DocumentCode
759012
Title
Trust Negotiation in Identity Management
Author
Spantzel, Abhilasha-Bhargav ; Squicciarini, Anna C. ; Bertino, Elisa
Author_Institution
Purdue Univ., West Lafayette, IN
Volume
5
Issue
2
fYear
2007
Firstpage
55
Lastpage
63
Abstract
Most organizations require the verification of personal information before providing services, and the privacy of such information is of growing concern. The authors show how federated identity management systems can better protect users´ information when integrated with trust negotiation. In today´s increasingly competitive business environment, more and more leading organizations are building Web-based infrastructures to gain the strategic advantages of collaborative networking. However, to facilitate collaboration and fully exploit such infrastructures, organizations must identify each user in the collaborative network as well as the resources each user is authorized to access. User identification and access control must be carried out so as to maximize user convenience and privacy without increasing organizations1 operational costs. A federation can serve as the basic context for determining suitable solutions to this issue. A federation is a set of organizations that establish trust relationships with respect to the identity information-the federated identity information-that is considered valid. A federated identity management system (idM) provides a group of organizations that collaborate with mechanisms for managing and gaining access to user identity information and other resources across organizational boundaries
Keywords
authorisation; data privacy; groupware; Web-based infrastructures; access control; collaborative networking; federated identity information; federated identity management system; information privacy; personal information verification; trust negotiation; user identification; Access protocols; Authentication; Computer security; Identity management systems; Information security; Markup languages; Navigation; Open systems; Privacy; Protection; Identity management; Liberty Alliance; WS-Federation; automated trust negotiation; federated identity information;
fLanguage
English
Journal_Title
Security & Privacy, IEEE
Publisher
ieee
ISSN
1540-7993
Type
jour
DOI
10.1109/MSP.2007.46
Filename
4140991
Link To Document