A Dynamic Federated Identity Management Using OpenID Connect

被引:0
|
作者
Alsadeh, Ahmad [1 ]
Yatim, Nasri [2 ]
Hassouneh, Yousef [2 ]
机构
[1] Birzeit Univ, Elect & Comp Engn Dept, POB 14, Birzeit, Palestine
[2] Birzeit Univ, Comp Sci Dept, POB 14, Birzeit, Palestine
来源
FUTURE INTERNET | 2022年 / 14卷 / 11期
关键词
identity management; identity federation; OpenID connect; dynamic client registration;
D O I
10.3390/fi14110339
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Identity federation allows one to link a user's digital identities across several identity management systems. Federated identity management (FIM) ensures that users have easy access to the available resources. However, scaling FIM to numerous partners is a challenging process due to the interoperability issue between different federation architectures. This study proposes a dynamic identity federation model to eliminate the manual configuration steps needed to establish an organizational identity federation by utilizing the OpenID Connect (OIDC) framework. The proposed model consists of three major steps to establish dynamic FIM: first, the discovery of the OpenID service provider, which indicates the location of the partner organization; second, the registration of the OpenID relying party, which allows the organization and its partner to negotiate information for establishing the federation; finally, establishing the dynamic trust federation. The proposed dynamic FIM model allows applications to provide services to end-users coming from various domains while maintaining a trust between clients and service providers. Through our proposed dynamic identity federation model, organizations can save hundreds of hours by achieving dynamic federation in runtime and serving a large number of end-users.
引用
收藏
页数:19
相关论文
共 50 条
  • [21] Federated Identity Management for Research
    Barton, Thomas
    Gietz, Peter
    Kelsey, David
    Koranda, Scott
    Short, Hannah
    Stevanovic, Uros
    23RD INTERNATIONAL CONFERENCE ON COMPUTING IN HIGH ENERGY AND NUCLEAR PHYSICS (CHEP 2018), 2019, 214
  • [22] Federated Identity Management Challenges
    Jensen, Jostein
    2012 SEVENTH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES), 2012, : 230 - 235
  • [23] Federated Identity Management for Android
    Fongen, Anders
    PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON EMERGING SECURITY INFORMATION, SYSTEMS AND TECHNOLOGIES (SECURWARE 2011), 2011, : 77 - 82
  • [24] POSIX access to remote storage via OpenID Connect
    Fornari, Federico
    Alkhansa, Ahmad
    Costantini, Alessandro
    Pellegrino, Carmelo
    Salomoni, Davide
    26TH INTERNATIONAL CONFERENCE ON COMPUTING IN HIGH ENERGY AND NUCLEAR PHYSICS, CHEP 2023, 2024, 295
  • [25] Performance Evaluation of OpenID Connect for an IoT Information Marketplace
    Blazquez, Alberto
    Tsiatsis, Vlasios
    Vandikas, Konstantinos
    2015 IEEE 81ST VEHICULAR TECHNOLOGY CONFERENCE (VTC SPRING), 2015,
  • [26] Extending OpenID Connect Towards Mission Critical Applications
    Deeptha, R.
    Mukesh, Rajeswari
    CYBERNETICS AND INFORMATION TECHNOLOGIES, 2018, 18 (03) : 93 - 110
  • [27] Automatic Verification of Security of OpenID Connect Protocol with ProVerif
    Lu, Jintian
    Zhang, Jinli
    Li, Jing
    Wan, Zhongyu
    Meng, Bo
    ADVANCES ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING, 2017, 1 : 209 - 220
  • [28] Security analysis of the OpenID Connect protocol integration with an OpenStack cloud using an external IdP
    Batista, Glauber Cassiano
    Miers, Charles Christian
    PROCEEDINGS OF THE 2016 XLII LATIN AMERICAN COMPUTING CONFERENCE (CLEI), 2016,
  • [29] SoK: Single Sign-On Security - An Evaluation of OpenID Connect
    Mainka, Christian
    Mladenov, Vladislav
    Schwenk, Joerg
    Wich, Tobias
    2017 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY (EUROS&P), 2017, : 251 - 266
  • [30] Improving OpenID Connect federation's interoperability with web semantics
    Weingartner, Rafael
    Pereira Martins, Pedro Henrique
    Salvadori, Ivan Luiz
    Westphall, Carla Merkle
    Siqueira, Frank
    2017 IEEE/ACS 14TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2017, : 1269 - 1276