In this paper, we proposed a novel scheme to satisfy the requirement of cross domain application single sign on. Identity based encryption and signature have been applied in this protocol, which supports the progress of single sign on between heterogeneous target systems. A ticket can roam from a single sign on domain to the other. The communication between application servers, in this scheme, we use identity based encryption to protect the data safety, the data transfer between user's browser and servers we choose session key to prevent attacking.
Published in:
Networks Security Wireless Communications and Trusted Computing (NSWCTC), 2010 Second International Conference on
(Volume:1
)
Date of Conference: 24-25 April 2010