Title :
Seamless authentication across heterogeneous networks using Generic Bootstrapping systems
Author :
Targali, Yousif ; Choyi, Vinod ; Shah, Yogendra
Author_Institution :
InterDigital Commun., LLC, King of Prussia, PA, USA
Abstract :
With the increasing demand for mobile data services and increased availability of multimode devices with multiple wireless interfaces, seamless mobility and service continuity across heterogeneous networks has become a differentiating service for Operators to offer users an enhanced mobile experience. In recent years, the Federated Identity Management (IdM) standards and technologies have rapidly evolved to address security, user experience, and privacy needs from an application layer perspective or as seen from the end user. As a result of these Federated IdM activities, a Single Sign-On (SSO) concept has been created in which a user may use a single set of authentication credentials to gain access to multiple independent Application Services. This paper provides an overview of the various layers of security in a communications protocol stack and then presents an approach to achieve seamless mobility across heterogeneous networks based on Federated Identity systems. By leveraging a pre-established application layer security association, access layer authentication credentials may be generated using a bootstrapping mechanism to enable authentication and setup of a secure channel in an on-demand, automated and seamless manner may be carried out whilst roaming across disparate networks. A comparison of the proposed scheme and state-of-the-art techniques is included.
Keywords :
authorisation; cryptographic protocols; data privacy; mobility management (mobile radio); statistical analysis; Federated IdM activities; Federated Identity Management standards; IdM standards; SSO concept; access layer authentication; application layer; communications protocol stack; disparate networks; generic bootstrapping systems; heterogeneous networks; layer security association; mobile data services; multimode devices; multiple independent application services; multiple wireless interfaces; privacy; seamless authentication; seamless mobility; service continuity; single sign-on concept; user experience; Authentication; IEEE 802.11 Standards; Mobile communication; Protocols; Servers; Wireless LAN; 3GPP-WLAN Interworking; Bootstrapping; EAP-AKA; EAP-RP; EAP-SIM; Federated Identity; GBA; OpenID; OpenID-Connect; SSO;
Conference_Titel :
Wireless Communications and Mobile Computing Conference (IWCMC), 2013 9th International
Conference_Location :
Sardinia
Print_ISBN :
978-1-4673-2479-3
DOI :
10.1109/IWCMC.2013.6583548