Analyzing Security of Single Sign on System through Advanced Encryption Standard

P.Manju Bala M.O.Ramkumar Senior Assistant professor, Assistant professor Department of Computer science and Engineering IFET College of Engineering Villupuram, Tamilnadu · International Journal of communication and computer Technologies · 2019

Single sign-on mechanisms allow users to sign on only once and have their identities automatically verified by each application or service they want to access afterward. Most of current application architectures require the user to memorize and utilize a different set of credentials (e.g., username/password or tokens) for each application he/she wants to access. In this paper, however, it is shown that their scheme is actually insecure as it fails to meet security during communication. This paper illustrates the Chang & Lee scheme and it aims to enhance security using AES encryption and decryption. The Advanced Encryption Standard (AES) is a specification for the encryption of electronic data recognized by the U.S. National Institute of Standards and Technology. It is expected to become the accepted means of encrypting digital information, telecommunications, including financial, and government data.

Read the paper · More papers on PaperTik