• DocumentCode
    2413089
  • Title

    A Novel Role- and Certificate-Based Single Sign-On System for Emergency Rescue Operations

  • Author

    Tran, Thang ; Sbeiti, Mohamad ; Wietfeld, Christian

  • Author_Institution
    Commun. Networks Inst. (CNI), Tech. Univ. Dortmund, Dortmund, Germany
  • fYear
    2011
  • fDate
    5-9 June 2011
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    In large scale disaster management operations with hundreds and thousands of victims, fast access to distributed heterogeneous information of different organizations is required for efficient and reliable dispensation of rescue operations. The development of such emergency systems poses a big challenge, if requirements such as performance, security and reliability have to be fulfilled simultaneously. In this paper, we propose a novel Role integrated Certificate-based Single Sign-On (RC-SSO) solution for fast mobile access between first responders at the incident scene and their distributed organizations. Beside the illustration of operational details of the RC-SSO solution, we validate our concept by implementing an experimental prototype as proof-of-concept for a limited number of users. Furthermore, we design a simulation model to determine the performance boundary of our solution under high user density. In contrast to other related emergency system solutions, our approach does not employ a so-called Identity Provider (IDP) for authentication and authorization process and thus reduces additional communication cost as well. A comparison of our proposed solution to an IDP based classical single sign-on counterparts i.e. Security Assertion Markup Language (SAML) shows that our RC-SSO outperforms these by up to 80%. In addition RC-SSO ensures high data security level with negligible overhead compared to the standard security protocol SSL/TLS.
  • Keywords
    authorisation; emergency services; public information systems; SAML; Security Assertion Markup Language; authorization process; certificate-based single sign-on system; emergency rescue operations; identity provider; large scale disaster management operations; mobile access; role-based single sign-on system; security protocol; Authentication; Authorization; Hospitals; Organizations; Servers; Time factors;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communications (ICC), 2011 IEEE International Conference on
  • Conference_Location
    Kyoto
  • ISSN
    1550-3607
  • Print_ISBN
    978-1-61284-232-5
  • Electronic_ISBN
    1550-3607
  • Type

    conf

  • DOI
    10.1109/icc.2011.5962864
  • Filename
    5962864