摘要
以Microsoft CardSpace为代表,从认证信息存储和传输安全性以及用户可控性的角度对互联网身份认证系统的架构设计和优缺点作了系统的分析和研究,并在此基础上提出了减少中间角色、认证信息复合加密和传输加密等相应的改进方案,使其在设计上从以认证角色为中心转变成为以用户为中心,提升用户体验,从而更容易得到推广,为该类系统今后的设计和发展提供了新思路。
The design and goodness and drawback of web identity systems is analyzed, from the perspective of security during transporting, storing identity information and force of user-control, based on Microsoft CardSpace. Then improvement plans are offered for the flaws of CardSpace, including cutting the intermediary role, encrypting security tokens complexly and encrypting during transmission, in order to change its design from authority-centric to user-centric, improve user experiences and make it more receivable. Creative ideas are provided for the design development of web identity systems.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第15期3517-3519,共3页
Computer Engineering and Design