Implementasi Otentikasi Banyak Faktor Berbasis Protokol Uaf (Universal Authentication Framework) pada Aplikasi MyITS SSO (Single Sign On)

Prabowo, Djohan (2019) Implementasi Otentikasi Banyak Faktor Berbasis Protokol Uaf (Universal Authentication Framework) pada Aplikasi MyITS SSO (Single Sign On). Other thesis, Institut Teknologi Sepuluh Nopember.

[thumbnail of 05111540000067-Undergraduate_Theses.pdf] Text
05111540000067-Undergraduate_Theses.pdf
Restricted to Repository staff only

Download (4MB) | Request a copy

Abstract

MyITS SSO (Single Sign On) adalah teknologi yang mengizinkan pengguna agar dapat mengakses data ITS hanya dengan menggunakan satu akun saja. Teknologi yang digunakan pada MyITS SSO adalah protokol OpenID Connect. Saat ini metode otentikasi yang diterapkan pada MyITS SSO menggunakan username dan password. Penggunaan password memungkinkan untuk dicuri apabila pengguna tidak berhati-hati dalam menggunakannya. Menerapkan metode otentikasi yang lebih aman dengan mengimplementasikan protokol Webauthn. Metode otentikasi ini menggunakan otentikator built in atau otentikator eksternal. Pada protokol ini masih memiliki kekurangan, yaitu beberapa browser tidak support protokol Webauthn, perangkat komputer dengan otentikator built in masih jarang dan otentikator eksternal harganya mahal. Di sisi lain lebih banyak orang yang memiliki smartphone dengan otentikator biometrik dibandingkan komputer atau laptop dengan built in otentikator. Oleh karena itu dibutuhkan protokol yang dapat memanfaatkan smartphone sebagai otentikator. Terdapat protokol FIDO UAF (Universal Authentication Framework) yang memanfaatkan smartphone sebagai otentikator. FIDO UAF adalah protokol otentikasi di mana berisi serangkaian keamanan agnostik teknologi untuk otentikasi yang kuat. Protokol ini memungkinkan otentikasi menggunakan biometrik pada smartphone untuk login saat mengakses website melalui desktop. Spesifikasi FIDO mendukung otentikasi banyak faktor (MFA) dan faktor tunggal (SFA) dengan kriptografi kunci publik. Tugas akhir ini menangani implementasi protokol FIDO UAF pada metode otentikasi banyak faktor pada MyITS SSO untuk meningkat keamanan, melengkapi protokol OpenID Connect, dan menutupi kekurangan otentikasi protokol Webauthn. Tugas akhir ini juga menangani pengaturan metode otentikasi dan otentikator pada aplikasi MyITS SSO.
==================================================================================================================================
MyITS SSO (Single Sign On) is a technology that allows users to access ITS data using only one account. The technology used in MyITS SSO is the OpenID Connect protocol. At present the authentication method applied to MyITS SSO uses a username and password. The use of a password allows it to be stolen if the user is not careful in using. Implement a safer authentication method by implementing the Webauthn protocol. This authentication method uses a built-in authenticator or external authenticator. This protocol still has disadvantages, some browsers do not support Webauthn protocol, some browsers do not support the Webauthn protocol, computer devices with built-in authenticators are still rare and external authenticators are expensive. Other side more people have smartphones with biometric authenticators than computers or laptops with built in authentication. Therefore a protocol is needed that can use a smartphone as an authenticator. There is the Universal Authentication Framework (FIDO) protocol that uses smartphones as authenticators. FIDO UAF is an authentication protocol which contains a series of security agnostic technologies for strong authentication. This protocol allows authentication using biometrics on smartphones to log in when accessing websites via the desktop. The FIDO specification supports multi factor (MFA) and single factor (SFA) authentication with public key cryptography. This final assignment handles the implementation of the UAF FIDO protocol on multi factor authentication methods on the OIDC MyITS to increase security, complete the OpenID Connect protocol, and cover up the lack of Webuthaut protocol. This final project also handles settings for authentication methods and authenticators on the MyITS SSO application.

Item Type: Thesis (Other)
Uncontrolled Keywords: FIDO UAF, OpenID Connect, Otentikasi, Otentikasi Banyak Faktor
Subjects: Q Science > QA Mathematics > QA76.6 Computer programming.
Q Science > QA Mathematics > QA76.754 Software architecture. Computer software
Q Science > QA Mathematics > QA76.758 Software engineering
Q Science > QA Mathematics > QA76.76.A65 Application software. Enterprise application integration (Computer systems)
Q Science > QA Mathematics > QA76.9.C55 Client/server computing
Q Science > QA Mathematics > QA9.58 Algorithms
Divisions: Faculty of Information Technology > Informatics Engineering > 55201-(S1) Undergraduate Thesis
Depositing User: Djohan Prabowo
Date Deposited: 23 Jul 2026 06:08
Last Modified: 23 Jul 2026 06:08
URI: http://repository.its.ac.id/id/eprint/65266

Actions (login required)

View Item View Item