
Implementation of Rivest Cypher 4 algorithm in Security Assertion Mark-up Language protocols on Single Sign-On services
Author(s) -
Cepy Slamet,
U. Syaripudin,
F. M. Kaffah,
Bagus Enggar Tiasto
Publication year - 2021
Publication title -
iop conference series. materials science and engineering
Language(s) - English
Resource type - Journals
eISSN - 1757-899X
pISSN - 1757-8981
DOI - 10.1088/1757-899x/1098/3/032109
Subject(s) - credential , computer science , single sign on , computer security , authentication (law) , rc4 , assertion , transport layer security , computer network , data security , cryptography , encryption , programming language , stream cipher
Single Sign-On (SSO) is an authentication service that allows users to use a set of credential data to access multiple applications. The SSO can be implemented using Security Assertion Mark-up Language (SAML) which is recognized as a framework or standard for sending open messages that allow identity and security information to be shared to each entity. Credential data sent over the network enable unauthorized users to capture the data and this will be fatal since the data can be used to access all applications in the SSO entity. This study aims to propose a credible data security approach that is reliable so that the data is not easily read by unauthorized users even with the dictionary attacks. This security method is performed using the Rivest Cypher 4 (RC4) algorithm. This study is resulting in two major phenomena, (1) the utilization of the RC4 algorithm on SAML in SSO services has proven to be an effective data security approach for dictionary attacks, (2) the formulation of the RC4 algorithm on SAML has proven to not interfere with SSO services in the user authentication process.