• DocumentCode
    2843399
  • Title

    Extension for information card systems to achieve User-Controlled Automated Identity Delegation

  • Author

    Hoellrigl, Thorsten ; Kuehner, Holger ; Dinger, Jochen ; Hartenstein, Hannes

  • Author_Institution
    Steinbuch Centre for Comput. (SCC) & Inst. of Telematics, Karlsruhe Inst. of Technol. (KIT), Karlsruhe, Germany
  • fYear
    2011
  • fDate
    23-27 May 2011
  • Firstpage
    1188
  • Lastpage
    1191
  • Abstract
    The growing number of IT services in distributed systems is directly related to the security and privacy of personal data. User-centric federated identity management (FIM) attends to the privacy issue by enabling users to approve each data dissemination between the providers of identity-related information, so-called identity providers (IdPs), and the consumers of this information, the service providers (SPs). Furthermore, user-centric FIM tries to improve security and usability by providing users with a consistent digital-identity experience using so-called information cards (InfoCards). The InfoCard-based approach can help to improve usability, privacy and security, however, the approach is limited to front-channel communication and requires that each data exchange is manually approved by the user. A back-channel communication might be required in scenarios, in which an IdP wants to notify SPs about e.g. a deactivation of a user. In [3] we proposed an approach, named User-Controlled Automated Identity Delegation, that allows a back-channel communication by automating user approval based on delegation. In this paper we demonstrate the practicality of the approach in a real-world scenario by providing a performance evaluation conducted on a prototypical implementation.
  • Keywords
    data privacy; distributed processing; electronic data interchange; human computer interaction; user centred design; FIM; IT services; InfoCard based approach; back channel communication; data dissemination; data exchange; digital identity experience; distributed systems; identity providers; identity related information; information card system; information cards; personal data privacy; security; service providers; usability; user centric FIM; user centric federated identity management; user controlled automated identity delegation; Cryptography; Databases; Joining processes; Lead; Random access memory; Reliability; Usability;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Integrated Network Management (IM), 2011 IFIP/IEEE International Symposium on
  • Conference_Location
    Dublin
  • Print_ISBN
    978-1-4244-9219-0
  • Electronic_ISBN
    978-1-4244-9220-6
  • Type

    conf

  • DOI
    10.1109/INM.2011.5990580
  • Filename
    5990580