ACM Home Page
Please provide us with feedback. Feedback
Cross-identifier domain discovery service for unrelated user identities
Full text PdfPdf (1.44 MB)
Source
Conference on Computer and Communications Security archive
Proceedings of the 4th ACM workshop on Digital identity management table of contents
Alexandria, Virginia, USA
SESSION: Discovery and negotiation table of contents
Pages 81-88  
Year of Publication: 2008
ISBN:978-1-60558-294-8
Authors
Marcin Dabrowski  AGH University of Science and Technology, Krakow, Poland
Piotr Pacyna  AGH University of Science and Technology, Krakow, Poland
Sponsors
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
ACM: Association for Computing Machinery
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 9,   Downloads (12 Months): 137,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/1456424.1456438
What is a DOI?

ABSTRACT

Interoperable Identity Management systems are prerequisite for novel user-centric services, which strongly rely on user identity attributes and security services. Future Identity Management systems have to include a discovery framework which will enable dynamic and automatic exchange of user identity attributes between services from different key-business areas, e.g. Internet, healthcare, e-government, e-banking, entertainment, etc. The framework should allow federating different user identities so that any of them would be sufficient to bootstrap trust relation between the user and any service. The first and fundamental step to achieve the two goals is the discovery of multiple user identities, usually unrelated to each other and hosted by a distributed environment of independent identifier domains. Current discovery mechanisms are intra-identifier domain oriented, i.e. they focus on discovering identity- and identity-based services for a given identity described by known identifier valid inside certain identifier domain. This paper proposes a discovery mechanism which overcomes this constraint and allows for inter-identifier domain (inter-federation) discovery of user identities. To the best of our knowledge, it is the first proposition that crosses the border of an identifier domain (and federation) and allows for discovery of completely unrelated identities of the user.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
R. Radhakrishnan, "Identity & Security. A Common Architecture & Framework for SOA and Network Convergence", Futuretext, 2007
 
2
Liberty Alliance Project, "Liberty ID-WSF Discovery Service Specification
 
3
Focus Group on Identity Management, "Report on Identity Management Use Cases and Gap Analysis", ITU-T, 2007
 
4
 
5
L. Jean Camp: Digital Identity, IEEE Technology and Society Magazine, Fall 2004
 
6
D.V. Thanh, I. Jorstadt, "The Ambiguity of Identity", Teletronikk, Vol.3, 2007
 
7
 
8
 
9
Anonymous -- P2P.org, http://www.anonymous-p2p.org/
 
10
Yadis Specification 1.0
 
11
XRI 2.0 Resolution
 
12
Shibboleth Architecture -- Technical Overview
 
13
Liberty Alliance Project, "Access to Identity-Enabled Web Services in Cross-Border, Inter-Federation Scenarios

Collaborative Colleagues:
Marcin Dabrowski: colleagues
Piotr Pacyna: colleagues