Loading...
Please wait, while we are loading the content...
Similar Documents
TITLE : Deploying Authorization Mechanisms for Federated Services in eduroam ( DAMe )
| Content Provider | Semantic Scholar |
|---|---|
| Author | Cánovas, Óscar Gómez-Skarmeta, Antonio F. López, Gabriel Sánchez Sánchez, Manuel |
| Copyright Year | 2007 |
| Abstract | Identity federations are emerging in the last years in order to make easier the deployment of resource sharing environments among organizations. One common feature of those environments is the use of access control mechanisms based on the user identity. However, most of those federations have realized that user identity is not enough to offer a more grained access control and value added services. Therefore, additional information, such as user attributes, need to be taken into account. This paper presents the overview and some preliminary results of the DAMe project. We will show how one of those real and widely spread identity federations, eduroam, has been extended in order to make use of the user attributes defined in his home domain, to adopt authorization decisions during the access control process. This authorization framework has been integrated by means of the NAS-SAML infrastructure, which defines a network access control service based on SAML and the AAA architecture. Additionally, we present the details of a Single Sign On proposal which takes advantage of the previously deployed authentication and authorization mechanisms. In this way we will be able to establish a link between authentication and authorization methods at different levels in order to provide a seamless global SSO. |
| File Format | PDF HTM / HTML |
| Alternate Webpage(s) | https://tnc2007.terena.org/core/getfiled6f8.pdf |
| Alternate Webpage(s) | http://www.researchgate.net/profile/Antonio_Skarmeta/publication/242561501_TITLE_Deploying_Authorization_Mechanisms_for_Federated_Services_in_eduroam_(DAMe)/links/544e334c0cf29473161a41c2.pdf |
| Language | English |
| Access Restriction | Open |
| Content Type | Text |
| Resource Type | Article |