Cross-enterprise Identity Federation (OASIS - SAML) Implementation: An exploratory financial services case study

نویسندگان

  • Manish Gupta
  • Raj Sharman
چکیده

In the networked economy, strategic partnerships and collaboration are an important way to develop and maintain competitive advantages. At the same time, enterprises also need to reduce costs, increase revenues and seize new business opportunities. This demands enterprises to enable convenient and secure business interactions with internal and external stakeholders, and create relationships to trust the electronic identities to access critical information resources. Federated identity management (FIM) is a system that enables individuals to use the same credentials or identification data to obtain access to the networks of multiple enterprises to conduct business transactions. FIM has demonstrated huge potential in providing reliable and scalable solutions to problems in systems security and access management. SAML (Security Assertion Markup Language) is the dominant web services standard for FIM. The objective of the paper is to present an exploratory case study based research to investigate implementation challenges, outcomes and federated identity management opportunities using evidence from a complex implementation of Identity Federation using SAML at a mid-sized north-east US bank. The SAML integration was achieved using a commercial off the shelf product, by Computer Associates, eTrust® that also leverages SAML as web services standard for federated identity management. Discussion in the paper presents common obstacles, opportunities, motivations and future directions in the realm of identity federation based on evidence from extensive project and product documentation provided by the financial services institutions team and on interviews with six team members of the case study project, including one senior information security manager.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Dimensions of Identity Federation: A Case Study in Financial Services

In the networked economy, strategic partnerships and collaboration are an important way to develop and maintain competitive advantages. At the same time, enterprises also need to reduce costs, increase revenues and seize new business opportunities. This demands enterprises to enable convenient and secure business interactions with internal and external stakeholders, and create relationships to ...

متن کامل

Towards User-centric Identity Interoperability for Digital Ecosystems

Digital Ecosystem is a new paradigm for dynamic IT business integration. Its main focus is to provide microand small enterprises with technological solutions bootstrapping their growth and cooperation. In a Digital Ecosystem, institutions compete in some business aspects and collaborate in others, and thus form stable and unstable coalitions. Such a dynamic environment becomes a bottleneck for ...

متن کامل

Dynamic Identity Federation Using Security Assertion Markup Language (SAML)

Security Assertion Markup Language (SAML, in short) is one of the most widely used technologies to enable Identity Federation among organisations from different trust domains. Despite its several advantages, one of the key disadvantages of SAML is the mechanism by which an identity federation is established. This mechanism lacks flexibility to create a federation in a dynamic fashion to enable ...

متن کامل

Title: Applied Federation Technology: The Charging of Roaming Students

SAML federations provide students the possibility to use their home university’s account even in case they decide to study one or more semesters abroad. The visited university can rely on the identity information transmitted via the federation’s mechanisms. However, when services at the visited university require payment, such as using a printer, the roaming student is nevertheless required to ...

متن کامل

Enabling SAML for Dynamic Identity Federation Management

Federation in identity management has emerged as a key concept for reducing complexity in the companies and offering an improved user experience when accessing services. In this sense, the process of trust establishment is fundamental to allow rapid and seamless interaction between different trust domains. However, the problem of establishing identity federations in dynamic and open environment...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2007