隨著網路發展及資訊技術的不斷的更新及演進,企業的內部資訊應用系統逐漸增加並網路化,以增進及提升整體營運效率。 由於系統建置的時間與平台不盡相同,因此每個資訊系統各自擁有認證、授權等功能,且包括使用者帳號與角色等資料。對於使用者而言,必須各別登入每個系統,方可使用該系統之功能。此外,若使用者於各個系統內之帳號或密碼不同,則需記憶多組帳號與密碼。上述兩點將造成使用者之不便。 從系統管理層面而言,每個系統的授權規則皆儲存於各自的資料庫中,系統管理者必須各自維護每個系統之授權規則,其中包括:使用者-角色、角色-資源的對映關係。因此,分散於各系統的認證模組、授權模組、帳戶資料庫,將對使用者與管理者造成諸多不便。 另外企業或政府機構需要類似Yahoo、Google之類的大型入口網站功能,因為它們提供大量的綜合分類的訊息且易於檢索;換言之,企業或政府機構需要為內部員工、外部客戶群量身訂制有價值的企業訊息,以快速的因應環境變化。但是令企業感到頭痛的是,一些有價值的企業訊息獲取不易,必須整合來自不同的應用系統、不同的數據來源及不同平台的各式各樣類型的資訊及資源。 本論文擬透過整合身份管理、單一登入及入口網站相關技術解決上述問題,運用身份管理機制將多個網路資訊應用系統整合至單一身份控管平台。透過單一登入機制,使用者只需記憶一組帳號密碼,即可存取後端資訊應用系統。建立一入口網站平台,整合後端資訊應用系統,提供個人化資訊。最後本論文將以一個學校網路資訊系統環境為例,實作身份管理、單一登入及入口網站的整合。
With network development and constant renewal of the information technology and gradual progress, the information in the enterprise uses the system to increase the networking of combining gradually, in order to promote and improve whole operational efficiency. Because the time and platform of the systems construction are not the same, each information system has functions , such as authentication , authorization ,etc. each, and include the materials , such as user's account number and role ,etc.. As to user , must inscroll each system specifically , can use the function of this system . In addition, if user's account number or password in each system are different, need memory much group's account number and password. Will cause the user's inconvenience. As regards system management aspect, the mandate rule of each system is all stored in one's own databases , the system administrator must maintain the mandate rule of each system each , including: User - Relation that the role , the role - resources are right to reflect. So, disperse in the authentication mould group of every system , authorize the mould group , account database , will cause a great deal of inconvenience to user and administrator. Large-scale entry website's function that enterprises or the government organs need similar Yahoo , Google etc. in addition, because they offer a large amount of information with categorised synthesis and easy search; In other words, enterprises or the government organs need to order valuable enterprise information for interior employee , outside customer a group of quantity body, environmental change by answer fasting. But what made enterprises feel troublesome is, it is difficult that some valuable enterprise information is obtained , must combine and come from different application system , different data source and information and resource of the types of all kinds of different platforms . This thesis plans to solve above-mentioned problems through Identity Management , Single Sign-On and Portal technology , the system is combined to the single identity and accused of managing the platform to use the mechanism of management of the identity to use a lot of network message. Through inscrolling the mechanism singly, the user only takes an account of memory, can access the information application system of back end . Set up one Portal platform, combine back end information and use the system , offer individualized information. A thesis will take environment of information system of the network of a school as an example finally, do the Identity Management , Single Sign-On and Portal in fact.