【24h】

A Client-Centric ASM-Based Approach to Identity Management in Cloud Computing

机译:基于客户端的基于ASM的云计算身份管理方法

获取原文

摘要

We introduce the concept of an identity management machine (based on ASM) to mitigate problems regarding identity management in cloud computing. We decompose the client to cloud interaction into three distinct scenarios and introduce a set of ASM rules for each of them. We first consider a direct client to cloud interaction where the identity information stored on the client side is mapped to the identity created on the cloud provider's IdM system. To enhance privacy we then introduce the concept of real, obfuscated and partially obfuscated identities. Finally we take advantage of the increase in standardization in IdM systems defining the rules necessary to support authentication protocols such as OpenlD. Our solution makes no supposition regarding the technologies used by the client and the cloud provider. Through abstract functions we allow for a distinct separation between the IdM system of the client and that of the cloud or service provider. Since a user is only required to authenticate once to our system, our solution represents a client centric single sign-on mechanism for the use of cloud services.
机译:我们介绍了身份管理机器(基于ASM)的概念,以缓解有关云计算中身份管理的问题。我们将客户端与云的交互分解为三个不同的场景,并为每个场景引入一组ASM规则。我们首先考虑直接的客户端到云交互,其中将存储在客户端的身份信息映射到在云提供商的IdM系统上创建的身份。为了增强隐私性,我们然后引入真实的,混淆的和部分混淆的身份的概念。最后,我们利用IdM系统中标准化的增加,该系统定义了支持身份验证协议(例如OpenID)所必需的规则。我们的解决方案不假设客户端和云提供商使用的技术。通过抽象功能,我们允许客户端的IdM系统与云或服务提供商的IdM系统之间有明显的分离。由于仅要求用户向我们的系统进行一次身份验证,因此我们的解决方案代表了一种以客户端为中心的单点登录机制,可以使用云服务。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号