User-centric Identity Management based on secure elements

Davi Böger, Luciano Barreto, Joni Fraga, Pascal Urien, Hassane Aissaoui, André Santos, Guy Pujolle

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The security of large applications and distributed systems is heavily dependent on Identity Management models and infrastructures. In this paper we introduce the Identity Management approach developed in the SecFuNet project, which emphasizes the use of smartcards to user authentication and user-centric attribute delivery policies. In current identity models, user attributes are stored in identity providers and any trust relationship may spread user information across trust networks formed among identity providers. In our approach, the user controls the release of his attributes that are stored in his own smartcard. Also, the approach makes use of secure elements and virtualization for protecting user information. This paper describes aspects of our authentication model and discusses the results obtained with a prototype implementation.

Original languageEnglish
Title of host publicationProceedings - IEEE Symposium on Computers and Communications
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781479942787
DOIs
Publication statusPublished - 26 Sept 2014
Externally publishedYes
Event19th IEEE Symposium on Computers and Communications, ISCC 2014 - Funchal, Portugal
Duration: 23 Jun 201426 Jun 2014

Publication series

NameProceedings - IEEE Symposium on Computers and Communications
ISSN (Print)1530-1346

Conference

Conference19th IEEE Symposium on Computers and Communications, ISCC 2014
Country/TerritoryPortugal
CityFunchal
Period23/06/1426/06/14

Keywords

  • Authentication
  • Identity Management
  • Security
  • User-Centric Policies

Fingerprint

Dive into the research topics of 'User-centric Identity Management based on secure elements'. Together they form a unique fingerprint.

Cite this