Change search
ReferencesLink to record
Permanent link

Direct link
Emulerad single sign-on
Mid Sweden University, Faculty of Science, Technology and Media, Department of Information and Communication systems.
Mid Sweden University, Faculty of Science, Technology and Media, Department of Information and Communication systems.
2015 (Swedish)Independent thesis Basic level (degree of Bachelor), 10 credits / 15 HE creditsStudent thesis
Abstract [en]

The goal of the project was to create an extension to Internet Explorer forStatens Tjänstepensionsverk (SPV) which would give the staff the experience ofSingle sign-on (SSO) to external web service providers as well as manage andupdate their passwords in a secure manner. The survey focused on the providersPalasso, ProCompetence and Wera. The extension was created as a BrowserHelper Object (BHO) with C# in .NET. The solution was implemented as aCOM object in a DLL-file that was running in-process with the browser. Theprogram used a locally stored XML file containing URLs, usernames andencrypted passwords to the providers. When a user came to a login page theprogram collected the HTML elements on the page and populated them withdata from the file and logged in the user. Encryption and decryption was solvedwith a symmetric key that was stored in the program. In the XML file was alsothe date for the latest update of the password. If one month had passed, theprogram either gave the user an indication that the password needed to beupdated, or updated it automatically with a new generated password, dependingon the provider. The conclusion was that the extension worked as planned butthat there were improvements to be made regarding the possibility to add newsites to the system. The project also included an analysis of alternative optionsto solve the problem using JavaScript, Add-in Express, or via a portal page. Theconclusion was that none of these were an equally powerful tool as a BHO.

Place, publisher, year, edition, pages
2015. , 58 p.
Keyword [sv]
Single sign-on, Internet Explorer, .NET, C#, COM, XML, kryptering, lösenord, säkerhet
National Category
Computer Engineering
URN: urn:nbn:se:miun:diva-25342OAI: diva2:828024
Subject / course
Computer Engineering DT1
Educational program
Computer Science TDATG 180 higher education credits
2015-06-03, Room L408, Holmgatan 10, 851 70 Sundsvall, 09:00 (Swedish)
Available from: 2015-07-01 Created: 2015-06-29 Last updated: 2015-07-01Bibliographically approved

Open Access in DiVA

fulltext(1354 kB)38 downloads
File information
File name FULLTEXT01.pdfFile size 1354 kBChecksum SHA-512
Type fulltextMimetype application/pdf

Search in DiVA

By author/editor
Högberg, PerMalmqvist, Lars
By organisation
Department of Information and Communication systems
Computer Engineering

Search outside of DiVA

GoogleGoogle Scholar
Total: 38 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

Total: 89 hits
ReferencesLink to record
Permanent link

Direct link