摘 要: 针对现代信息门户用户访问量大、信息系统集成数量多的特点,信息系统身份认证分散、用户体验差等 问题。本文设计了一种分布式协同统一身份认证平台。平台提供认证服务、目录服务、接口服务、负载均衡和数据同步 等功能。利用CA数字证书和SSL协议,增强认证和传输过程中的安全性;采用SSO代理和服务器的模式实现用户的单点 登录。通过票据同步、Redis共享数据和身份漫游等技术实现分布式协同身份认证。本文设计的分布式协同统一身份认 证平台,能够有效地解决信息系统分散的问题,提升用户体验。 |
关键词: 统一身份认证;分布式;身份漫游 |
中图分类号: TP393
文献标识码: A
|
|
Design and Implementation of Distributed Cooperation and Uniform Identity Authentication Platform |
PENG Yong, HUANG Jianhua, WANG Zhe, WANG Quanliang, WANG Huan
|
( Guangxi University of Science and Technology, Liuzhou 545006, China )
pengyong@gxust.edu.cn; 872874889@qq.com; 751602523@qq.com; wqlet@qq.com; wanghuan@gxust.edu.cn
|
Abstract: Currently, large numbers of visits and highly-integrated information system lead to the scattered identity authentication and poor user experience. This paper proposes a distributed collaboration and uniform identity authentication platform. It provides functions such as authentication services, directory services, interface services, load balancing, and data synchronization. CA (Certi cate Authority) digital certi cate and SSL (Secure Socket Layer) protocol are used to enhance the security in authentication and transmission process. SSO (Single Sign-on) agent and server mode are used to realize single sign-on. Distributed collaboration and uniform identity authentication are achieved through technologies such as ticket synchronization, Redis shared data, and identity roaming. The proposed identity authentication platform can effectively coordinate decentralized information systems, and improve user experience. |
Keywords: uniform identity authentication; distributed; identity roaming |