WebLogic-oriented Form identification single sign on integration method

A technology of identity authentication and single sign-on, applied in the field of single sign-on integration of Form identity authentication, which can solve the problems of inapplicability of identity authentication and inability to intercept.

Inactive Publication Date: 2014-11-05
WUHAN UNIV OF TECH
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] In view of the situation that the Web application system uses Form identity authentication, the applicant once proposed a method that does not require modification in his patent application "Single sign-on integration method for Form identity authentication in a single sign-on system" (patent application number: 201210083321.3). A single sign-on integration solution for a Web application system and its identity authentication mechanism; however, the single sign-on integration method is deployed on a WebLogic application server (Application Server, referred to as WebLogic) for Web applications and depends on WebLogic (Web container , that is, the Form authentication mechanism of the Web Container) does not apply to the situation where the user is authenticated
This is because, in order to successfully apply the single sign-on integration method described in the patent application, HTTP plug-ins (such as Filter, Valve) developed based on the extension mechanism of the Web server (or Web container) are required to be able to intercept the user's submission through the browser. HTTP request to the username and password verification path (page); however, when the Web application system adopts the Form authentication mechanism provided by WebLogic, the HTTP plug-in developed based on the extension mechanism provided by WebLogic (including ordinary Servlet Filter and WebLogic Authentication Provider Servlet Authentication Filter) cannot intercept the HTTP request submitted by the user's browser to the username and password verification path (ie j_security_check)

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • WebLogic-oriented Form identification single sign on integration method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] The present invention will be described in further detail below in conjunction with the accompanying drawings.

[0025] The present invention is a single sign-on integration method for WebLogic Form identity authentication, the overall structure of the method is as follows figure 1 As shown, including the single sign-on filter deployed on the WebLogic application server, the identity service system and the unified user database.

[0026] The single sign-on filter deployed on the WebLogic application server is to obtain the corresponding login page of the Web application for the intercepted HTTP request URL, and perform relevant processing as follows:

[0027] The first step: allow the HTTP request to obtain the login page to pass;

[0028] Step II: Intercept the HTTP response of the HTTP request, judge whether the user has completed identity authentication in the identity service system by information stored in the session (Session) object, if so, then replace the origin...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a WebLogic-oriented Form identification single sign on integration method. The method requires a single sign on filter, an identity service system and a unified user database, wherein the filter is deployed on a WebLogic application server adopting Form identification; for users not finishing identification, page login requests are acquired, and the filter guides the users to the identity service system; after the identity service system identifies the users, identity assurance including both user names and passwords, which are required for the users to login the WebLogic and acquired from the unified user database, is submitted to an identity assurance verification path on the WebLogic in an automatic POST manner; after the filter intercepts and validates the identity assurance, the users names and the passwords in the identity assurance are used for calling the WebLogic login method; and the users are guided to a protected website required to be accessed at the first time if the login is successful, otherwise, the users are guided to the login website for re-login and the passwords are updated.

Description

technical field [0001] The invention belongs to the technical field of identity authentication and access control of information security, in particular, it is a WebLogic-oriented Form identity authentication single sign-on integration method. Background technique [0002] With the development of enterprise e-commerce and office informatization, enterprises and organizations have deployed a large number of information systems (hereinafter collectively referred to as application systems) that provide specific functions. In order to solve the problem that users need to memorize and input different user names and passwords when using different application systems, people have proposed the Single Sign On (SSO) technology. The so-called single sign-on means that the user only needs to use one identity credential (such as a user name, password, or a digital certificate) to complete online identity authentication (that is, login, login) in a certain system, and then he can access t...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/08H04L29/06
Inventor 龙毅宏吴志奇郭浩平
Owner WUHAN UNIV OF TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products