Connecting Self-Sovereign Identity with Federated and User-centric Identities via SAML Integration

Connecting Self-Sovereign Identity with Federated and User-centric Identities via SAML Integration
复制标题

通过 SAML 集成将自我主权身份与联合且以用户为中心的身份连接起来

DOI:
--
复制
发表时间:
2021
期刊:
International Symposium on Computers and Communications
影响因子:
--
通讯作者:
Axel Küpper
Axel Küpper
中科院分区:
--
文献类型:
--
作者:
Hakan Yildiz;Christoph Ritter;Lan Thao Nguyen;Berit Frech;Maria Mora Martinez;Axel Küpper

文献摘要

被引文献

相似文献

自我主权身份提供了一个可行的替代登录通过用户名和密码通过身份提供商访问数字服务。它允许身份主体控制和拥有他们的数据。虽然这是一种有吸引力的方法,但它需要一个全新的基础设施,几乎不依赖于现有的基础设施。我们设计并实现了一种解决方案,该解决方案将现有的联合身份访问管理解决方案与新方法相结合,通过基于自我主权身份的凭据进行身份验证,同时身份提供商通过安全断言标记语言与服务提供商保持验证和通信。得益于德国高等教育领域的标准化联邦系统,该解决方案不仅能够顺利过渡到自主身份,而且还可以使用相同的联邦身份框架轻松转移到其他大学。
Self-sovereign identity provides a feasible alternative to login via username and password through an identity provider to access digital services. It allows identity subjects to control and own their data. Although this is an appealing approach, it requires a whole new infrastructure with almost no dependencies on the existing ones. We designed and implemented a solution that combines an existing federated identity access management solution with the new approach by enabling authentication via self-sovereign-identity-based credentials while the identity provider retains verification and communication with the service provider via Security Assertion Mark Up Language. Thanks to the standardized federated systems in the German higher education domain, the solution not only enables a smooth transition to self-sovereign identities but can also be easily transferred to other universities using the same federated identity framework.