Abstract
Support for Single Sign-On (SSO) is a frequently voiced requirement for Service-Oriented Computing. We discuss SSO strategies and approaches, their requirements and constraints. The two most prominent approaches in this field are presented, i.e. Microsoft Passport and Liberty Alliance. Because implementations of Liberty were not widely available and in order to understand the conceptual implications and practical requirements of SSO we have built our own SSO solution. Its modular and flexible design is compatible with the Liberty specifications. The prototype reveals valuable insights into SSO design and operations.
Chapter PDF
Similar content being viewed by others
References
Communications of the ACM 46(6) (June 2003)
Apache Software Foundation, http://www.apache.org
CPAN. Comprehensive Perl Archive Network, http://www.cpan.org
Dierks, T., Allen, C.: The TLS Protocol Version 1.0 (January 1999)
Freier, A.O., Karlton, P., Kocher, P.C.: The SSL Protocol Version 3.0 (November 1996)
Kormann, D.P., Rubin, A.D.: Risks of the Passport Single Signon Protocol. Computer Networks 33, 51–58 (2000)
Liberty Alliance. Liberty Architecture Overview Version 1.1 (January 2003)
Microsoft. Microsoft .NET Passport Review Guide (March 2003)
OASIS. Assertions and Protocol for the OASIS Security Assertion Markup Language (SAML) v1.1 (July 2003)
Pashalidis, A., Mitchell, C.J.: A Taxonomy of Single Sign-On Systems. In: Safavi-Naini, R., Seberry, J. (eds.) ACISP 2003. LNCS, vol. 2727, Springer, Heidelberg (2003)
Pfitzmann, B.: Privacy in Enterprise Identity Federation - Policies for Liberty Single Signon. In: Dingledine, R. (ed.) PET 2003. LNCS, vol. 2760, pp. 189–204. Springer, Heidelberg (2003)
Shirey, R.: RFC: 2828: Internet Security Glossary (May 2000)
SUN. Interoperability Prototype for Liberty (2002)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2003 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Geihs, K., Kalcklösch, R., Grode, A. (2003). Single Sign-On in Service-Oriented Computing. In: Orlowska, M.E., Weerawarana, S., Papazoglou, M.P., Yang, J. (eds) Service-Oriented Computing - ICSOC 2003. ICSOC 2003. Lecture Notes in Computer Science, vol 2910. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-540-24593-3_26
Download citation
DOI: https://doi.org/10.1007/978-3-540-24593-3_26
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-20681-1
Online ISBN: 978-3-540-24593-3
eBook Packages: Springer Book Archive