An Approach to Identity Management for Service Centric Systems

  • Authors:
  • Laurent Bussard;Elisabetta Nitto;Anna Nano;Olivier Nano;Gianluca Ripa

  • Affiliations:
  • European Microsoft Innovation Center, Aachen, Germany;Politecnico di Milano, Milan, Italy;European Microsoft Innovation Center, Aachen, Germany;European Microsoft Innovation Center, Aachen, Germany;CEFRIEL, Milan, Italy

  • Venue:
  • ServiceWave '08 Proceedings of the 1st European Conference on Towards a Service-Based Internet
  • Year:
  • 2008

Quantified Score

Hi-index 0.01

Visualization

Abstract

Today users consume applications composed by services from different providers across trust domains. By experience we know that security requirements and user identity management make services composition difficult. We believe that delegation of access rights across trust domains will become an essential mechanism in services composition scenarios. Users care about security but cannot deal with the variety of existing solutions for access control. A unified interface of access control and delegation is essential for multi-domain composite services. This paper addresses the problem of identity management for service-centric systems and proposes a novel approach based on an abstract delegation framework supporting different access control mechanisms. We show how the abstract delegation framework is designed to give control and clarity to the user consuming applications based on service composition. Besides the theoretical aspects, the paper shares experiences based on scenarios from the automotive industry.