DocumentCode :
1952844
Title :
Simple Authentication for the Web
Author :
van der Horst, Timothy W. ; Seamons, Kent E.
Author_Institution :
Internet Security Research Lab, Brigham Young University, USA
fYear :
2007
fDate :
17-21 Sept. 2007
Firstpage :
473
Lastpage :
482
Abstract :
Automated email-based password reestablishment (EBPR) is an efficient, cost-effective means to deal with forgotten passwords. In this technique, email providers authenticate users on behalf of web sites. This method works because web sites trust email providers to deliver messages to their intended recipients. Simple Authentication for the Web (SAW) improves upon this basic approach to user authentication to create an alternative to password-based logins. SAW: 1) Removes the setup and management costs of passwords at EBPR-enabled sites; 2) Provides single sign-on without a specialized identity provider; 3) Thwarts passive attacks and raises the bar for active attacks; 4) Enables easy, secure sharing and collaboration without passwords; 5) Provides intuitive delegation and revocation of authority; and 6) Facilitates client-side auditing.
Keywords :
Authentication; Costs; Electronic mail; Identity management systems; Internet; Protection; Protocols; Risk management; Security; Surface acoustic waves;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Security and Privacy in Communications Networks and the Workshops, 2007. SecureComm 2007. Third International Conference on
Conference_Location :
Nice, France
Print_ISBN :
978-1-4244-0974-7
Electronic_ISBN :
978-1-4244-0975-4
Type :
conf
DOI :
10.1109/SECCOM.2007.4550369
Filename :
4550369
Link To Document :
بازگشت