{"title":"An Intrusion Tolerance Approach to Enhance Single Sign on Server Protection","authors":"David Pham, A. Sood","doi":"10.1109/DEPEND.2010.23","DOIUrl":null,"url":null,"abstract":"Modern IT systems have evolved into complex distributed systems that support thousands of users, with each user requiring access to several applications. Single sign on (SSO) provides a convenient facility for managing user authentication such that a user only logs into a system once in order to gain access to many protected applications. For this reason it becomes vitally important to secure the SSO server. If an SSO server is compromised, it could potentially put many applications at risk at the same time. The current Intrusion Detection and Prevention systems have proven to be inadequate because the “bad guys” are always one step ahead. In this paper we present a new and innovative approach to SSO server security called “Self-Cleansing Intrusion Tolerance SSO” (SCIT). SCIT shifts the focus from detection and prevention to containing losses, by reducing the exposure time of the servers. Specifically, we present the results of an evaluation of the performance of a SCIT-ized SSO server. In this way we increase the dependability of the server and provide a new way to balance the trade-off between security and availability. We will show that SCIT provides increased security with little degradation in overall response time of the system.","PeriodicalId":447746,"journal":{"name":"2010 Third International Conference on Dependability","volume":"123 4","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-07-18","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 Third International Conference on Dependability","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/DEPEND.2010.23","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 8
Abstract
Modern IT systems have evolved into complex distributed systems that support thousands of users, with each user requiring access to several applications. Single sign on (SSO) provides a convenient facility for managing user authentication such that a user only logs into a system once in order to gain access to many protected applications. For this reason it becomes vitally important to secure the SSO server. If an SSO server is compromised, it could potentially put many applications at risk at the same time. The current Intrusion Detection and Prevention systems have proven to be inadequate because the “bad guys” are always one step ahead. In this paper we present a new and innovative approach to SSO server security called “Self-Cleansing Intrusion Tolerance SSO” (SCIT). SCIT shifts the focus from detection and prevention to containing losses, by reducing the exposure time of the servers. Specifically, we present the results of an evaluation of the performance of a SCIT-ized SSO server. In this way we increase the dependability of the server and provide a new way to balance the trade-off between security and availability. We will show that SCIT provides increased security with little degradation in overall response time of the system.