Abstract
The proliferation of online services leads to an increasing number of different digital identities that each user has. In order to enforce access control policies, service providers need assurance that the information associated with users? identities, either received by the user or a federation partner, are correct and trustworthy. Current identity assurance frameworks assess the trustworthiness of identity providers but do not define trust on the user attribute level of granularity. In this paper, we consider the user attribute as a dynamic structure that extends the foundation of attribute authenticity and trustworthiness by introducing the attribute level of confidence (ALOC). Basically, the ALOC encompasses additional information on attributes? lifecycle and issuing mechanisms. We present the architecture design and demonstrate its components. This paper concludes discussing future research directions.
Original language | English |
---|---|
Title of host publication | Privacy and Identity Management. Time for a Revolution? |
Publisher | Springer |
Pages | 239-252 |
Number of pages | 14 |
ISBN (Print) | 978-3-319-41762-2 |
Publication status | Published (VoR) - 2016 |