• DocumentCode
    2759669
  • Title

    Interoperability between Heterogeneous Federation Architectures: Illustration with SAML and WS-Federation

  • Author

    Ates, Mikaël ; Gravier, Christophe ; Lardon, Jeremy ; Fayolle, Jacques ; Sauviac, Bruno

  • Author_Institution
    DIOM Lab., St.-Etienne Univ., St.-Etienne
  • fYear
    2007
  • fDate
    16-18 Dec. 2007
  • Firstpage
    1063
  • Lastpage
    1070
  • Abstract
    Digital identity management intra and inter information systems, and, service oriented architectures, are the roots of identity federation. This kind of security architectures aims at enabling information system interoperability. Existing architectures, however, do not consider interoperability of heterogeneous federation architectures, which rely on different federation protocols. In this paper, we try to initiate an in-depth reflection on this issue, through the comparison of two main federation architecture specifications: SAML (Security Assertion Markup Language) and WS-Federation. We firstly propose an overall outline of identity federation. We furthermore address the issue of interoperability for federation architectures using a different federation protocol. Afterwards, we compare SAML and WS-Federation. Eventually, we define the ways of convergence, and therefore, of interoperability.
  • Keywords
    authorisation; formal specification; information systems; open systems; software architecture; specification languages; Security Assertion Markup Language; WS-Federation; digital identity management; federation architecture specification; federation protocol; heterogeneous federation architecture; identity federation; information system; interoperability; security architecture; service oriented architecture; Authentication; Conference management; Convergence; Identity management systems; Information security; Laboratories; Management information systems; Protocols; Service oriented architecture; Web and internet services; Identity Federation; Interoperability; SAML; WS-Federation;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Signal-Image Technologies and Internet-Based System, 2007. SITIS '07. Third International IEEE Conference on
  • Conference_Location
    Shanghai
  • Print_ISBN
    978-0-7695-3122-9
  • Type

    conf

  • DOI
    10.1109/SITIS.2007.148
  • Filename
    4618892