A Dynamic Federated Identity Management Using OpenID Connect

被引:0
|
作者
Alsadeh, Ahmad [1 ]
Yatim, Nasri [2 ]
Hassouneh, Yousef [2 ]
机构
[1] Birzeit Univ, Elect & Comp Engn Dept, POB 14, Birzeit, Palestine
[2] Birzeit Univ, Comp Sci Dept, POB 14, Birzeit, Palestine
来源
FUTURE INTERNET | 2022年 / 14卷 / 11期
关键词
identity management; identity federation; OpenID connect; dynamic client registration;
D O I
10.3390/fi14110339
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Identity federation allows one to link a user's digital identities across several identity management systems. Federated identity management (FIM) ensures that users have easy access to the available resources. However, scaling FIM to numerous partners is a challenging process due to the interoperability issue between different federation architectures. This study proposes a dynamic identity federation model to eliminate the manual configuration steps needed to establish an organizational identity federation by utilizing the OpenID Connect (OIDC) framework. The proposed model consists of three major steps to establish dynamic FIM: first, the discovery of the OpenID service provider, which indicates the location of the partner organization; second, the registration of the OpenID relying party, which allows the organization and its partner to negotiate information for establishing the federation; finally, establishing the dynamic trust federation. The proposed dynamic FIM model allows applications to provide services to end-users coming from various domains while maintaining a trust between clients and service providers. Through our proposed dynamic identity federation model, organizations can save hundreds of hours by achieving dynamic federation in runtime and serving a large number of end-users.
引用
收藏
页数:19
相关论文
共 50 条
  • [31] The Venn of identity - Options and issues in federated identity management
    Maler, Eve
    Reed, Drummond
    IEEE SECURITY & PRIVACY, 2008, 6 (02) : 16 - 23
  • [32] On Identity Assurance in the Presence of Federated Identity Management Systems
    Baldwin, Adrian
    Mont, Marco Casassa
    Beres, Yolanta
    Shiu, Simon
    DIM'07: PROCEEDINGS OF THE 2007 ACM WORKSHOP ON DIGITAL IDENTITY MANAGEMENT, 2007, : 27 - 35
  • [33] Federated identity-management protocols
    Pfitzmann, B
    Waidner, M
    SECURITY PROTOCOLS, 2005, 3364 : 153 - 177
  • [34] Adding Federated Identity Management to OpenStack
    David W. Chadwick
    Kristy Siu
    Craig Lee
    Yann Fouillat
    Damien Germonville
    Journal of Grid Computing, 2014, 12 : 3 - 27
  • [35] Adding Federated Identity Management to OpenStack
    Chadwick, David W.
    Siu, Kristy
    Lee, Craig
    Fouillat, Yann
    Germonville, Damien
    JOURNAL OF GRID COMPUTING, 2014, 12 (01) : 3 - 27
  • [36] Survey on Federated Identity Management Systems
    Sharma, Arvind Kumar
    Lamba, Chattar Singh
    RECENT TRENDS IN NETWORKS AND COMMUNICATIONS, 2010, 90 : 509 - 517
  • [37] Privacy by Design in Federated Identity Management
    Hoerbe, Rainer
    Hoetzendorfer, Walter
    2015 IEEE SECURITY AND PRIVACY WORKSHOPS (SPW), 2015, : 167 - 174
  • [38] ATTRIBUTE AGGREGATION IN FEDERATED IDENTITY MANAGEMENT
    Chadwick, David W.
    Inman, George
    COMPUTER, 2009, 42 (05) : 33 - 40
  • [39] Security Analysis of OpenID Connect Protocol with Cryptoverif in the Computational Model
    Zhang, Jinli
    Lu, Jintian
    Wan, Zhongyu
    Li, Jing
    Meng, Bo
    ADVANCES ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING, 2017, 1 : 925 - 934
  • [40] Federated Identity Management as a Basis for Integrated Information Management
    Schell, Frank
    Hoellrigl, Thorsten
    Hartenstein, Hannes
    IT-INFORMATION TECHNOLOGY, 2009, 51 (01): : 14 - 23