• DocumentCode
    1066454
  • Title

    Attribute Aggregation in Federated Identity Management

  • Author

    Chadwick, David W. ; Inman, George

  • Author_Institution
    Univ. of Kent, Canterbury
  • Volume
    42
  • Issue
    5
  • fYear
    2009
  • fDate
    5/1/2009 12:00:00 AM
  • Firstpage
    33
  • Lastpage
    40
  • Abstract
    Most federated identity management systems are limited by users´ ability to choose only one identity provider per service session. A proposed linking service lets users securely link their various identity provider (IdP) accounts, enabling the system to aggregate attributes from multiple authoritative sources automatically without requiring users to authenticate separately to each IdP.
  • Keywords
    authorisation; message authentication; attribute-based access control; authoritative sources; authorization; digital identity attributes; federated identity management; identity provider accounts; role-based access control; Aggregates; Authorization; Certification; Cryptography; Databases; Identity management systems; Privacy; Public key; Relays; Strips; Attribute aggregation; CardSpace; Identity management systems; Liberty Alliance; Linking service; SAML; Security & privacy;
  • fLanguage
    English
  • Journal_Title
    Computer
  • Publisher
    ieee
  • ISSN
    0018-9162
  • Type

    jour

  • DOI
    10.1109/MC.2009.143
  • Filename
    5070036