2008 IEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing (sutc 2008)
A Novel Distributed Authentication Framework for Single Sign-On Services
June 11-June 13
ISBN: 978-0-7695-3158-8
In this paper we present a novel single sign-on scheme known as Secure Distributed Single Sign-On (SeDSSO). SeDSSO provides secure fault-tolerant authentication using threshold key encryption with a distributed authentication service. The authentication service consists of n total authentication servers utilizing a (t, n) threshold encryption scheme, where t distinct server-signed messages are required to generate a message signed by the service. SeDSSO provides secure portable identities by defining a two-factor identity that uses both a username/password and a unique USB device. The combination of a distributed authentication service and two-factor identities allows SeDSSO to securely authenticate users in any environment.
Index Terms:
Single sign-on, Two-factor authentication, Computer security, Distributed systems, SeDSSO
Citation:
Kaleb Brasee, S. Kami Makki, Sherali Zeadally, "A Novel Distributed Authentication Framework for Single Sign-On Services," sutc, pp.52-58, 2008 IEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing (sutc 2008), 2008