Today, designing a complex information service system in a working organization has become a challenging problem especially in authentication. An SSO (single sign-on) system is designed to solve this problem. However, it is time and cost consuming to build an SSO that covers legacy software packages because each legacy package mostly has its own authentication engine and it is required to be restructured.We propose LESSO, Legacy Enabling SSO, to enable these legacy Web applications. LESSO provides certificate authentication and protocols to share authentication information among servers. We show that in LESSO, legacy applications are enabled without any modification to them, which implies its cost effectiveness.
Index Terms:
SSO, authentication, PKI, web application
Citation:
Takeshi Nishimura, Hiroyuki Sato, "LESSO: Legacy Enabling SSO," saint, pp.301-304, 2008 International Symposium on Applications and the Internet, 2008