Master's Thesis

Single Sign-On in J2EE Web Applications Based on SPNEGO/Kerberos

Final Thesis 1.23 MB

Author of thesis: Ing. Tomáš Nečas

Acad. year: 2008/2009

Supervisor: doc. Ing. Ondřej Ryšavý, Ph.D.

Reviewer: Ing. Jaroslav Ráb

Abstract:

The dissertation deals with requirements, analysis, description and integration of Single Sign-On solution based on SPNEGO/Kerberos protocol. The thesis provides an overview of the Single Sign-On basic principles and concepts and deals with the Kerberos authentication mechanism in more detail. After introducing the fundaments of the Kerberos protocol, its terminology and common implementations, attention is focused on the services and settings of Microsoft Kerberos implementation in Windows 2000/2003 environment. An authentication solution demonstration is performed on J2EE platform using the authentication filter and plug-in. The thesis also includes a brief overview of integrating the Single Sign-On solution into different architectures of corporate information systems and describes the implementation process of this solution. In conclusion, the usability of Kerberos Single Sign-On solution in today's business sector is analysed.

Keywords:

Single Sign-On, Kerberos, authentication, Domain Controller, Active Directory, J2EE

Date of defence

27.02.2009

Result of the defence

Defended (thesis was successfully defended)

znamkaBznamka

Grading

B

Language of thesis

Czech

Faculty

Department

Study programme

Information Technology (IT-MSC-2)

Field of study

Information Systems (MIS)

Supervisor’s report
doc. Ing. Ondřej Ryšavý, Ph.D.

Grade proposed by supervisor: B

Reviewer’s report
Ing. Jaroslav Ráb

Grade proposed by reviewer: B

Responsibility: Mgr. et Mgr. Hana Odstrčilová