Global Login System

Global Login System

Global Login System is a single sign-on open source protocol, designed to allow any user logged in on his or her account to one of the sites using it, to be authenticated when visiting any other site using it. It aims to be used universally over the Internet, so that each user only needs to have one account with login and password on one designated home site, in order to access anything and operate anywhere on the web that s/he is allowed to. Its difference with other single sign-on systems is that there is no central database of users, so that this system can scale indefinitely by allowing every site of the network to have a separate (hidden) list of users.

Description

Since there is no central user database, a simple request to some web application in the address bar of the browser cannot provide authentication, as the application cannot guess what server should be requested to get the identity of the user. Instead, it is necessary for users to log in to their home accounts first, then access other resources from there by special bookmarks that operate this authentication. But we also use a system of multiple pseudos per login, so that the user can visit the web under different pseudos from the same account. Each user is identified by the pair (pseudo, home site): such a pair represents only one user, but for matters of anonymity, different such pairs can represent the same user.So, the pseudo under which s/he will visit a given bookmark can be chosen inside his or her list of pseudos in his or her home account before using the bookmark.

Each server has a database of symmetric keys for crypted communication with every other server. So, a bookmark from the home site A of a user to another site B contains a signal crypted by the key between A and B, containing some information including the chosen pseudo of the user.

This system is part of the Trust-forum project, to be released to sourceforge under LGPL, of a system of web forums to replace email and solve the spam problem : see the [http://spoirier.lautre.net/trustedforum.html Trust-forum project home page] .


Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать реферат

Look at other dictionaries:

  • Operating system — Operating systems …   Wikipedia

  • Satellite Distribution System — The Satellite Distribution System (SADIS) is a worldwide satellite based broadcast system dedicated to primarily distributing aeronautical meteorological information in line with ICAO (International Civil Aviation Organisation) standards.… …   Wikipedia

  • Sun Secure Global Desktop — (SGD) software provides secure access to both published applications and published desktops running on Microsoft Windows, Unix, mainframe and System i systems via a variety of clients ranging from fat PCs to thin clients such as Sun Rays.History… …   Wikipedia

  • Architecture Design and Assessment System — The Architecture Design and Assessment System (ADAS) was a set of software programs offered by the Research Triangle Institute from the mid 1980s untilthe early 1990s. [G.A. Frank, D.L. Franke, and W.F. Ingogly, An Architecture Design and… …   Wikipedia

  • Distributed operating system — A distributed operating system is the logical aggregation of operating system software over a collection of independent, networked, communicating, and spatially disseminated computational nodes.[1] Individual system nodes each hold a discrete… …   Wikipedia

  • Database management system — A database management system (DBMS) is a software package with computer programs that control the creation, maintenance, and the use of a database. It allows organizations to conveniently develop databases for various applications by database… …   Wikipedia

  • Network File System (protocol) — Internet protocol suite Application layer BGP DHCP DNS FTP HTTP …   Wikipedia

  • Domain Name System Security Extensions — Internet protocol suite Application layer BGP DHCP DNS FTP HTTP …   Wikipedia

  • Informal value transfer system — An informal value transfer system (IVTS) refers to any system, mechanism, or network of people that receives money for the purpose of making the funds or an equivalent value payable to a third party in another geographic location, whether or not… …   Wikipedia

  • Single Sign-On — (SSO) es un procedimiento de autenticación que habilita al usuario para acceder a varios sistemas con una sola instancia de identificación. Hay cinco tipos principales de SSO, también se les llama reduced sign on systems (en inglés, sistemas de… …   Wikipedia Español

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”