Single sign-on method and device and computer readable storage medium

A single sign-on and logged-in technology, applied in the Internet field, can solve problems such as session insecurity, hidden dangers, and inability to achieve cross-domain, and achieve the effect of increasing security

Inactive Publication Date: 2019-08-27
北京首都在线科技股份有限公司
View PDF2 Cites 19 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] The disadvantage of this strategy is that it cannot achieve cross-domain, that is, the application of different first-level domain names
[0008] The disadvantage of this strategy is: there are security risks, and the token is passed through the URL link, which is valid for all business systems
When the client copies a valid token, uses different browsers, and accesses different business systems, all of them will pass the authentication, that is, the token is not safe for different sessions

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Single sign-on method and device and computer readable storage medium
  • Single sign-on method and device and computer readable storage medium
  • Single sign-on method and device and computer readable storage medium

Examples

Experimental program
Comparison scheme
Effect test

specific example

[0161] Such as Figure 9 Shown is a specific example process of the single sign-on method, including the following steps:

[0162] a: The client initiates a service request to the business system 1 through the browser. The business system 1 detects that the client is not logged in, and jumps to the single sign-on system with the session primary key of the business system 1.

[0163] The client issues a service request to the service system 1 through a browser. When the client visits for the first time, business system 1 will generate a session record for the client's browser, and the session record is stored in the database or cache service. This session record has a globally unique field as the session primary key (session_id_app1). Other information can also be stored in the session record, such as client ID, login mobile phone number and other information. Subsequently, the business system 1 makes an HTTP response, and the cookie of the response contains the session prim...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention provides a single sign-on method and device and a computer readable storage medium. The method comprises the steps that a single sign-on system receives an authentication request from a service system, the authentication request comprises a session primary key of the service system and a token of a client side, and the token is generated after the single sign-on system verifies that login information of the client side is legal; the single sign-on system authenticates a session primary key of the service system and the token; and under the condition that the authentication is passed, the service system is controlled to execute the service request of the client. And if the client accesses the service system and the service system carrier jumps to the single-point service system, the single-point service system indicates that the login information of the client is authenticated under the condition that the authentication session main key and the token arepassed. Therefore, the safety is further improved.

Description

technical field [0001] The present invention relates to the technical field of the Internet, in particular to a single sign-on method, device and computer-readable storage medium. Background technique [0002] Single sign-on (SSO, Single Sign On) means that in multiple mutually trusted application systems, the client only needs to log in once to access all application systems. Single sign-on is one of the more popular enterprise business system integration solutions. With the development of the Internet, the website application based on the hypertext transfer protocol (HTTP, HyperText Transfer Protocol) has become the most widely used software application. [0003] There are two typical solutions for the single sign-on mechanism of the website application: the single sign-on based on the client cookie and the single sign-on based on the token (Token). [0004] The principle of cookie-based single sign-on is that different business system websites in the same browser can sh...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L29/08
CPCH04L63/0807H04L63/0815H04L67/02
Inventor 祝佳威
Owner 北京首都在线科技股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products