A Performant and Secure Single Sign-On System Using Microservices

被引:0
|
作者
Moghaddam, Mahyar T. [1 ]
Pedersen, Andreas Edal [1 ]
Bolding, William Walter Lillebroe [2 ]
Worm, Torben [1 ]
机构
[1] Univ Southern Denmark, Odense, Denmark
[2] VIA Univ Coll, Aarhus, Denmark
关键词
Empirical Software Engineering; Microservices; Single Sign-On; Performance; Security;
D O I
10.1145/3555776.3577869
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
The Single Sign-On (SSO) method eases the authentication and authorization process. The solution substantially impacts the users' experience since they only need to authenticate once to access multiple services without re-authenticating. This paper adopts an incremental prototyping approach to develop an SSO system. The research reveals that while SSO improves users' quality of experience, it could imply performance and security issues if traditional architectures are adopted. Thus, a Microservices-based approach with containerization is subsequently proposed to overcome SSO's quality issues in practice. The SSO system is containerized using Docker and managed using Docker Compose. The results show a significant performance and security improvement.
引用
收藏
页码:1516 / 1519
页数:4
相关论文
共 50 条
  • [41] ThresPassport - A distributed single sign-on service
    Chen, TR
    Zhu, BB
    Li, SP
    Cheng, XQ
    ADVANCES IN INTELLIGENT COMPUTING, PT 2, PROCEEDINGS, 2005, 3645 : 771 - 780
  • [42] Single Sign-On Under Quantum Cryptography
    Dai, Guiping
    Wang, Yong
    INTERNATIONAL JOURNAL OF THEORETICAL PHYSICS, 2014, 53 (01) : 188 - 193
  • [43] Single Sign-On Beyond Corporate Boundaries
    Gupta, Sagar
    2018 8TH INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS, MODELLING AND SIMULATION (ISMS), 2018, : 38 - 42
  • [44] Single sign-on to the web with an EMV card
    Boyd, David J.
    PROCEEDINGS OF THE 2008 INTERNATIONAL SYMPOSIUM ON COLLABORATIVE TECHNOLOGIES AND SYSTEMS: CTS 2008, 2008, : 112 - 120
  • [45] PriSign, A Privacy-Preserving Single Sign-On System for Cloud Environments
    Shi, Rui
    Yang, Yang
    Xie, Huiqin
    Feng, Huamin
    Shi, Guozhen
    Zhang, Jianyi
    APPLIED SCIENCES-BASEL, 2023, 13 (02):
  • [46] Choosing a Single Sign-On Solution at STScI
    Alexov, Anastasia
    Deighton, Dan
    Doggett, Jesse
    McCuen, Leigh
    Russell, Ron
    Yermolaev, Alex
    ASTRONOMICAL DATA ANALYSIS SOFTWARE AND SYSTEMS XXIII, 2014, 485 : 289 - 292
  • [47] Single sign-on protocol for web services
    Zheng, Dong-Xi
    Tang, Shao-Hua
    Li, Shao-Fa
    Huanan Ligong Daxue Xuebao/Journal of South China University of Technology (Natural Science), 2005, 33 (02): : 65 - 69
  • [48] Implementation of a single sign-on system between practice, research and learning systems
    Purkayastha, Saptarshi
    Gichoya, Judy W.
    Addepally, Siva Abhishek
    APPLIED CLINICAL INFORMATICS, 2017, 8 (01): : 306 - 312
  • [49] Development of Single Sign-On System with Hardware Token and Key Management Server
    Nobayashi, Daiki
    Nakamura, Yutaka
    Ikenaga, Takeshi
    Hori, Yoshiaki
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2009, E92D (05): : 826 - 835
  • [50] A Federated Identity Management System with Centralized Trust and Unified Single Sign-On
    Jiang, Jian
    Duan, Haixin
    Lin, Tao
    Qin, Fenglin
    Zhang, Hong
    2011 6TH INTERNATIONAL ICST CONFERENCE ON COMMUNICATIONS AND NETWORKING IN CHINA (CHINACOM), 2011, : 785 - 789