The Design and Implementation of A Secure Authentication Web System

碩士 === 國立成功大學 === 電機工程學系 === 89 === Nowadays, with the rapid development of WWW, there are more and more people engage in the activities of network. Establishing a personal web will be the irresistible trend in the future. Because the number of webs is increasing rapidly and there is no law to manag...

Full description

Bibliographic Details
Main Authors: Baai-Shenq Lee, 李百勝
Other Authors: CHi-Sung Laih
Format: Others
Language:zh-TW
Published: 2001
Online Access:http://ndltd.ncl.edu.tw/handle/41608330643920159251
Description
Summary:碩士 === 國立成功大學 === 電機工程學系 === 89 === Nowadays, with the rapid development of WWW, there are more and more people engage in the activities of network. Establishing a personal web will be the irresistible trend in the future. Because the number of webs is increasing rapidly and there is no law to manage the establishment of webs, it is possible for the illegal webs to obtain customers’ network benefits over the Internet for the ignorance of the customers. To provide a secure identification authentication of users over the Internet, there are many methods of identification authentication in the current infrastructure of security network, such as SSL and Kerberos, etc. But, those methods have no ability to recognize the web whether it is established from the trusted merchant. Therefore, the event of how to recognize the legality of webs in an open network environment and make customers to accept the service that is provided from webs, then engage in business activities in a secure and non-misgiving web has become one important part of network security. The paper proposes one management mode of web over the Internet. The method of the web management will offer customers to recognize the legality of web through issuing Online Mark and make customers to be able to rapidly verify if the web is worthy to trust or not. The technologies of the proposed authentication system utilize web server to accept the external messages and accesses to database by using Servlet, and implement the service that verifies the legality of the webs by the use of the cryptographic technology of Java security. The goal of the proposed authentication system is to offer governments a method to manage the webs in the future, and expect to prevent others from engaging in illegal commercial activities and conserve the rights of the two commercial parts through the actual actions of strict laws.