【24h】

Building an Independent Integrated Authentication Service

机译:构建独立的集成身份验证服务

获取原文

摘要

For many Internet-based service providers, client authentication is required before the delivery of services. Currently, most client authentication mechanism is only focusing on the identity authentication. In this paper, we claim that more business opportunities will be created if service providers obtain more information about clients. Then we propose the concept of the integrated authentication service (IAS) which has capabilities to authenticate not only person's identity, but platforms and environment as well. However, as more information is collected from clients, privacy protection becomes an important issue. In some existing authentication work flows, the information of clients is either handled by the service providers, or by an independent authentication service through the service providers. These flows expose information of clients to multiple parties. We propose a new work flow that only exposes information to the authentication services, thus it will greatly alleviate the privacy concern. Trusted Computing technologies [9] are widely used in our solution, because the IAS makes decision based on the reports from clients and it is very important to assure the integrity of the reports, which Trusted Computing technologies are very good at.
机译:对于许多基于Internet的服务提供商,在提供服务之前需要客户端身份验证。当前,大多数客户端身份验证机制仅关注身份验证。在本文中,我们声称,如果服务提供商获得有关客户的更多信息,将会创造更多的商机。然后,我们提出了集成身份验证服务(IAS)的概念,该功能不仅具有对个人身份进行身份验证的能力,还具有对平台和环境进行身份验证的能力。但是,随着从客户那里收集到更多信息,隐私保护成为一个重要的问题。在某些现有的身份验证工作流程中,客户端的信息要么由服务提供商处理,要么由独立的身份验证服务通过服务提供商处理。这些流将客户的信息暴露给多方。我们提出了一个新的工作流程,该流程仅将信息公开给身份验证服务,因此将大大缓解隐私问题。可信计算技术[9]被广泛用于我们的解决方案中,因为IAS根据来自客户的报告做出决策,并且确保报告的完整性非常重要,这正是可信计算技术所擅长的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号