J4

• Original Articles • Previous Articles     Next Articles

Token-based single sign-on protocol and its formal analysis

SHEN Ting;LI Hui;YU Ming-zhe   

  1. Ministry of Edu. Key Lab. of Computer Network and Information Security, Xidian Univ., Xi′an 710071, China
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-10-20 Published:2006-10-30

Abstract: A new single sign-on protocol used for the distributed network is proposed to achieve double-way authentication between user application servers. With a service token, identity authentication and service authorization are implemented by an authentication server, and the key is saved in the token which can be used in the verification process. The token not only makes the user that has been authenticated when it enters the network communicate with any application server, and improves the authentication efficiency of the whole network, but also makes the authentication server unnecessarily save the sate of users, and promotes authentication server’s performance. Using the BNA logic, the objective and the security of this protocol are proved by the formal analytical process.

Key words: single sign-on, token, BAN logic

CLC Number: 

  • TP393.08