SSO server, which centrally stores the authentication information, etc. There is also a fundamental vulnerability that allows others to freely use other people's applications when they leave the portal application screen with SSO. In this paper, we proposed an app-based 2-channel authentication scheme to fundamentally eliminate problems with existing ID/PW-based SSO user authentication technologies. To this end, it distributed centralized user authentication information that is stored on SSO server to each individual's smartphone. In addition, when users access a particular application, they are required to be authenticated through their own smartphone apps.

Development of the Seasoning Oil for Replacing Red Pepper Seed Oil : Manufacturing of Red Pepper Seasoning Oil (고추씨기름 대체 향미유 개발에 관한 연구 : 제2보. 고추향미유의 제조)

  • 구본순;김덕숙
    • Food Science and Preservation
    • /
    • v.11 no.2
    • /
    • pp.142-147
    • /
    • 2004
  • To develop the red pepper seasoning oil(RPSO), corn oil was used as the base oil. For generating hot taste and color, oleoresin capsicum and oleoresin paprika were mixed to base oil (SSO1). Then, for generating black red color, natural black pigment that is extracted from gardenia and kaoliang was added SSO1 to prepare SSO2. To magnify the hot taste, extract of red pepper, phosphoric salt and emulsifier (monogly 20) were. then added to SSO2 to prepare SSO3. This SSO3 was very similar to real red pepper seed oil as a color and taste, but its hot flavor was not enough. To resolve this problem, we mixed about 5% of another oil(SSO4), which was mingled and roasted red pepper powder with corn oil, to SSO3. In terms of above experiment, RPSO was obtained.

Research for Implementation of Licensed Web SSO (공인 Web SSO 도입 방안에 대한 연구)

  • 최대선;김태성;진승현
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2003.04a
    • /
    • pp.452-454
    • /
    • 2003
  • 본 논문은 국내 인터넷 환경에 Web SSO를 도입하는 방안에 대한 연구를 담고 있다. ID관리의 문제점으로 인해 Web SSO가 필요한 실정을 분석하고 현존하는 Web SSO 기술 검토하여 이중 Liberty방식을 채택한다. Liberty 방식의 Web SSO 구축 방안을 제안한 후 실제 사용되기 위해서 해결해야 할 기술적 검토사항을 분석하고 이에 대한 해결 방안으로 공인 IDP 체계를 제시한다. 실제 공인 Web SSO 구축을 위해 필요한 시스템 구성도 제안한다.

  • PDF

A SAML based SSO method in RIA environment (RIA환경에서 SAML을 이용한 SSO에 관한 연구)

  • Cho, Dong-Il;Rhew, Sung-Yul
    • The KIPS Transactions:PartD
    • /
    • v.16D no.5
    • /
    • pp.809-816
    • /
    • 2009
  • Current SSO has focused on authenticated integration between inter systems in a domain.On the contrary, becasuse SSO using SAML can support integration between different domains, once it is used in RIA, we can expect highly synergic effect. However, because researches on SSO using SAML are mainly those on authenticated information exchange between servers, a special research is needed in order to be applied in RIA environment, which conducts numerous managements in client. This study proposes architecture and explain a practice structure in order to apply SAML to RIA. Also, this study has embodied the proposed architecture and applied it on DWR, which is used mostly as Data communication framework of RIA, and verified the useablity of this architecture.

SSO based Security Management in Cloud Computing Environment

  • Jing, Si Da;Jung, Young-Min;Chung, Mok-Dong
    • Korea Information Processing Society Review
    • /
    • v.17 no.2
    • /
    • pp.18-29
    • /
    • 2010
  • In this paper, we surveyed SSO based security management including the knowledge domain of the area of cloud and its relevant components. Cloud computing refers to the delivery of software and other technology services over the Internet by a service provider. SSO refers to the ability to log on to a single security system once, rather than logging on separately to multiple security systems. Existing SSO solutions in cloud computing environment suggest several methods. SSO-based security Issues illustrate these key items in cloud computing environment such as risks and security vulnerabilities of SSO. SSO supports for multiple and different domains in cloud computing environment.

  • PDF

A Study on Secure Lightweight Single Sign-On Mechanism Against Credential Replay Attack (인증정보 재전송 공격에 안전한 SSO(Single Sign-On) 경량화 메커니즘 연구)

  • Kim, Hyun-Jin;Lee, Im-Yeong
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2013.11a
    • /
    • pp.811-814
    • /
    • 2013
  • 한 번의 인증으로 다양한 서비스들을 이용할 수 있는 SSO(Single Sign-On) 인증 시스템은 기존에 사용자의 인증정보인 아이디와 패스워드를 서비스별로 설정하고 관리해야하는 문제점을 해결하였다. 최근에는 스마트기기의 보급이 빠르게 진행됨에 따라 다양한 서비스들이 웹 기반 형태로 변화되고 있으며, SSO 인증 시스템의 활용 또한 증가하게 되었다. 하지만 SSO 인증 시스템의 경우 공격자로 인해 사용자의 인증정보가 탈취되었을 경우 재전송 공격을 통한 세션 취득이 가능하다는 문제점이 존재한다. 뿐만 아니라 스마트기기로의 SSO 인증 시스템 적용을 위해 기존 방식에 비해 연산의 경량화가 필요하게 되었다. 본 논문에서는 SSO 인증 시스템의 구조를 분석하고, 보안요구사항을 만족하는 인증정보 재전송 공격에 안전한 SSO 경량화 메커니즘을 제안한다.

User Authentication Technology using Multiple SSO in the Cloud Computing Environment

  • Cho, Min-Hee;Jang, Eun-Gyeom;Choi, Yong-Rak
    • Journal of the Korea Society of Computer and Information
    • /
    • v.21 no.4
    • /
    • pp.31-38
    • /
    • 2016
  • The interface between servers and clients and system management in the cloud computing environment is different from the existing computing environment. The technology for information protection. Management and user authentication has become an important issue. For providing a more convenient service to users, SSO technology is applied to this cloud computing service. In the SSO service environment, system access using a single key facilitates access to several servers at the same time. This SSO authentication service technology is vulnerable to security of several systems, once the key is exposed. In this paper, we propose a technology to solve problems, which might be caused by single key authentication in SSO-based cloud computing access. This is a distributed agent authentication technology using a multiple SSO agent to reinforce user authentication using a single key in the SSO service environment. For user authentication reinforcement, phased access is applied and trackable log information is used when there is a security problem in system to provide a safe cloud computing service.

A Study on Secure and Improved Single Sign-On Authentication System against Replay Attack (재전송 공격에 안전하고 개선된 Single Sign-On 인증 시스템에 관한 연구)

  • Kim, Hyun-Jin;Lee, Im-Yeong
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.5
    • /
    • pp.769-780
    • /
    • 2014
  • In general, internet users need to remember several IDs and passwords when they use diverse web sites. From an effective management perspective, SSO system was suggested to reduce user inconvenience. Kerberos authentication, which uses centralized system management, is a typical example of a broker-based SSO authentication model. However, further research is required, because the existing Kerberos authentication system has security vulnerability problems of password and replay attacks. In SSO authentication systems, a major security vulnerability is the replay attack. When user credentials are seized by attackers, an authorized session can be obtained through a replay attack. In this paper, an improved SSO authentication model based on the broker-based model and a secure lightweight SSO mechanism against credential replay attack is proposed.

Anti-inflammatory effect of seed oil of Schisandra chinensis in the LPS-treated RAW 264.7 macrophages (LPS로 자극된 Raw 264.7 대식세포에서 오미자 씨앗오일의 항염증 효과)

  • Jang, Jae-Yoon;Park, Geun-Hye
    • The Korea Journal of Herbology
    • /
    • v.30 no.6
    • /
    • pp.77-82
    • /
    • 2015
  • Objectives : This study was designed to investigate of the anti-inflammatory effects of Schisandra chinensis seed oil(SSO) on the production of pro-inflammatory substances in lipopolysaccharide (LPS)-stimulated RAW 264.7 macrophages.Methods : SSO was measured the production of pro-inflammatory factor (NO, PGE2, IL-1β iNOS and, COX-2) in lipopolysaccharide (LPS)-stimulated RAW 264.7 macrophages. we used the following methods : cell viability assay, Griess reagent assay, enzyme-linked immunosorbent assay, Western blotting analysis.Results : The cell viability of SSO(0∼500 μl/mL) processing group was 96.9% and the processing of SSO didn't have an effect on the cytotoxicity. The inhibitory effect of the nitric oxide (no) production of SSO(500 μg/mL, 50 μg/mL, 10 μg/mL) was each 70.3%, 37.6% and 26.5%. IL-1β production inhibition ability of SSO(500 μg/mL, 100 μg/mL) was each 49.88% and 48.8%. PGE2 production inhibition ability of SSO(500 μg/mL, 100 μg/mL) was each 49.88% and 73.1%, 70.5%. By using SSO, it experimented about iNOS protein expression inhibition ability, that is the NO production enzyme. iNOS protein expression increased in the group processing LPS independently. iNOS protein expression decreased in the group processing SSO together. The expression of the COX-2 protein decreased 89.6%, 81.8% in the group processing SSO. The significance was in the relationship with NO formation inhibition with the relationship with the PGE2 formation inhibition and iNOS protein, it confirmed in SSO with the COX-2 protein.Conclusions : Stimulation of the RAW 264.7 cells with LPS caused an elevated production of nitric oxide (NO), IL-1β and PGE2 which was markedly inhibited by the pretreatment with SSO without causing any cytotoxic effects. The reduced expressions of iNOS protein were consistent with the reductions in NO production in the culture media. SSO may be useful for the treatment of various inflammatory diseases.