The implementation and investigation of securing web applications upon multi-platform for a single sign-on functionality
Hsien-Yu Lee · International Journal of Advanced Computer Research · 2016
IntroductionSingle sign-on (SSO) is a session or user authentication process that permits a user to enter one name and password in order to access multiple applications.To verify that the users for all applications, they have been given the rights and eliminate further prompts when they are in a particular session during the process of switching applications [4].Single sign-on (SSO) is a property of access control of multiple related sources, but independent software systems.Based on this property, a user logs in with a single ID and password to obtain access to a connected system or the other systems without having to use a different user name or password.In [5], what are the benefits of SSO?The benefits of SSO apply to many areas: 1) User experience: the most obvious benefit is that users can move between services securely and continuously without having to specify their credentials every time.*Author for correspondence 2) Security: provide the user credentials directly to the central SSO server, not the actual service that the user attempts to access and save, 3) Resource savings: IT administrators can save their time and resources with a central web access management services.To comprehend Enterprise Single Sign-On (SSO) [6], it is useful today to observe the three types of Single Sign-On services available: Windows integrated, extranet (web SSO), and an internal network (Server-based Intranet).Enterprise Single Sign-On provides services to store and transmit encrypted user credentials across the local and global internet.SSO always stores the credentials in the database.Because SSO provides a generic single sign-on solution, applications and adapters can use SSO to safely store and transmit user credentials across a variety of environments.Users do not always remember different credentials/passcodes for different applications/platforms.Therefore, we proposed the solution focused on web SSO applied upon a multi-platform method.In 1991, MD5 message-digest algorithm was designed by Ronald Rivest to replace an earlier hash function, MD4 in 1990 [1], [2].The MD5 message-digest algorithm is widely used a cryptographic hash function producing Research