DocumentCode
3540655
Title
A provisioning model towards OAuth 2.0 performance optimization
Author
Noureddine, M. ; Bashroush, R.
Author_Institution
Lync Server Group, Microsoft Corp., Seattle, WA, USA
fYear
2011
fDate
1-2 Sept. 2011
Firstpage
76
Lastpage
80
Abstract
A major hurdle of formal adoption of OAuth protocol for enterprise applications is performance. Enterprise applications (e.g. SAP, SharePoint, Exchange Server, etc.) require a mechanism to predict and manage performance expectations. As these applications become more and more ubiquitous in the Cloud, the scale and performance expectations become an important factor impacting architectural decisions for security protocol adoption. This paper proposes an optimization to OAuth 2.0 for enterprise adoption. This optimization is achieved by introducing provisioning steps to pre-establish trust amongst enterprise applications´ Resource Servers, its associated Authorization Server and the clients interested in access to protected resources. In this model, trust is provisioned and synchronized as a pre-requisite step to authentication and authorization amongst all communicating entities in OAuth protocol, namely, the client requesting a protected resource, the resource server, and the authorization server. For a case study, we analyze SAP authenticating with SharePoint using our optimization versus existing OAuth protocol. We believe such optimization will further facilitate the adoption of OAuth in the enterprise where scale and performance are critical factors.
Keywords
business data processing; cloud computing; cryptographic protocols; OAuth 2.0 performance optimization; OAuth protocol; SAP authentication; SharePoint; authorization server; cloud; enterprise application resource servers; performance expectations; provisioning model; security protocol adoption; trust; Authentication; Authorization; Conferences; Optimization; Protocols; Servers; Access Delegation; Authentication and Authorization; Authorization Servers; Cloud Performance; OAuth;
fLanguage
English
Publisher
ieee
Conference_Titel
Cybernetic Intelligent Systems (CIS), 2011 IEEE 10th International Conference on
Conference_Location
London
Print_ISBN
978-1-4673-0687-4
Type
conf
DOI
10.1109/CIS.2011.6169138
Filename
6169138
Link To Document