DocumentCode
2413089
Title
A Novel Role- and Certificate-Based Single Sign-On System for Emergency Rescue Operations
Author
Tran, Thang ; Sbeiti, Mohamad ; Wietfeld, Christian
Author_Institution
Commun. Networks Inst. (CNI), Tech. Univ. Dortmund, Dortmund, Germany
fYear
2011
fDate
5-9 June 2011
Firstpage
1
Lastpage
6
Abstract
In large scale disaster management operations with hundreds and thousands of victims, fast access to distributed heterogeneous information of different organizations is required for efficient and reliable dispensation of rescue operations. The development of such emergency systems poses a big challenge, if requirements such as performance, security and reliability have to be fulfilled simultaneously. In this paper, we propose a novel Role integrated Certificate-based Single Sign-On (RC-SSO) solution for fast mobile access between first responders at the incident scene and their distributed organizations. Beside the illustration of operational details of the RC-SSO solution, we validate our concept by implementing an experimental prototype as proof-of-concept for a limited number of users. Furthermore, we design a simulation model to determine the performance boundary of our solution under high user density. In contrast to other related emergency system solutions, our approach does not employ a so-called Identity Provider (IDP) for authentication and authorization process and thus reduces additional communication cost as well. A comparison of our proposed solution to an IDP based classical single sign-on counterparts i.e. Security Assertion Markup Language (SAML) shows that our RC-SSO outperforms these by up to 80%. In addition RC-SSO ensures high data security level with negligible overhead compared to the standard security protocol SSL/TLS.
Keywords
authorisation; emergency services; public information systems; SAML; Security Assertion Markup Language; authorization process; certificate-based single sign-on system; emergency rescue operations; identity provider; large scale disaster management operations; mobile access; role-based single sign-on system; security protocol; Authentication; Authorization; Hospitals; Organizations; Servers; Time factors;
fLanguage
English
Publisher
ieee
Conference_Titel
Communications (ICC), 2011 IEEE International Conference on
Conference_Location
Kyoto
ISSN
1550-3607
Print_ISBN
978-1-61284-232-5
Electronic_ISBN
1550-3607
Type
conf
DOI
10.1109/icc.2011.5962864
Filename
5962864
Link To Document