• DocumentCode
    1952981
  • Title

    Aggregation of attributes from different authorities

  • Author

    Chadwick, David

  • Author_Institution
    University of Kent, UK
  • fYear
    2007
  • fDate
    17-21 Sept. 2007
  • Firstpage
    521
  • Lastpage
    521
  • Abstract
    The model for grid authorisation is now reasonably well established. Attribute Authorities (or Identity Providers) assign attributes to users, and policy decision points (PDPs) at the resource sites make access control decisions based on the user’s attributes. Well known examples of AAs/IdPs are VOMS, CAS and Shibboleth, and well known examples of PDPs are XACML, PERMIS, Akenti, and LCAS. However, existing solutions are not capable of receiving attributes from multiple IdPs when the user is known by different identities at each IdP. Projects such as GridShib at Globus are making limited progress, but only in an IdP and middleware dependent way. This talk will describe the Shintau project, whose purpose is to define and build an application and middleware independent set of tools that will allow users to aggregate their attributes from multiple authorities, in a privacy preserving manner.
  • Keywords
    Authorization; Biographies; Books; Conferences; Information security; Information systems; Internet; Middleware; Privacy; Public key;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Security and Privacy in Communications Networks and the Workshops, 2007. SecureComm 2007. Third International Conference on
  • Conference_Location
    Nice, France
  • Print_ISBN
    978-1-4244-0974-7
  • Electronic_ISBN
    978-1-4244-0975-4
  • Type

    conf

  • DOI
    10.1109/SECCOM.2007.4550378
  • Filename
    4550378