Title :
Seamless authentication and mobility across heterogeneous networks using federated identity systems
Author :
Targali, Yousif ; Choyi, Vinod ; Shah, Yogendra
Author_Institution :
InterDigital Commun. LLC., King of Prussia, PA, USA
Abstract :
With the increasing demand for mobile data services and increased availability of multimode devices with multiple wireless interfaces, seamless mobility and service continuity across heterogeneous networks has become a differentiating service for Operators to offer users an enhanced mobile experience. In recent years, the Federated Identity Management (IdM) standards and technologies have rapidly evolved to address security, user experience, and privacy needs from an application layer perspective or as seen from the end user. As a result of these Federated IdM activities, a Single Sign-On (SSO) concept has been created in which a user may use a single set of authentication credentials to gain access to multiple independent Application Services. This paper provides an overview of the various layers of security in a communications protocol stack and then presents an approach to achieve seamless mobility across heterogeneous networks based on Federated Identity systems. By leveraging a pre-established application layer security association, access layer authentication and setup of a secure channel in an on-demand, automated and seamless manner may be carried out whilst roaming across disparate networks.
Keywords :
cryptographic protocols; mobility management (mobile radio); Federated Identity Management standard; IdM standard; SSO concept; communication protocol stack; federated identity system; heterogeneous network; layer security association; mobile data services; mobility; multimode device; multiple independent application services; multiple wireless interface; seamless authentication; single sign-on concept; Authentication; IEEE 802.11 Standards; Mobile communication; Protocols; Servers; Wireless LAN; 3GPP-WLAN Interworking; Bootstrapping; EAP-AKA; EAP-RP; EAP-SIM; Federated Identity; GBA; OpenID; SSO;
Conference_Titel :
Communications Workshops (ICC), 2013 IEEE International Conference on
Conference_Location :
Budapest
DOI :
10.1109/ICCW.2013.6649425