Presentation 2013-03-14
Design and Implementation of Mutual Authentication based on PAKE in the Web SSO
Kouhei SUGIYAMA, Toyokazu AKIYAMA,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Recently, large amount of Web services exist, such as file sharing, Web mail and so on. When we use Web services, usually are authentication procedures. However, when the number of web services grows, the pass- word management in both the service provider and the user side becomes a problem. In order to solve the problem, Web services using the "Web Single Sign-On(SSO)" are spreading. Web sso can integrates the authentication of multiple Web applications. When Web sso has spreaded, while the password management cost can be reduced, the value of the password increases. Furthermore, while the account registration cost of the service provider can be reduced, the users are accustomed to inputting the password to unfamiliar sites. It may increase the risk of the phishing. In this report, we tried to realize the function to authenticate both the server and the user to reduce the risk of passing the password to the unauthorised servers. We have designed and implemented the client-server mu- tual authentication function with Password Authenticated Key Exchange(PAKE)and extended the authentication server and the browser, to establish more secure authentication method.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) Single Sign-On / phishing / PAKE / Mutual authentication
Paper # SITE2012-50,IA2012-88
Date of Issue

Conference Information
Committee IA
Conference Date 2013/3/7(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Internet Architecture(IA)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Design and Implementation of Mutual Authentication based on PAKE in the Web SSO
Sub Title (in English)
Keyword(1) Single Sign-On
Keyword(2) phishing
Keyword(3) PAKE
Keyword(4) Mutual authentication
1st Author's Name Kouhei SUGIYAMA
1st Author's Affiliation Kyoto Sangyo University()
2nd Author's Name Toyokazu AKIYAMA
2nd Author's Affiliation Kyoto Sangyo University
Date 2013-03-14
Paper # SITE2012-50,IA2012-88
Volume (vol) vol.112
Number (no) 489
Page pp.pp.-
#Pages 6
Date of Issue