Towards a Trust Management Enabled Identity Metasystem
نویسندگان
چکیده
Existing identity metasystems provide enabling tools to manage, select, and control of digital identities but they have not provided the support of trust management that should cover how trust requirements associated with digital identities are modeled, how runtime conditions for trust are evaluated, and how the results of trust evaluation are consumed by systems/applications. In this paper, the authors propose an approach toward a trust management enabled identity metasystem that covers the analysis of trust requirements and the development of trust management system in a consistent manner. The proposed trust management architecture extends the existing identity metasystems by introducing computing components for carrying out typical trust management tasks associated with digital identities. The computing components in proposed architecture provide intelligent services for these tasks. The proposed high level architecture targets the automation of the development of the trust management layer for digital identities. DOI: 10.4018/978-1-4666-1577-9.ch007
منابع مشابه
Negotiating Trust in Identity Metasystem
Many federated identity management systems have been proposed to solve the problem of authorizing users across security domains. Although these solutions attempt to follow the user-centric design approach to empower users by letting them make important decisions on whether to release sensitive information, they do not provide much help to users in making good decisions. More importantly, privac...
متن کاملFormal Analysis of Information Card Federated Identity - Management Protocol ∗
Information Card (InfoCard) is a usercentric identity management metasystem. It has been accepted as a standard of OASIS Identity Metasystem Interoperability Technical Committee. However, there is currently a lack of security analysis to InfoCard protocol, especially, with formal methods. In this paper, we accommodate such a requirement by analyzing security properties of InfoCard protocol adop...
متن کاملImproving the Security of CardSpace
CardSpace (formerly known as InfoCard) is a digital identity management system that has recently been adopted by Microsoft. In this paper we identify two security shortcomings in CardSpace that could lead to a serious privacy violation. The first is its reliance on user judgements of the trustworthiness of service providers, and the second is its reliance on a single layer of authentication. We...
متن کاملThree Pillars of Trust: Privacy, Identity Management and Compliance
In this paper we present details of a critical requirement of many systems, namely, trust. Trust is one of the oldest issues that has taken a new incarnation with advent of the Internet. In the context of the Internet and the scientific and commercial applications it has enabled, definition of trust stands to be rewritten and reviewed. Our research indicates that privacy, identity management, a...
متن کاملSIdeCAR: Secure Identity Consent and Authentication Responder
The Identity Metasystem is an interoperable, platform independent and protocol independent architecture for user centric identity management. User centric identity management is a new paradigm of identity management that addresses some of the drawbacks of the prevalent identity management models. This technology assumes that certain security sensitive functions of identity management are perfor...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
- IJOCI
دوره 1 شماره
صفحات -
تاریخ انتشار 2010