his.sePublications
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • harvard1
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Comparison of Liberty Alliance and OpenID regarding their ability to protect the confidentiality, integrity and availability of the users’ information: a study based on the analysis of resistance to common attacks
University of Skövde, School of Humanities and Informatics.
2010 (English)Independent thesis Basic level (degree of Bachelor), 10 credits / 15 HE creditsStudent thesis
Abstract [en]

It is essential to solve the problem due to password fatigue in order to increase the security of the transactions on the Web and secure the users’ account and information. Web Single Sign-On is one of the techniques that have been created to solve these issues. Unfortunately, this method creates new opportunities for hackers. The Liberty Alliance and OpenID are two of the most known Web Single Sign-On frameworks. This work intends to review the strengths and the weaknesses of both regarding their ability to protect the confidentiality, integrity and availability of the users’ information, by studying their aptitude to prevent some of the most dangerous attacks on the web. The analysis of the results shows that Liberty Alliance has created a strong infrastructure in order to mitigate those attacks. Consequently, this framework protects the confidentiality, integrity and availability of the users’ information more efficiently than OpenID. On the other hand, this latter shows significant weaknesses that compromises the confidentiality, integrity and availability of the users’ information.

Place, publisher, year, edition, pages
2010. , 32 p.
Keyword [en]
WebSSO, OpenID, Liberty Alliance, information security, attacks
National Category
Computer Science
Identifiers
URN: urn:nbn:se:his:diva-4424OAI: oai:DiVA.org:his-4424DiVA: diva2:356028
Uppsok
Technology
Supervisors
Examiners
Available from: 2010-10-11 Created: 2010-10-10 Last updated: 2010-10-11Bibliographically approved

Open Access in DiVA

fulltext(596 kB)322 downloads
File information
File name FULLTEXT01.pdfFile size 596 kBChecksum SHA-512
09651406adcee67e26e9bcc965423bb9e7ecd16e1ed43aeecc8a197fbb83fedff1c8efa54b6fa9a21a7d102e9834665ab42de15ad64508096677c432fa5f5bc5
Type fulltextMimetype application/pdf

By organisation
School of Humanities and Informatics
Computer Science

Search outside of DiVA

GoogleGoogle Scholar
Total: 322 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

Total: 318 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • harvard1
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf