Title :
A message meta model for federated authentication in service-oriented architectures
Author :
Wolf, Martin ; Thomas, Ivonne ; Menzel, Michael ; Meinel, Christoph
Author_Institution :
Hasso-Plattner-Inst., Univ. of Potsdam, Potsdam, Germany
Abstract :
The goal of federated authentication is to identify a user or entity in different security domains without the need for redundant user management and a multitude of credentials. Federated authentication is becoming more important with the increasing popularity of service-oriented architectures, since interacting systems are generally not located within a single security domain. For this reason, companies have formed initiatives to develop standard protocols, which have led to the evolution of several specifications that each provide the means for federated authentication in homogeneous environments in which all federation partners use the same standard. In this paper, we raise a critical question: Can federated authentication also be achieved in ¿heterogeneous¿ environments in which federation partners use different standards? After evaluating established standards and identifying similarities, we propose a meta model that describes federated authentication on an abstract level. We validate the model against the standard protocols and present a concrete implementation. Our aim is to enable federated authentication across different standards.
Keywords :
Web services; message authentication; open systems; protocols; software architecture; federated authentication; interoperability; message meta model; redundant user management; service-oriented architectures; single security domain; standard protocols; Access protocols; Authentication; Authorization; Concrete; Identity management systems; Information security; Resource management; Semiconductor optical amplifiers; Service oriented architecture; Standards development; Authentication; Federation; Identity Management; Interoperability; SOA;
Conference_Titel :
Service-Oriented Computing and Applications (SOCA), 2009 IEEE International Conference on
Conference_Location :
Taipei
Print_ISBN :
978-1-4244-5300-9
DOI :
10.1109/SOCA.2009.5410466