Title :
Federated Authentication and Authorization: A Case Study
Author :
Boehm, Oliver ; Caumanns, Joerg ; Franke, Markus ; Pfaff, Oliver
Author_Institution :
Frunhofer ISSST, Berlin
Abstract :
The loose coupling of services is a key characteristic for modern IT-systems based on SOA. This paper analyzes the design and realization of SOA security in a SOA-compliant fashion. It focuses on federated authentication and authorization based on Web services security technologies. The SOA-style infrastructure of the eCR specification is used as a practical case study. eCR systems address the exchange of medical data within regional healthcare networks. Adequate IT-security and especially federated authentication and authorization are imperative for eCR systems.
Keywords :
Web services; authorisation; message authentication; software architecture; IT-systems; SOA security; SOA-compliant fashion; SOA-style infrastructure; Web services security technologies; authorization; federated authentication; medical data exchange; regional healthcare networks; Authentication; Authorization; Contracts; Data security; Hospitals; Medical services; Protection; Semiconductor optical amplifiers; Service oriented architecture; Web services; Authentication; Authorization; Enterprise SOA; Federation; electronic Case Records;
Conference_Titel :
Enterprise Distributed Object Computing Conference, 2008. EDOC '08. 12th International IEEE
Conference_Location :
Munich
Print_ISBN :
978-0-7695-3373-5
DOI :
10.1109/EDOC.2008.36