BlindIdM: A privacy-preserving approach for identity management as a service

被引:0
|
作者
David Nuñez
Isaac Agudo
机构
[1] Universidad de Málaga,Network, Information and Computer Security Laboratory
关键词
Identity management; Cloud computing; Proxy re-encryption; SAML; Privacy; Data confidentiality;
D O I
暂无
中图分类号
学科分类号
摘要
Identity management is an almost indispensable component of today’s organizations and companies, as it plays a key role in authentication and access control; however, at the same time, it is widely recognized as a costly and time-consuming task. The advent of cloud computing technologies, together with the promise of flexible, cheap and efficient provision of services, has provided the opportunity to externalize such a common process, shaping what has been called Identity Management as a Service (IDaaS). Nevertheless, as in the case of other cloud-based services, IDaaS brings with it great concerns regarding security and privacy, such as the loss of control over the outsourced data. In this paper, we analyze these concerns and propose BlindIdM, a model for privacy-preserving IDaaS with a focus on data privacy protection. In particular, we describe how a SAML-based system can be augmented to employ proxy re-encryption techniques for achieving data confidentiality with respect to the cloud provider, while preserving the ability to supply the identity service. This is an innovative contribution to both the privacy and identity management landscapes.
引用
收藏
页码:199 / 215
页数:16
相关论文
共 50 条
  • [1] BlindIdM: A privacy-preserving approach for identity management as a service
    Nunez, David
    Agudo, Isaac
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2014, 13 (02) : 199 - 215
  • [2] A Trusted Approach for Decentralised and Privacy-Preserving Identity Management
    Torres Moreno, Rafael
    Garcia-Rodriguez, Jesus
    Bernal Bernabe, Jorge
    Skarmeta, Antonio
    [J]. IEEE ACCESS, 2021, 9 : 105788 - 105804
  • [3] Privacy-preserving user identity in Identity-as-a-Service
    Tri Hoang Vo
    Fuhrmann, Woldemar
    Fischer-Hellmann, Klaus-Peter
    [J]. 2018 21ST CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS AND WORKSHOPS (ICIN), 2018,
  • [4] Secure and Privacy-Preserving Identity Management in the Cloud
    Zwattendorfer, Bernd
    Krenn, Stephan
    Loruenser, Thomas
    [J]. ERCIM NEWS, 2016, (104): : 44 - +
  • [5] OLYMPUS: A distributed privacy-preserving identity management system
    Torres Moreno, Rafael
    Garcia Rodriguez, Jesus
    Timon Lopez, Cristina
    Bernal Bernabe, Jorge
    Skarmeta, Antonio
    [J]. 2020 GLOBAL INTERNET OF THINGS SUMMIT (GIOTS), 2020,
  • [6] Privacy-Preserving PayString Service
    de Cristo, Flaviene Scheidt
    Shbair, Wazen M.
    Trestioreanu, Lucian
    Malhotra, Aanchal
    State, Radu
    [J]. 2021 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY (ICBC), 2021,
  • [7] Privacy-Preserving Warning Management for an Identity Leakage Warning Network
    Kasem-Madani, Saffija
    Malderle, Timo
    Boes, Felix
    Meier, Michael
    [J]. EUROPEAN INTERDISCIPLINARY CYBERSECURITY - EICC 2020, 2020,
  • [8] Holistic Privacy-Preserving Identity Management System for the Internet of Things
    Bernal Bernabe, Jorge
    Hernandez-Ramos, Jose L.
    Skarmeta Gomez, Antonio F.
    [J]. MOBILE INFORMATION SYSTEMS, 2017, 2017
  • [9] Ubiquitous privacy-preserving identity managment
    Verslype, Kristof
    De Decker, Bart
    [J]. PROCEEDINGS OF THE IFIP TC 11/ 23RD INTERNATIONAL INFORMATION SECURITY CONFERENCE, 2008, : 589 - 603
  • [10] PriMan: A Privacy-Preserving Identity Framework
    Verslype, Kristof
    Verhaeghe, Pieter
    Lapon, Jorn
    Naessens, Vincent
    De Decker, Bart
    [J]. DATA AND APPLICATIONS SECURITY AND PRIVACY XXIV, PROCEEDINGS, 2010, 6166 : 327 - +