A Client-Centric ASM-Based Approach to Identity Management in Cloud Computing

Mircea Boris Vleju

Research output: Chapter in Book/Report/Conference proceedingConference proceedingspeer-review

Abstract

We introduce the concept of an identity management machine (based on ASM) to mitigate problems regarding identity management in cloud computing. We decompose the client to cloud interaction into three distinct scenarios and introduce a set of ASM rules for each of them. We first consider a direct client to cloud interaction where the identity information stored on the client side is mapped to the identity created on the cloud provider’s IdM system. To enhance privacy we then introduce the concept of real, obfuscated and partially obfuscated identities. Finally we take advantage of the increase in standardization in IdM systems defining the rules necessary to support authentication protocols such as OpenID. Our solution makes no supposition regarding the technologies used by the client and the cloud provider. Through abstract functions we allow for a distinct separation between the IdM system of the client and that of the cloud or service provider. Since a user is only required to authenticate once to our system, our solution represents a client centric single sign-on mechanism for the use of cloud services.
Original languageEnglish
Title of host publicationAdvances in Conceptual Modeling - ER 2012 Workshops
Editors Silvana Castano and Panos Vassiliadis and Laks V. Lakshmanan and Mong Li Lee
PublisherSpringer
Pages34-43
Number of pages10
Volume7518
ISBN (Print)978-3-642-33998-1
DOIs
Publication statusPublished - Oct 2012

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume7518 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Fields of science

  • 102 Computer Sciences
  • 102001 Artificial intelligence

JKU Focus areas

  • Computation in Informatics and Mathematics

Cite this