Skip to main content
Article
A generic construction of dynamic single sign-on with strong security
Faculty of Informatics - Papers (Archive)
  • Jinguang Han, University of Wollongong
  • Yi Mu, University of Wollongong
  • Willy Susilo, University of Wollongong
  • Jun Yan, University of Wollongong
RIS ID
35744
Publication Date
1-1-2010
Publication Details

Han, J., Mu, Y., Susilo, W. & Yan, J. (2010). A generic construction of dynamic single sign-on with strong security. In S. Jajodia & J. Zhou (Eds.), Security and Privacy in Communication Networks 6th Iternational ICST Conference, SecureComm 2010, Singapore, September 7-9, 2010. Proceedings (pp. 181-198). Germany: Springer.

Abstract

Single Sign-On (SSO) is a core component in a federated identity management (FIM). Dynamic Single Sign-on (DSSO) is a more flexible SSO where users can change their service requirements dynamically. However, the security in the current SSO and DSSO systems remain questionable. As an example, personal credentials could be illegally used to allow illegal users to access the services. It is indeed a challenging task to achieve strong security in SSO and DSSO. In this paper, we propose a generic construction of DSSO with strong security. We propose the formal definitions and security models for SSO and DSSO, which enable one to achieve the security of SSO and DSSO with the underlying (standard) security assumptions. We also provide a formal security proof on our generic DSSO scheme.

Citation Information
Jinguang Han, Yi Mu, Willy Susilo and Jun Yan. "A generic construction of dynamic single sign-on with strong security" (2010) p. 181 - 198
Available at: http://works.bepress.com/jyan/35/