• DocumentCode
    3091850
  • Title

    Dynamic Trust Model for Federated Identity Management

  • Author

    Gao, Hao ; Yan, Jun ; Mu, Yi

  • Author_Institution
    Sch. of Inf. Syst. & Technol., Univ. of Wollongong, Wollongong, NSW, Australia
  • fYear
    2010
  • fDate
    1-3 Sept. 2010
  • Firstpage
    55
  • Lastpage
    61
  • Abstract
    The goal of federated identity management is to allow principals, such as identities and attributes, to be shared across trust boundaries based on established policies. Since current Single Sign-On (SSO) mechanism excessively relies on the specifications of Circle of Trust (CoT), the need for service collaboration from different domains is being addressed on CoT. For the motivating issue of the cross-domain SSO mechanism, we need an emergent dynamic trust list for calculating the trust parties, thus, the CoT specifications require an initial effort on enrolling members automatically to adapt to the dynamic open environment. In this paper, we propose a Dynamic Trust Policy Language to support trust negotiation. The formal syntax of this language is presented in Backus Naur Form (BNF) based on the concept of role membership. We also systematically develop the Dynamic Trust Model (DTM) to allow Untrusted SP to join the existing CoT by trust negotiation. Finally, we identify the process and algorithm for communication between negotiation entities.
  • Keywords
    groupware; security of data; backus naur form; circle of trust; dynamic trust model; dynamic trust policy language; federated identity management; service collaboration; single sign-on mechanism; Engines; Heuristic algorithms; Indexes; Protocols; Public key; Syntactics; Circle of Trust; Dynamic Trust; Federated Identity Management; Single Sign-On;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network and System Security (NSS), 2010 4th International Conference on
  • Conference_Location
    Melbourne, VIC
  • Print_ISBN
    978-1-4244-8484-3
  • Electronic_ISBN
    978-0-7695-4159-4
  • Type

    conf

  • DOI
    10.1109/NSS.2010.40
  • Filename
    5636065