欢迎来到天天文库
浏览记录
ID:38587976
大小:796.00 KB
页数:16页
时间:2019-06-15
《《CAS_SSO框架》PPT课件》由会员上传分享,免费在线阅读,更多相关内容在教育资源-天天文库。
1、SSO:theuser’spointofviewwebbrowserapp.#1app.#2app.#3withoutSSOservicewebbrowserapp.#1app.#2app.#3withSSOservicewebbrowserapp.#1app.#2app.#3withCASserviceCAS:whydidwechooseit?webbrowserapp.#1app.#2app.#3authenticationserverwithoutSSOuserdatabaseuserdatabaseservicenetId
2、passwordnetIdpasswordwebbrowserapp.#1app.#2app.#3withCASserviceCAS:whydidwechooseit?webbrowserapp.#1app.#2app.#3authenticationserverwithoutSSOuserdatabaseuserdatabaseservicenetIdpasswordnetIdpasswordUserauthenticationCASserverHTTPSwebbrowserUserauthenticationTGC:Ti
3、cketGrantingCookieUser’spassporttotheCASserverPrivateandprotectedcookie(theonlyoneusedbyCAS,optional)Opaquere-playableticketCASservernetIdpasswordHTTPSuserdatabasewebbrowserTGCTGCAccessinganapplicationafterauthenticationwebbrowserCASserverTGCHTTPSapplicationTGCSTSTS
4、TST:ServiceTicketBrowser’spassporttotheCASclient(application)Opaqueandnonre-playableticketVerylimitedvalidity(afewseconds)IDAccessinganapplicationafterauthenticationCASserverHTTPSTGCSTSTSTIDwebbrowserTGCRedirectionsaretransparenttousersapplicationST:ServiceTicketBrowser
5、’spassporttotheCASclient(application)Opaqueandnonre-playableticketVerylimitedvalidity(afewseconds)AccessinganapplicationwithoutauthenticationwebbrowserCASserverHTTPSAuthenticationformapplicationAccessinganapplicationwithoutauthenticationwebbrowserCASserverTGCHTTPSSTST
6、IDnetIdpasswordSTTGCNoneedtobepreviouslyauthenticatedtoaccessanapplicationapplicationAuthenticatinguserswithCASCASauthenticationlefttoadministratorsESUP-PortailCASGenericHandlerMixedauthenticationXMLconfigurationLDAPdirectorydatabaseNISdomainX509certificatesKerberosd
7、omainWindowsNTdomainflatfilesCASserverN-tierinstallationsPGT:ProxyGrantingTicketApplication’spassportforausertotheCASserverOpaqueandre-playableticketwebbrowserCASserverTGCapplication(CASproxy)STSTserviceIDPGTPGTapplication(CASproxy)N-tierinstallationswebbrowserCASserv
8、erTGCSTservicePGTPTPTIDPGTPGT:ProxyGrantingTicketApplication’spassportforausertotheCASserverOpaq
此文档下载收益归作者所有