Next Article in Journal
A Technical Framework for Data Sharing
Previous Article in Journal
Factors Influencing Customer Engagement in Social Commerce Websites: A Systematic Literature Review
 
 
Journal of Theoretical and Applied Electronic Commerce Research is published by MDPI from Volume 16 Issue 3 (2021). Previous articles were published by another publisher in Open Access under a CC-BY 3.0 licence, and they are hosted by MDPI on mdpi.com as a courtesy and upon agreement with Faculty of Engineering of the Universidad de Talca.
Font Type:
Arial Georgia Verdana
Font Size:
Aa Aa Aa
Line Spacing:
Column Width:
Background:
Article

Managing Dynamic Identity Federations using Security Assertion Markup Language

School of Computing Science, University of Glasgow, Glasgow, Scotland
J. Theor. Appl. Electron. Commer. Res. 2015, 10(2), 53-76; https://doi.org/10.4067/S0718-18762015000200005
Submission received: 23 January 2014 / Accepted: 22 September 2014 / Published: 1 May 2015

Abstract

Security Assertion Markup Language is one of the most widely used technologies to enable Identity Federations among different organisations. Despite its several advantages, one of its key disadvantages is that it does not allow creating a federation in a dynamic fashion to enable service provisioning (or de-provisioning) in real time. A few approaches have been proposed to rectify this problem. However, most of them require elaborate changes of the language and do not provide mechanisms to manage federations dynamically. This paper presents a better approach based on an already drafted Security Assertion Markup Language Profile and requires no change in its specification, rather it depends on the specific implementation. Our proposed approach covers all aspects regarding the management of dynamic Identity Federation. It will allow users to create federations dynamically between two prior unknown organisations and will allow them to manage such federations as long as it is required. Implicit in each identity federation is the issue of trust. Therefore, the trust issues involved in the management of dynamic federations are analysed in details. Finally, a proof of concept is discussed with a few use-cases to elaborate the practicality of our approach.
Keywords: Identity management; Federated identity management; Identity federation; Security assertion markup language (SAML); Trust Identity management; Federated identity management; Identity federation; Security assertion markup language (SAML); Trust

Share and Cite

MDPI and ACS Style

Ferdous, M.S.; Poet, R. Managing Dynamic Identity Federations using Security Assertion Markup Language. J. Theor. Appl. Electron. Commer. Res. 2015, 10, 53-76. https://doi.org/10.4067/S0718-18762015000200005

AMA Style

Ferdous MS, Poet R. Managing Dynamic Identity Federations using Security Assertion Markup Language. Journal of Theoretical and Applied Electronic Commerce Research. 2015; 10(2):53-76. https://doi.org/10.4067/S0718-18762015000200005

Chicago/Turabian Style

Ferdous, Md. Sadek, and Ron Poet. 2015. "Managing Dynamic Identity Federations using Security Assertion Markup Language" Journal of Theoretical and Applied Electronic Commerce Research 10, no. 2: 53-76. https://doi.org/10.4067/S0718-18762015000200005

Article Metrics

Back to TopTop