DocumentCode
1952981
Title
Aggregation of attributes from different authorities
Author
Chadwick, David
Author_Institution
University of Kent, UK
fYear
2007
fDate
17-21 Sept. 2007
Firstpage
521
Lastpage
521
Abstract
The model for grid authorisation is now reasonably well established. Attribute Authorities (or Identity Providers) assign attributes to users, and policy decision points (PDPs) at the resource sites make access control decisions based on the user’s attributes. Well known examples of AAs/IdPs are VOMS, CAS and Shibboleth, and well known examples of PDPs are XACML, PERMIS, Akenti, and LCAS. However, existing solutions are not capable of receiving attributes from multiple IdPs when the user is known by different identities at each IdP. Projects such as GridShib at Globus are making limited progress, but only in an IdP and middleware dependent way. This talk will describe the Shintau project, whose purpose is to define and build an application and middleware independent set of tools that will allow users to aggregate their attributes from multiple authorities, in a privacy preserving manner.
Keywords
Authorization; Biographies; Books; Conferences; Information security; Information systems; Internet; Middleware; Privacy; Public key;
fLanguage
English
Publisher
ieee
Conference_Titel
Security and Privacy in Communications Networks and the Workshops, 2007. SecureComm 2007. Third International Conference on
Conference_Location
Nice, France
Print_ISBN
978-1-4244-0974-7
Electronic_ISBN
978-1-4244-0975-4
Type
conf
DOI
10.1109/SECCOM.2007.4550378
Filename
4550378
Link To Document