| This paper studies CAS opensource protocol in depth. Aiming at the lack of the authentication mechanism in CAS single sign on system, a method using Digest-MD5 authentication mechanism in the SASL for authentication is proposed. Use the SSL protocol to ensure data transmission security in authentication server and application system. Lead-in Captcha Authentication code mechanisms, and it prevents the computer programs from logging on automatically effectively. Apply OpenLDAP directory server stores user information, improves search and browsing speed. Perfects unified user management functions. Also a model of the global logout is designed and implemented, ensure that single sign-on session information and user information consistency and integrity. This paper proposes single sign on model and single sign out model is an effective solution for multiple Web applications to finish the integration of login authentication. Through the end of the single sign-on running test and security analysis Single sign on reaches its effects. |