DocumentCode
2759669
Title
Interoperability between Heterogeneous Federation Architectures: Illustration with SAML and WS-Federation
Author
Ates, Mikaël ; Gravier, Christophe ; Lardon, Jeremy ; Fayolle, Jacques ; Sauviac, Bruno
Author_Institution
DIOM Lab., St.-Etienne Univ., St.-Etienne
fYear
2007
fDate
16-18 Dec. 2007
Firstpage
1063
Lastpage
1070
Abstract
Digital identity management intra and inter information systems, and, service oriented architectures, are the roots of identity federation. This kind of security architectures aims at enabling information system interoperability. Existing architectures, however, do not consider interoperability of heterogeneous federation architectures, which rely on different federation protocols. In this paper, we try to initiate an in-depth reflection on this issue, through the comparison of two main federation architecture specifications: SAML (Security Assertion Markup Language) and WS-Federation. We firstly propose an overall outline of identity federation. We furthermore address the issue of interoperability for federation architectures using a different federation protocol. Afterwards, we compare SAML and WS-Federation. Eventually, we define the ways of convergence, and therefore, of interoperability.
Keywords
authorisation; formal specification; information systems; open systems; software architecture; specification languages; Security Assertion Markup Language; WS-Federation; digital identity management; federation architecture specification; federation protocol; heterogeneous federation architecture; identity federation; information system; interoperability; security architecture; service oriented architecture; Authentication; Conference management; Convergence; Identity management systems; Information security; Laboratories; Management information systems; Protocols; Service oriented architecture; Web and internet services; Identity Federation; Interoperability; SAML; WS-Federation;
fLanguage
English
Publisher
ieee
Conference_Titel
Signal-Image Technologies and Internet-Based System, 2007. SITIS '07. Third International IEEE Conference on
Conference_Location
Shanghai
Print_ISBN
978-0-7695-3122-9
Type
conf
DOI
10.1109/SITIS.2007.148
Filename
4618892
Link To Document