We develop solutions for the security and privacy of user iden-tity information in a federation. By federation we mean a group of organizations or service providers which have built trust among each other and enable sharing of user identity information amongst themselves. We first propose a flexible approach to establish a sin-gle sign-on (SSO) ID in the federation. Then we show how a user can leverage this SSO ID to establish certified and un-certified user identity attributes without the dependence on PKI for user authenti-cation. This makes the process more usable and privacy preserving. Our major contribution in this paper is a novel solution for protec-tion against identity theft of these identity attributes. We provide protocols based...
Cloud federations are a new collaboration paradigm where organizations share data across their priva...
International audienceIn this article, we expose the basics of distributed identity management syste...
Authentication and authorization of a user's identity are generally done by the service providers or...
We develop solutions for the security and privacy of user identity information in a federation. By f...
International audienceWith a boom in online services generally accessed through a login/password cou...
Recent developments in heterogeneous identity federation systems have heightened the need for the re...
Most organizations require the verification of personal information before providing services, and t...
Digital identity management (DIM) has emerged as a critical foundation for supporting successful int...
Digital identity is defined as the digital representation of the information known about a specific ...
Abstract. We address the question of how to establish trust in federated identity management systems...
The goal of service provider federations is to support a controlled method by which distributed orga...
The identity of individuals need to be confirmed for various reasons, both in reality and on the Int...
The identity of individuals need to be confirmed for various reasons, both in reality and on the Int...
Abstract. Federated identity management allows a user to efficiently authenticate and use identity i...
noteFederated Identity Management Systems (IMS) is a promising system where an increasing number of ...
Cloud federations are a new collaboration paradigm where organizations share data across their priva...
International audienceIn this article, we expose the basics of distributed identity management syste...
Authentication and authorization of a user's identity are generally done by the service providers or...
We develop solutions for the security and privacy of user identity information in a federation. By f...
International audienceWith a boom in online services generally accessed through a login/password cou...
Recent developments in heterogeneous identity federation systems have heightened the need for the re...
Most organizations require the verification of personal information before providing services, and t...
Digital identity management (DIM) has emerged as a critical foundation for supporting successful int...
Digital identity is defined as the digital representation of the information known about a specific ...
Abstract. We address the question of how to establish trust in federated identity management systems...
The goal of service provider federations is to support a controlled method by which distributed orga...
The identity of individuals need to be confirmed for various reasons, both in reality and on the Int...
The identity of individuals need to be confirmed for various reasons, both in reality and on the Int...
Abstract. Federated identity management allows a user to efficiently authenticate and use identity i...
noteFederated Identity Management Systems (IMS) is a promising system where an increasing number of ...
Cloud federations are a new collaboration paradigm where organizations share data across their priva...
International audienceIn this article, we expose the basics of distributed identity management syste...
Authentication and authorization of a user's identity are generally done by the service providers or...