skip to main content
10.1145/1551722.1551747acmotherconferencesArticle/Chapter ViewAbstractPublication Pageseatis-orgConference Proceedingsconference-collections
research-article

Towards dynamic trust establishment for identity federation

Published: 03 June 2009 Publication History

Abstract

Federation has emerged as a key concept for identity management, as it is the basis to reduce complexity in the companies and improve user experience. However, the problem of establishing identity federations in dynamic open environments, where it is desirable to speed up the processes of service provisioning and deprovisioning, has not been fully addressed. This paper reviews the existing frameworks for identity federation, analyzing the underlying trust mechanisms and its suitability to be applied in the mentioned environments. Finally, we propose a generic extension for the Security Assertion Markup Language (SAML) standard in order to facilitate the creation of federation relationships in a secure dynamic way between prior unknown parties.

References

[1]
P. Harding, L. Johansson, and N. Klingenstein. Dynamic security assertion markup language: Simplifying single sign-on. IEEE Security & Privacy, 6(2):83--85, March/April 2008.
[2]
D. Hardt, J. Bufu, and J. Hoyt. Openid attribute exchange 1.0.
[3]
J. Hodges. Technical comparison: OpenID and SAML - Draft 06. January 2008.
[4]
Internet2. Shibboleth architecture. Available in http://shibboleth.internet2.edu.
[5]
A. Jøsang, R. Ismail, and C. Boyd. A survey of trust and reputation systems for online service provision. Decis. Support Syst., 43(2):618--644, 2007.
[6]
LA. Liberty id-ff protocols and schema specification. Available in http://www.projectliberty.org.
[7]
Liberty alliance single sign-on. Available in http://lasso.entrouvert.org/.
[8]
E. Maler and D. Reed. Options and issues in federated identity management. IEEE Security & Privacy, 6(2):16--23, March/April 2008.
[9]
OASIS. Security assertion markup language (saml) v. 2.0. technical overview. http://saml.xml.org.
[10]
OpenID. Openid authentication 2.0. Available in http://www.openid.net.
[11]
D. Recordon, M. Jones, J. Bufu, J. Daugherty, and N. Sakimura. Openid provider authentication policy extension 1.0. Available in http://www.openid.net.
[12]
SymLabs. ZXID: Open SAML implementation in C. Available in http://www.zxid.org.
[13]
H. Tschofenig, J. Hodges, J. Peterson, J. Polk, and D. Sicker. SIP SAML Profile and binding. Technical Report draft-ietf-sip-saml-06, March 2009.
[14]
Web services federation language version 1.1, December 2006.

Cited By

View all

Index Terms

  1. Towards dynamic trust establishment for identity federation

      Recommendations

      Comments

      Information & Contributors

      Information

      Published In

      cover image ACM Other conferences
      EATIS '09: Proceedings of the 2009 Euro American Conference on Telematics and Information Systems: New Opportunities to increase Digital Citizenship
      June 2009
      207 pages
      ISBN:9781605583983
      DOI:10.1145/1551722
      Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

      In-Cooperation

      Publisher

      Association for Computing Machinery

      New York, NY, United States

      Publication History

      Published: 03 June 2009

      Permissions

      Request permissions for this article.

      Check for updates

      Qualifiers

      • Research-article

      Conference

      EATIS '09

      Acceptance Rates

      Overall Acceptance Rate 17 of 64 submissions, 27%

      Contributors

      Other Metrics

      Bibliometrics & Citations

      Bibliometrics

      Article Metrics

      • Downloads (Last 12 months)9
      • Downloads (Last 6 weeks)0
      Reflects downloads up to 01 Jan 2025

      Other Metrics

      Citations

      Cited By

      View all

      View Options

      Login options

      View options

      PDF

      View or Download as a PDF file.

      PDF

      eReader

      View online with eReader.

      eReader

      Media

      Figures

      Other

      Tables

      Share

      Share

      Share this Publication link

      Share on social media