The Experts below are selected from a list of 1395 Experts worldwide ranked by ideXlab platform
Solange Ghernaoutihelie - One of the best experts on this subject based on the ideXlab platform.
-
processes view modeling of Identity related privacy business interoperability considering user supremacy Federated Identity technical model and Identity contract negotiation
Advances in Social Networks Analysis and Mining, 2012Co-Authors: Ghazi Ben Ayed, Solange GhernaoutihelieAbstract:Federated Identity is a distributed system that is deployed across multiple parties. Service providers still hold the absolute power over people identities. So, Identity-related privacy is considered as a mean to entrench subjects' control over identities and foster trust among multiple involved parties. Thus, Identity-related privacy should interoperable, which can be guaranteed through the capture of requirements from different polices related to Identity. In this article, we provide and explain a BPMN processes view of the requirements allowing them to be ready to-implement, clear, easy to-understand by each party wishing to collaborate within or across Federated Identity systems. We highlight that present-day practitioners should be able to translate requirements with user-supremacy Federated Identity technical model concepts into a set of rules and take into consideration details of Identity contract negotiation in order to successfully deliver processes view. BPMN collaboration and choreography diagrams are used to describe seven processes and a sub-process, which would provide a useful way to gain alignment between requirements and IT.
Roberto Tamassia - One of the best experts on this subject based on the ideXlab platform.
-
notarized Federated Identity management for web services
Lecture Notes in Computer Science, 2006Co-Authors: Michael T Goodrich, Roberto TamassiaAbstract:We propose a notarized Federated Identity management model that supports efficient user authentication when providers are unknown to each other. Our model introduces a notary service, owned by a trusted third-party, to dynamically notarize assertions generated by Identity providers. An additional feature of our model is the avoidance of direct communications between Identity providers and service providers, which provides improved privacy protection for users. We present an efficient implementation of our notarized Federated Identity management model based on the Secure Transaction Management System (STMS). We also give a practical solution for mitigating aspects of the Identity theft problem and discuss its use in our notarized Federated Identity management model. The unique feature of our cryptographic solution is that it enables one to proactively prevent the leaking of secret Identity information.
-
DBSec - Notarized Federated Identity management for web services
Lecture Notes in Computer Science, 2006Co-Authors: Michael T Goodrich, Roberto TamassiaAbstract:We propose a notarized Federated Identity management model that supports efficient user authentication when providers are unknown to each other. Our model introduces a notary service, owned by a trusted third-party, to dynamically notarize assertions generated by Identity providers. An additional feature of our model is the avoidance of direct communications between Identity providers and service providers, which provides improved privacy protection for users. We present an efficient implementation of our notarized Federated Identity management model based on the Secure Transaction Management System (STMS). We also give a practical solution for mitigating aspects of the Identity theft problem and discuss its use in our notarized Federated Identity management model. The unique feature of our cryptographic solution is that it enables one to proactively prevent the leaking of secret Identity information.
Ghazi Ben Ayed - One of the best experts on this subject based on the ideXlab platform.
-
processes view modeling of Identity related privacy business interoperability considering user supremacy Federated Identity technical model and Identity contract negotiation
Advances in Social Networks Analysis and Mining, 2012Co-Authors: Ghazi Ben Ayed, Solange GhernaoutihelieAbstract:Federated Identity is a distributed system that is deployed across multiple parties. Service providers still hold the absolute power over people identities. So, Identity-related privacy is considered as a mean to entrench subjects' control over identities and foster trust among multiple involved parties. Thus, Identity-related privacy should interoperable, which can be guaranteed through the capture of requirements from different polices related to Identity. In this article, we provide and explain a BPMN processes view of the requirements allowing them to be ready to-implement, clear, easy to-understand by each party wishing to collaborate within or across Federated Identity systems. We highlight that present-day practitioners should be able to translate requirements with user-supremacy Federated Identity technical model concepts into a set of rules and take into consideration details of Identity contract negotiation in order to successfully deliver processes view. BPMN collaboration and choreography diagrams are used to describe seven processes and a sub-process, which would provide a useful way to gain alignment between requirements and IT.
-
ASONAM - Processes View Modeling of Identity-related Privacy Business Interoperability: Considering User-Supremacy Federated Identity Technical Model and Identity Contract Negotiation
2012 IEEE ACM International Conference on Advances in Social Networks Analysis and Mining, 2012Co-Authors: Ghazi Ben Ayed, Solange Ghernaouti-hélieAbstract:Federated Identity is a distributed system that is deployed across multiple parties. Service providers still hold the absolute power over people identities. So, Identity-related privacy is considered as a mean to entrench subjects' control over identities and foster trust among multiple involved parties. Thus, Identity-related privacy should interoperable, which can be guaranteed through the capture of requirements from different polices related to Identity. In this article, we provide and explain a BPMN processes view of the requirements allowing them to be ready to-implement, clear, easy to-understand by each party wishing to collaborate within or across Federated Identity systems. We highlight that present-day practitioners should be able to translate requirements with user-supremacy Federated Identity technical model concepts into a set of rules and take into consideration details of Identity contract negotiation in order to successfully deliver processes view. BPMN collaboration and choreography diagrams are used to describe seven processes and a sub-process, which would provide a useful way to gain alignment between requirements and IT.
Randy Garcia - One of the best experts on this subject based on the ideXlab platform.
-
DSC - Federated Identity hybrid cloud security considerations supporting first responders
2017 IEEE Conference on Dependable and Secure Computing, 2017Co-Authors: Randy GarciaAbstract:Propose an architecture and policy approach to implement Federated Identity hybrid cloud enabling first responders. These continue to suffer lack of trusted and secure information sharing. The focus is on the architecture and methodology for federating Identity to enable rapid response. The outcome drives successful outcomes in disaster response.
-
Federated Identity hybrid cloud security considerations supporting first responders
2017 IEEE Conference on Dependable and Secure Computing, 2017Co-Authors: Randy GarciaAbstract:Propose an architecture and policy approach to implement Federated Identity hybrid cloud enabling first responders. These continue to suffer lack of trusted and secure information sharing. The focus is on the architecture and methodology for federating Identity to enable rapid response. The outcome drives successful outcomes in disaster response.
Michael T Goodrich - One of the best experts on this subject based on the ideXlab platform.
-
notarized Federated Identity management for web services
Lecture Notes in Computer Science, 2006Co-Authors: Michael T Goodrich, Roberto TamassiaAbstract:We propose a notarized Federated Identity management model that supports efficient user authentication when providers are unknown to each other. Our model introduces a notary service, owned by a trusted third-party, to dynamically notarize assertions generated by Identity providers. An additional feature of our model is the avoidance of direct communications between Identity providers and service providers, which provides improved privacy protection for users. We present an efficient implementation of our notarized Federated Identity management model based on the Secure Transaction Management System (STMS). We also give a practical solution for mitigating aspects of the Identity theft problem and discuss its use in our notarized Federated Identity management model. The unique feature of our cryptographic solution is that it enables one to proactively prevent the leaking of secret Identity information.
-
DBSec - Notarized Federated Identity management for web services
Lecture Notes in Computer Science, 2006Co-Authors: Michael T Goodrich, Roberto TamassiaAbstract:We propose a notarized Federated Identity management model that supports efficient user authentication when providers are unknown to each other. Our model introduces a notary service, owned by a trusted third-party, to dynamically notarize assertions generated by Identity providers. An additional feature of our model is the avoidance of direct communications between Identity providers and service providers, which provides improved privacy protection for users. We present an efficient implementation of our notarized Federated Identity management model based on the Secure Transaction Management System (STMS). We also give a practical solution for mitigating aspects of the Identity theft problem and discuss its use in our notarized Federated Identity management model. The unique feature of our cryptographic solution is that it enables one to proactively prevent the leaking of secret Identity information.