Re-evaluating Single Sign-On System Design Risks: An Activity Theoretic Approach
نویسندگان
چکیده
Single Sign-On (SSO) systems provide users the convenience of accessing multiple applications and systems while having to provide credentials only once. Organizations across industries have started to evaluate and deploy Single Sign-On systems in their environment. SSO systems provide a range of benefits including improved productivity, reduced complexity, improved user convenience, facilitated business and improved compliance to security policies. While SSO systems have shown to provide many economic benefits, there are inherent risks that arise from the fact that in SSO environment, only one password or one set of authentication factor is needed. This creates a situation typically understood as ‘single-point of failure’. In an event the SSO password is breached, all of the applications covered under SSO will be exposed to huge risks. We use activity theory principles to understand how applications should be categorized to design SSO systems. The research develops a process guided by activity theory to unravel some of the hidden design tenets that should guide SSO deployments.
منابع مشابه
Re-usability of traffic signs for inactive drivers with consideration of personal characteristics and sign features
There has been an increasing concern about inactive drivers who would easily lead to road accidents and fatalities once return to driving. This study investigated the re-usability of traffic signs for inactive drivers with consideration of driver factors and cognitive sign features. Fifty-seven Hong Kong Chinese, who possessed a full driving license but had not driven for an extended period, co...
متن کاملFlow Re-Stabilizing Observation via Air Injection during the Rotating Stall through a Single-stage Axial Compressor by a 2-D Finite-volume Approach
The air-injection as an active flow stabilizing techniques, were numerically examined in current work, during the aerodynamic behavior and the characteristics of an axial compressor. At first, in design condition the characteristic curve was numerically captured for a specified test compressor. The computed results showed good agreements with those obtained from the experiments, to validate the...
متن کاملSystem Engineering Implementation Process for Super-Systems
System engineering is one of the most powerful tools for comprehensive project management and control. This tool emphasized the life cycle of the projects, manages every single activity and helps manage the main elements of the project through a set of management and engineering processes. The goal of the current study is to use a system engineering approach in design phase in order or to meet ...
متن کاملA Game Theoretic Approach for Sustainable Power Systems Planning in Transition
Intensified industrialization in developing countries has recently resulted in huge electric power demand growth; however, electricity generation in these countries is still heavily reliant on inefficient and traditional non-renewable technologies. In this paper, we develop an integrated game-theoretic model for effective power systems planning thorough balancing between supply and demand for e...
متن کاملA Multi-Criteria Decision-Making Approach with Interval Numbers for Evaluating Project Risk Responses
The risk response development is one of the main phases in the project risk management that has major impacts on a large-scale project’s success. Since projects are unique, and risks are dynamic through the life of the projects, it is necessary to formulate responses of the important risks. Conventional approaches tend to be less effective in dealing with the imprecise of the risk response deve...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2010