电子商务环境下企业信息门户登录系统研究
详细信息    本馆镜像全文|  推荐本文 |  |   获取CNKI官网全文
摘要
随着信息系统的发展,电子商务对传统的企业信息系统带来了一定的冲击,电子商务环境下企业信息门户概念的提出以及发展则预示着电子商务发展的新方向。本文从信息门户的产生、国内外研究现状、现有信息门户的不足以及未来发展方向等方面对企业信息门户进行了深入的研究和分析。
     而对于目前庞大的企业信息门户系统,信息安全越来越受到重视,用户的身份验证无疑是信息安全第一个环节,其重要性也是无容置疑的。本文在分析了国内、外各种单点登录系统的实现模型及其优缺点的基础上,综述了电子商务信息安全的基本含义,对企业信息门户信息安全的性能、技术风险、技术等方面进行了详细的分析。提出了如何避免这些安全风险的相关技术。
     最后设计了一套适用于多种企业应用的单点登录系统模型。分析了基于SSL安全链路的单点登录的设计和实现,包括单点登录系统的整体结构的设计、基于数字证书的身份认证、可信任的第三方认证机构的设计、安全链路的通信协议设计和实现,最后在以上各点的基础上进行整合最终实现单点登录。详细论述了系统各个功能模块所采用的设计思想和具体技术并对此系统的具体框架和业务流程进行了介绍,同时,列举了具有代表性模块的具体设计。
     本文在最后对此系统的各个模块以及功能进行了综合性分析,指出了该系统的优缺点并提出了改进的思想以及今后的研究方向。
Along with information system's development, the E-business brings impact to traditional enterprise information system, the EIP concept's statement and develops symbolizes the electronic commerce development new direction. This article from EIP aspects and so on production, domestic and foreign research present situation, EIP is insufficiency as well as future development direction has conducted the thorough research and the analysis to the EIP.
     As for the huge enterprise information portal system, information security is receiving increasing attention, the user authentication information security is undoubtedly the first link.based on the analysis of domestic and foreign various single sign-on system implementation model and its advantages and disadvantages, based on an overview of the basic meaning of information security, e-commerce, enterprise information portal for information security, performance, technology risk, technology and other aspects of a detailed analysis. The question of how to avoid these security risks related technologies.
     The final design set has been suitable in many kinds of enterprise application simple point registers the system model. SSL-based security analysis of the single sign-on link the design and implementation, including SSO system, the overall structure of the design, based on the digital certificate authentication, a trusted third-party certification body design, secure communication protocol link design and implementation, and finally on the basis of the above points to integrate the eventual realization of SSO. Discussed in detail the various functional modules of the system used in the design idea and the specific technologies and specific framework for this system and business processes were introduced at the same time, citing a representative of the specific design of the module.
     This article has carried on the comprehensive analysis in finally regarding the systematic each module as well as the function. Put forward ideas for improvement and future research directions.
引文
[1]徐家俊,贾文玉.企业信息门户EIP [M]北京:机械工业出版社,2004:22-31.
    [2]林满山,郭荷清.单点登录技术的现状及发展[J].计算机应用,2004,6(24):248-250
    [3]严红升.企业信息门户与应用系统集成的研究[D].西安:西安建筑科技大学,2008
    [4]大卫德Mark M. Davydov.胡蓉译.企业信息门户与电子商务[M].北京清华大学出版社,2005
    [5]韩伟,范植华.基于SAML的单点登录技术在Web服务中的应用研究[J].计算机工程与设计,2005,26(3):634636
    [6]Flavio O. Silva, Joao A, A. Pacheco, et al. A Web Service Authentication ControlSystem Based on SRP and SAML[J]. In:Proceedings of the IEEE International Conference on Web Services(ICWS'05).2005
    [7]宋宇.电网企业信息门户系统建设概述[J].电力自动化,2007.2
    [8]邓君,韩毅.国外企业信息门户平台内容管理比较研究[J].情报科学,2007.6,25(6)
    [9]周文军.国外企业信息门户体系结构比较研究[J].情报科学,2007.6,25(6)
    [10]陈凌晖.基于RSS技术的信息门户个性化信息服务理念与实现[J].现代图书情报技术,2007.1
    [11]李琦,黄丰,涂勇.基于Web信息搜索的空间信息门户[J].计算机科学,2007,2:34
    [12]任钢,曾伟民,罗宾.基于分布式数据集成企业信息门户系统的设计和实现[J].计算机系统应用,2007
    [13]杜磊,于晓.交互式学科门户——Web210时代图书馆资源组织新理念[J].现代教育,2008.8
    [14]Research on the enterprise information portal based on eXo Luo, Jun-Gang (Institute of Water Resource and Hydro-electric Engineering, Xi'an University of Technology); Xie, Jian-Cang; Zhang, Yong-Jin; Ma, Zeng-Hui Source:Wuhan Ligong Daxue Xuebao/Journal of Wuhan University of Technology, v 28, n 9, September,2006, p 82-85 Language:Chinese
    [15]The impacts of establishing enterprise information portals on e-business performance Yang, Shu-Min (Department of Information Management, College of Management, Fu Jen Catholic University); Yang, Ming-Hsien; Wu, Ji-Tsung Ben Source:Industrial Management and Data Systems, v 105, n3,2005, p 349-368
    [16]陆敬筠,邵锡军编著.电子政务技术导论[M].北京:北京大学出版社,2005,5
    [17]贺娜,论学科信息门户下潜在信息需求[J].科技情报开发与经济,2007年第17卷第27期
    [18]鲁小蓉,邹艳,王晓新.面向产品生命周期的企业信息门户研究[J].情报杂志,2007年第3 期
    [19]郭旋.企业信息门户中统一认证系统的研究与实现[D]北京邮电大学,2008.3
    [20]Research of the enterprise information portal based on Jetspeed Tian, Hong (Sch. of Computer Science and Technology, Wuhan Univ. of Technology); Yang, Geng Source:Wuhan Ligong Daxue Xuebao/Journal of Wuhan University of Technology, v 27, n 4, April,2005, p.89-92 Language:Chinese
    [21]An identification and classification of enterprise portal functions and features Raol, Jaydip M. (CACI Incorporated); Koong, Kai S.; Liu, Lai C.; Yu, Chun S. Source:Industrial Management and Data Systems, v 103, n 8-9,2003, p 693-702
    [22]A framework to develop an enterprise information portal for contract manufacturingChan, M. F. S. (Dept. of Manufacturing Engineering, Hong Kong Polytechnic University); Chung, W. W. C. Source:International Journal of Production Economics, v 75, n 1-2, Oct 1,2002, p 113-126
    [23]Collaborative knowledge management in the extended enterprise:Supported by an information portal. Wang, Qing (Department of Automation, Tsinghua University); Li, Qing; Shang, Yue Source:Proceedings of the IEEE International Conference on Systems, Man and Cybernetics, v 1,2003, p 516-521
    [24]胡峰.企业信息门户应用研究[J].科技信息,2006.3
    [25]汪荣辉,刘志军,王卫理,何怡.企业信息门户中应用系统集成的分析与实现[J].电信技术,2008.5
    [26]Knowledge acquisition via three learning processes in enterprise information portals:Learning by-investment, learning-by-doing, and learning-from-othersRyu, Chungsuk (School of Management, State University of New York at Buffalo,306 Jacobs Management Center); Kim, Yong Jin; Chaudhury, Abhijit; Rao, H. Raghav Source:MIS Quarterly:Management Information Systems, v 29, n 2, June,2005, p 245-278
    [27]乐洋.企业信息门户的构建技术研究[J]科技资讯,2006.6
    [28]张少应,胡宏涛,赵亚妮.企业信息门户的研究及应用实例分析[J]电脑开发与应用,第19卷第5期
    [29]financialprinter. com takes the enterprise information portal plungeKincaid-Yoshikawa, Carla (Collaborative Strategies) Source:Storage Management Solutions, v 5, n 4,2000, p 60-62,72
    [30]徐碧云,王志坚,张少柏.企业信息门户关键技术研究[J]计算机应用研究,2005.1
    [31]徐碧云,王志坚,张少柏.企业信息门户关键技术研究[J]计算机应用研究,2005.1
    [32]王文革,周凤珍,智海燕.企业信息门户与统一的用户安全认证体系[J]电力信息化,2007.5
    [32]储节旺,杨宗跃,闻波.企业知识门户的作用与构建[J]情报理论与实践.2008.4
    [33]Research of the enterprise information portal based on Jetspeed Tian, Hong (Sch. of Computer Science and Technology, Wuhan Univ. of Technology); Yang, Geng Source:Wuhan Ligong Daxue Xuebao/Journal of Wuhan University of Technology, v 27, n 4, April,2005, p 89-92 Language:Chinese
    [34]徐碧云,王志坚,张少柏.企业信息门户关键技术研究[J]计算机应用研究,2005.1
    [35]An identification and classification of enterprise portal functions and features Raol, Jaydip M. (CACI Incorporated); Koong, Kai S.; Liu, Lai C.; Yu, Chun S. Source:Industrial Management and Data Systems, v 103, n 8-9,2003, p 693-702
    [36]赵青.特色企业信息门户网站的构建[J]中国科技信息,2008,4
    [37]周黎.企业信息门户及解决方案研究[D]大连海事大学,2007,3
    [38]Analysis of concept and implementation of project information portal Dai, Bin (Research Institute of Project Administration and Management, Tongji University) Source:Tongji Daxue Xuebao/Journal of Tongji University, v 33, n 7, July,2005, p 990-994
    [39]赵青.特色企业信息门户网站的构建[J]中国科技信息,2008年第4期
    [40]吴俊.项目信息门户在大型建设项目中的应用探讨[J]建筑经济,2007.10
    [41]刘完芳,欧阳常青.信息门户技术与应用研究[J]计算机与信息技术,2007.6
    [42]刘完芳,欧阳常青.信息门户技术与应用研究[J]计算机与信息技术,2007.6
    [43]王美琴,包平.学科信息门户的资源更新与维护机制研究[J]四川图书馆学报,2007年2期总第156期
    [44]陈晓毅.学科信息门户研究的文献计量分析[J]现代情报,2007,4
    [45]ESign:An enterprise portal for secure document management Shi, Jiaohong (RSA Security); Ouyang, JinsongSource:Proceedings of the 2005 IEEE International Conference on Information Reuse and Integration, IRI-2005, v 2005, Proceedings of the 2005 IEEE International Conference on Information Reuse and Integration, IRI-2005,2005, p 481-486
    [46]冯璐.学科信息门户资源评价相关问题[J]现代情报,2007,1
    [47]于连城.应用系统功能在企业信息门户中的集成[J]ELECTRIC POWER IT,2008,1:6
    [48]苏博.基于数据仓库的企业信息门户研究[D]东北财经大学,2005.12
    [49]王冬梅,宋绍成,孙艳.智能企业信息门户的关键技术研究[J]情报科学2008,7
    [50]王冬梅,宋绍成,孙艳.智能企业信息门户的关键技术研究[J]情报科学2008,7
    [51]An identification and classification of enterprise portal functions and featuresRaol, Jaydip M. (CACI Incorporated); Koong, Kai S.; Liu, Lai C.; Yu, Chun S. Source:Industrial Management and Data Systems, v 102, n 7,2002, p 390-399
    [52]Enterprise portal for Internet business Nishikiori, Masaaski (Fujitsu Ltd) Source:Fujitsu Scientific and Technical Journal, v 36, n 2,2000, p 211-217
    [53]The collaborative information portal and NASA's Mars Rover mission Mak, Ronald (Univ. Affiliated Research Center, University of California); Walton, Joan Source:IEEE Internet Computing, v9, n1, January/February,2005, p 20-26
    [54]武琦,电力企业信息门户的设计与实现[D]天津大学,2005.12
    [55]林满山,郭荷清.单点登录技术的现状及发展[J].计算机应用,2004,6(24):248-250
    [56]王冬梅.智能决策支持系统在智能企业信息门户中的应用[J]情报科学,Vo1.26,No.8August,2008
    [57]郭旋.企业信息门户中统一认证系统的研究与实现[D]北京邮电大学,2008.3
    [58]武琦,电力企业信息门户的设计与实现[D]天津大学,2005.12
    [59]Library portals and enterprise portals:Why libraries need to be at the centre of enterprise portal projects Car■n, Mark (Dynix Inc., The Chequers) Source: Information Services and Use, v 24, n 4,2004, p 171-177
    [60]郭旋.企业信息门户中统一认证系统的研究与实现[D]北京邮电大学,2008.3
    [61]Enterprise information portals:Efficacy in the information intensive small to medium sized business Wojtkowski, Wita; Major, Marshall Source:Annals of Cases on Information Technology, v 6,2004, p 90-100
    [62]Building enterprise portals:Principles to practice Hazra, Tushar K. (EpitomiOne Incorporated) Source:Proceedings-International Conference on Software Engineering,2002, p 623-633
    [63]孙雷.信息门户单点登陆系统的研究与实现[D].大连海事大学,2006
    [64]郭旋.企业信息门户中统一认证系统的研究与实现[D].北京邮电大学,2008.3
    [65]吴俊.项目信息门户在大型建设项目中的应用探讨[J].建筑经济,2007.10
    [66]徐碧云,王志坚,张少柏.企业信息门户关键技术研究[J].计算机应用研究,2005.1
    [67]储节旺,杨宗跃,闻波.企业知识门户的作用与构建[J].情报理论与实践.2008.4
    [68]An identification and classification of enterprise portal functions and features Raol, Jaydip M. (CACI Incorporated); Koong, Kai S.; Liu, Lai C.; Yu, Chun S. Source:Industrial Management and Data Systems, v 103, n 8-9,2003, p 693-702
    [69]林满山,郭荷清.单点登录技术的现状及发展[J].计算机应用,2004,6(24):248-250
    [70]刘志强,基于应用服务器的企业级应用安全体系的研究[D].西北工业大学,2004
    [71]陈旭晖,林世平等.基于Web服务的单点登陆系统[J].福建电脑,2006,3:151-152
    [72]李旭伟,汤丽萍等.B/S架构的单点登陆系统模型[J].四川大学学报2006,38(2):132-136
    [73]阎光伟.基于公开密钥基础设施的单点登录系统[D].北京理工大学,2003,9
    [74]Draft Recommendation X.509, The Directory-Authentication Framework, Version 7, Glouccester,1999
    [75]Sanhu Ravi S, CoyncEJ, FcinstcinHL, YoumanCE. Role-based access control model, IEEE Computer,2003,20(2)
    [76]苏新宁等编著.电子政务技术[M].北京:国防工业出版社,2003,1
    [77]陆敬筠,邵锡军编著.电子政务技术导论[M].北京:北京大学出版社,2005,5
    [78]Realization of single sign-on in enterprise information portal Tan, Liqiu (Information Science and Engineering College, Central South University); Fei, Yaoping; Li, Jianhua Source:Jisuanji Gongcheng/Computer Engineering,2005
    [79]郭旋.企业信息门户中统一认证系统的研究与实现[D].北京邮电大学,2008.3
    [80]刘志强,基于应用服务器的企业级应用安全体系的研究[D].西北工业大学,2004
    [81]于连城.应用系统功能在企业信息门户中的集成[J].ELECTRIC POWER IT,2008,4:6
    [82]赵青.特色企业信息门户网站的构建[J].中国科技信息,2008,4
    [83]徐碧云,王志坚,张少柏.企业信息门户关键技术研究[J].计算机应用研究,2005.1
    [84]阎光伟.基于公开密钥基础设施的单点登录系统[D].北京理工大学,2003,9

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700