Title :
Extending the Shibboleth identity management model with a networked user profile
Author :
Adam Dudczak;Marcin Helinski;Cezary Mazurek;Marcin Mielnicki;Marcin Werla
Author_Institution :
Pozna? Supercomputing and Networking Center, Noskowskiego 12/14, 61-704, Poland
fDate :
5/1/2008 12:00:00 AM
Abstract :
In this paper we describe an extension of the Shibboleth (Internet2 federated identity management middleware) model that allows different Service Providers (SP) to manage the shared user profiles. Such profiles may be shared among multiple instances of the same SPs (e.g. multiple digital libraries) or by several different SPs (e.g. a digital library and an educational portal). The XML-encoded profiles are stored and managed by our Shibboleth extension - the profile provider (PP). It consists of two layers: a RESTful service for the profile management, and a communication module responsible for integration with the Shibboleth infrastructure. This way the PP provides a secure interaction also with systems that are not compatible with Shibboleth and is especially useful in Web 2.0 applications.
Keywords :
"Libraries","Educational institutions","Authorization","Protocols","Data models","Security","Authentication"
Conference_Titel :
Information Technology, 2008. IT 2008. 1st International Conference on
Print_ISBN :
978-1-4244-2244-9
DOI :
10.1109/INFTECH.2008.4621619