首页> 外文会议>IEEE International Conference on Big Data Science and Engineering >Towards Cross-Border Authorization in European eID Federations
【24h】

Towards Cross-Border Authorization in European eID Federations

机译:朝向欧洲EID联合会的跨境授权

获取原文

摘要

Identification, authentication, and authorization are essential processes in various areas of applications, where access to sensitive data needs to be protected and regulated. To achieve this, usually identity-management systems are put into place, where an identity provider manages digital identities and handles the identification and authentication process for a service provider, which hosts the protected data and regulates access to this information. Due to increasing mobility of citizens and cross-border public administration, interoperability across the border of national electronic identity management systems in the European eID landscape becomes more and more important. While there were several European initiatives ongoing for achieving cross-border identification and authentication in the last couple of years, there was actually no initiative to enable cross-border authorization in Europe. Hence, in this paper we propose an advanced architectural design towards cross-border authorization in Europe. This proposed solution extends the existing cross-border eID federation implementations, which are actually in place across Europe, to bring up also cross-border authorization support into these European eID infrastructures. The proposed architecture follows a modular and plug-in based approach to ease the integration into various heterogeneous eID infrastructures, which are actually deployed in European countries. We illustrate the practical applicability of the proposed architecture by implementing an Authorization Gateway for the Austrian eID infrastructure. This Authorization Gateway meets all national legal and technical requirements to transfer authorization information across borders.
机译:识别,身份验证和授权是各种应用领域的重要进程,其中需要保护和调节访问敏感数据。为实现这一目标,通常将身份管理系统建立在那里,身份提供者管理数字身份并处理服务提供商的识别和认证过程,该服务提供商托管受保护的数据并调节对该信息的访问。由于公民和跨境公共行政的流动性增加,欧洲EID景观中国家电子身份管理系统边界边界的互操作变得越来越重要。虽然有几个欧洲倡议在过去几年中实现了跨境识别和认证,但实际上没有倡议在欧洲启用跨境授权。因此,在本文中,我们提出了一种推向欧洲跨境授权的先进建筑设计。这一拟议的解决方案扩展了现有的跨境EID联合实施,实际上在欧洲实际到位,将跨境授权支持提升到这些欧洲EID基础架构中。拟议的架构遵循基于模块化和插件的方法,以便于将其集成到各种异构EID基础架构中,该基础设施实际上部署在欧洲国家。我们通过为奥地利EID基础架构实施授权网关来说明所提出的架构的实际适用性。该授权网关符合所有国家法律和技术要求,以跨越边界转移授权信息。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号