Development of SAML-OIDC Token Translation System for Web Single-Sign On 


Vol. 44,  No. 10, pp. 1928-1938, Oct.  2019
10.7840/kics.2019.44.10.1928


PDF
  Abstract

Federated authentication is a standardized user authentication and authorization scheme that enables web-based SSO (Single-Sign On) in multiple security domains. We can expect the resolution of password fatigue, enhancement of personal information protection, and sharing of research resources by using the SAML (Security Assertion Markup Language), which is an international standard, and using interoperable technology profiles among the domains. However, the SAML-based user authentication is difficult to apply in web applications because it is not easy to implement, configure, and manage. OIDC (OpenID Connect) is showing acceptance in many countries as a next-generation authentication protocol since it has a simple structure of tokens and is easy to manage meta information. This paper proposes a token translation system that makes web applications can use both/either the SAML and/or the OIDC standard for federated authentication. In addition, we qualitatively evaluate the function as well as the performance of the developed system by federating it with the JupyterHub data-science platform acting as an OIDC client.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

J. Jo, Y. Chae, J. Kong, "Development of SAML-OIDC Token Translation System for Web Single-Sign On," The Journal of Korean Institute of Communications and Information Sciences, vol. 44, no. 10, pp. 1928-1938, 2019. DOI: 10.7840/kics.2019.44.10.1928.

[ACM Style]

Jinyong Jo, YeongHun Chae, and JongUk Kong. 2019. Development of SAML-OIDC Token Translation System for Web Single-Sign On. The Journal of Korean Institute of Communications and Information Sciences, 44, 10, (2019), 1928-1938. DOI: 10.7840/kics.2019.44.10.1928.

[KICS Style]

Jinyong Jo, YeongHun Chae, JongUk Kong, "Development of SAML-OIDC Token Translation System for Web Single-Sign On," The Journal of Korean Institute of Communications and Information Sciences, vol. 44, no. 10, pp. 1928-1938, 10. 2019. (https://doi.org/10.7840/kics.2019.44.10.1928)