Title : 
Extension for information card systems to achieve User-Controlled Automated Identity Delegation
         
        
            Author : 
Hoellrigl, Thorsten ; Kuehner, Holger ; Dinger, Jochen ; Hartenstein, Hannes
         
        
            Author_Institution : 
Steinbuch Centre for Comput. (SCC) & Inst. of Telematics, Karlsruhe Inst. of Technol. (KIT), Karlsruhe, Germany
         
        
        
        
        
        
            Abstract : 
The growing number of IT services in distributed systems is directly related to the security and privacy of personal data. User-centric federated identity management (FIM) attends to the privacy issue by enabling users to approve each data dissemination between the providers of identity-related information, so-called identity providers (IdPs), and the consumers of this information, the service providers (SPs). Furthermore, user-centric FIM tries to improve security and usability by providing users with a consistent digital-identity experience using so-called information cards (InfoCards). The InfoCard-based approach can help to improve usability, privacy and security, however, the approach is limited to front-channel communication and requires that each data exchange is manually approved by the user. A back-channel communication might be required in scenarios, in which an IdP wants to notify SPs about e.g. a deactivation of a user. In [3] we proposed an approach, named User-Controlled Automated Identity Delegation, that allows a back-channel communication by automating user approval based on delegation. In this paper we demonstrate the practicality of the approach in a real-world scenario by providing a performance evaluation conducted on a prototypical implementation.
         
        
            Keywords : 
data privacy; distributed processing; electronic data interchange; human computer interaction; user centred design; FIM; IT services; InfoCard based approach; back channel communication; data dissemination; data exchange; digital identity experience; distributed systems; identity providers; identity related information; information card system; information cards; personal data privacy; security; service providers; usability; user centric FIM; user centric federated identity management; user controlled automated identity delegation; Cryptography; Databases; Joining processes; Lead; Random access memory; Reliability; Usability;
         
        
        
        
            Conference_Titel : 
Integrated Network Management (IM), 2011 IFIP/IEEE International Symposium on
         
        
            Conference_Location : 
Dublin
         
        
            Print_ISBN : 
978-1-4244-9219-0
         
        
            Electronic_ISBN : 
978-1-4244-9220-6
         
        
        
            DOI : 
10.1109/INM.2011.5990580