An integrated approach to federated identity and privilege management in open systems

被引:24
|
作者
Bhatti, Rafae [1 ]
Bertino, Elisa
Ghafoor, Arif
机构
[1] IBM Corp, Almaden Res Ctr, San Jose, CA 95120 USA
[2] Purdue Univ, Sch Elect & Comp Engn, W Lafayette, IN 47907 USA
[3] Purdue Univ, Dept Computat Sci, W Lafayette, IN 47907 USA
[4] Purdue Univ, Ctr Educ & Res Informat Assurance & Secur, W Lafayette, IN 47907 USA
关键词
D O I
10.1145/1216016.1216025
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated identity and privilege management is the key to seamless and secure enterprise integration and collaboration on the Web. The development of Web-based federated identity solutions has advanced more rapidly compared to Web-based privilege management mechanisms. Both are cornerstones of an access management framework and critical to the effectiveness of the overall mechanism. An integrated approach to federated identity and privilege management specifically designed for Web-based platforms, which satisfy several requirements including, single sign-on (SSO), effective access control, and decentralized model. The concept behind federated identity and privilege management mechanisms is motivated by the classical authentication and authorization protocols. A basic requirement for authorization model is that it must satisfy its suitability to Web-based applications. Future challenges include integrating specification with existing directory schemes to support property-based credentials.
引用
收藏
页码:81 / 87
页数:7
相关论文
共 50 条
  • [1] Federated Identity Management as a Basis for Integrated Information Management
    Schell, Frank
    Hoellrigl, Thorsten
    Hartenstein, Hannes
    [J]. IT-INFORMATION TECHNOLOGY, 2009, 51 (01): : 14 - 23
  • [2] Survey on Federated Identity Management Systems
    Sharma, Arvind Kumar
    Lamba, Chattar Singh
    [J]. RECENT TRENDS IN NETWORKS AND COMMUNICATIONS, 2010, 90 : 509 - 517
  • [3] On Identity Assurance in the Presence of Federated Identity Management Systems
    Baldwin, Adrian
    Mont, Marco Casassa
    Beres, Yolanta
    Shiu, Simon
    [J]. DIM'07: PROCEEDINGS OF THE 2007 ACM WORKSHOP ON DIGITAL IDENTITY MANAGEMENT, 2007, : 27 - 35
  • [4] A Federated Digital Identity Management Approach for Business Processes
    Bertino, Elisa
    Ferrini, Rodolfo
    Musci, Andrea
    Paci, Federica
    Steuer, Kevin J.
    [J]. COLLABORATIVE COMPUTING: NETWORKING, APPLICATIONS AND WORKSHARING, 2009, 10 : 194 - +
  • [5] A USER-CENTRIC APPROACH FOR FEDERATED IDENTITY MANAGEMENT
    Bergadano, Francesco
    Accornero, Renato
    Lucisano, Giovanna
    Rispoli, Daniele
    [J]. INTERNATIONAL JOURNAL ON INFORMATION TECHNOLOGIES AND SECURITY, 2013, 5 (01): : 3 - 18
  • [6] An Authentication Trust Metric for Federated Identity Management Systems
    Gomi, Hidehito
    [J]. SECURITY AND TRUST MANAGEMENT, 2011, 6710 : 116 - 131
  • [7] Federated identity management
    Shim, SSY
    Bhalla, G
    Pendyala, V
    [J]. COMPUTER, 2005, 38 (12) : 120 - 122
  • [8] Benefits of Federated Identity Management - A Survey from an Integrated Operations Viewpoint
    Jensen, Jostein
    [J]. Availability, Reliability and Security for Business, Enterprise and Health Information Systems, 2011, 6908 : 1 - 12
  • [9] Performance Evaluation of Identity and Access Management Systems in Federated Environments
    Schell, Frank
    Dinger, Jochen
    Hartenstein, Hannes
    [J]. SCALABLE INFORMATION SYSTEMS, 2009, 18 : 90 - +
  • [10] Authentication Trust Metric and Assessment for Federated Identity Management Systems
    Gomi, Hidehito
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2012, E95D (01) : 29 - 37