A Dynamic Federated Identity Management Using OpenID Connect

被引:0
|
作者
Alsadeh, Ahmad [1 ]
Yatim, Nasri [2 ]
Hassouneh, Yousef [2 ]
机构
[1] Birzeit Univ, Elect & Comp Engn Dept, POB 14, Birzeit, Palestine
[2] Birzeit Univ, Comp Sci Dept, POB 14, Birzeit, Palestine
来源
FUTURE INTERNET | 2022年 / 14卷 / 11期
关键词
identity management; identity federation; OpenID connect; dynamic client registration;
D O I
10.3390/fi14110339
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Identity federation allows one to link a user's digital identities across several identity management systems. Federated identity management (FIM) ensures that users have easy access to the available resources. However, scaling FIM to numerous partners is a challenging process due to the interoperability issue between different federation architectures. This study proposes a dynamic identity federation model to eliminate the manual configuration steps needed to establish an organizational identity federation by utilizing the OpenID Connect (OIDC) framework. The proposed model consists of three major steps to establish dynamic FIM: first, the discovery of the OpenID service provider, which indicates the location of the partner organization; second, the registration of the OpenID relying party, which allows the organization and its partner to negotiate information for establishing the federation; finally, establishing the dynamic trust federation. The proposed dynamic FIM model allows applications to provide services to end-users coming from various domains while maintaining a trust between clients and service providers. Through our proposed dynamic identity federation model, organizations can save hundreds of hours by achieving dynamic federation in runtime and serving a large number of end-users.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] Securing Digital Identities in the Cloud by Selecting an Apposite Federated Identity Management from SAML, OAuth and OpenID Connect
    Naik, Nitin
    Jenkins, Paul
    2017 11TH INTERNATIONAL CONFERENCE ON RESEARCH CHALLENGES IN INFORMATION SCIENCE (RCIS), 2017, : 163 - 174
  • [2] Identity Management in E-Health: A Case Study of Web of Things application using OpenID Connect
    Domenech, Marlon Cordeiro
    Comunello, Eros
    Wangham, Michelle Silva
    2014 IEEE 16TH INTERNATIONAL CONFERENCE ON E-HEALTH NETWORKING, APPLICATIONS AND SERVICES (HEALTHCOM), 2014, : 219 - 224
  • [3] Mobile Personal Identity Provider Based on OpenID Connect
    Lo Iacono, Luigi
    Gruschka, Nils
    Nehren, Peter
    TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS, TRUSTBUS 2017, 2017, 10442 : 19 - 31
  • [4] OIDC2: Open Identity Certification With OpenID Connect
    Primbs, Jonas
    Menth, Michael
    IEEE OPEN JOURNAL OF THE COMMUNICATIONS SOCIETY, 2024, 5 : 1880 - 1898
  • [5] OpenID, an open digital identity management and authentication framework
    Liu, Runda
    Wang, Juanle
    Du, Jia
    DCABES 2007 Proceedings, Vols I and II, 2007, : 483 - 486
  • [6] A design towards personally identifiable information control and awareness in OpenID Connect identity providers
    Weingaertner, Rafael
    Westphall, Carla Merkle
    2017 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY (CIT), 2017, : 37 - 46
  • [7] Understanding and mitigating OpenID Connect threats
    Navas, Jorge
    Beltran, Marta
    COMPUTERS & SECURITY, 2019, 84 : 1 - 16
  • [8] Using externals IdPs on OpenStack: A security analysis of OpenID Connect, Facebook Connect, and OpenStack authentication
    Batista, Glauber C.
    Pillon, Mauricio A.
    Koslovski, Guilherme P.
    Miers, Charles C.
    Gonzalez, Nelson Mimura
    Simplicio, Marcos A., Jr.
    PROCEEDINGS 2018 IEEE 32ND INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2018, : 920 - 927
  • [9] OpenID as an Approach for User-centric Identity Management
    Bitzer, Stefan
    Klein, Marco
    Schumann, Matthias
    AMCIS 2010 PROCEEDINGS, 2010,
  • [10] Federated identity management
    Shim, SSY
    Bhalla, G
    Pendyala, V
    COMPUTER, 2005, 38 (12) : 120 - 122