On device-based identity management in enterprises

  • Authors:
  • Marco Casassa Mont;Boris Balacheff

  • Affiliations:
  • Hewlett-Packard Labs, Trusted Systems Lab, Bristol, UK;Hewlett-Packard Labs, Trusted Systems Lab, Bristol, UK

  • Venue:
  • TrustBus'07 Proceedings of the 4th international conference on Trust, Privacy and Security in Digital Business
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper focuses on the management of device-based identities within enterprises. This is a key requirement in enterprises where the identities of devices have become as important as the identities of humans (users) to grant access to enterprise resources. In this context, access control systems need to understand which devices are being used to access resources, by whom and in which contexts. Trust in managed devices' identities is an important first step to enable this. Most related commercial solutions are deployed at the network level. Instead, we focus at the application/service level to leverage current enterprise identity management solutions, used to manage users' identities. We investigate requirements and related issues. We introduce an initial approach and describe our related solution. A working prototype (proof-of concept) has been fully implemented by extending HP OpenView Identity Management solutions and using trusted computing-enabled devices. This is work in progress: we aim at setting the context and discussing our current status and next steps.