【24h】

SECURITY COMMUNICATION LAYER FOR PUBLIC DISTRIBUTED REPORTING SERVICES

机译:公共分布式报告服务的安全通信层

获取原文

摘要

The electronic management of user identities is a requirement for many modern applications. The user's identity defines its possible range of actions, and its management becomes critical in applications such as e-Banking, e-Payment, etc. Current solutions are based on methods that use certificate infrastructures, role and policy enforcement management, trust management using social networking, etc. We propose a solution for electronic management of identities that provides secure identification of a user using its electronic identity card (eID). The proposed nPA (the new German Identity card) Connector offers a trusted infrastructure for secure handling of electronic identities over the Internet. The nPA connector uses certificates obtained and guaranteed by a trusted Identity Provider. The user's personal data from the electronic Identity Card is transmitted from an original source service provider to subsequent destination service providers, all of which have previously signed a contract with the Identity Provider. The connector can be easily integrated within -an application, providing a supplementary security layer for identity management. It can also be accessed remote as a Web service. In such cases the connector can be accessed by applications that can communicate with an Identity Provider from a trusted list of elD Service Providers. For that, the connector offers an interface for the application to query attributes from the electronic Identity card. The nPA connector can be considered a service provider between a user wielding a user agent (usually a web application accessed through a web browser) and an Identity Provider.
机译:用户身份的电子管理是许多现代应用程序所必需的。用户的身份定义了其可能的操作范围,并且其管理在诸如电子银行,电子支付等应用程序中变得至关重要。当前的解决方案基于使用证书基础结构,角色和策略实施管理,使用社交网络进行信任管理的方法。我们提出了一种用于身份电子管理的解决方案,该解决方案使用其电子身份证(eID)提供用户的安全标识。拟议中的nPA(新的德国身份证)连接器提供了可信任的基础结构,用于通过Internet安全处理电子身份。 nPA连接器使用由受信任的身份提供者获得并保证的证书。来自电子身份证的用户个人数据从原始的源服务提供商传输到后续的目的地服务提供商,所有这些提供商先前都已与身份提供商签订了合同。该连接器可以轻松地集成到应用程序中,从而为身份管理提供了补充的安全层。也可以将其作为Web服务进行远程访问。在这种情况下,连接器可以由可以从IDD服务提供者的受信任列表中与身份提供者进行通信的应用程序访问。为此,连接器为应用程序提供了一个接口,以从电子身份证中查询属性。在使用用户代理的用户(通常是通过Web浏览器访问的Web应用程序)和身份提供者之间,nPA连接器可以视为服务提供者。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号