A Credential Conversion Service for SAML-based Scenarios

Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: CANOVAS, Oscar, LOPEZ, Gabriel, GOMEZ-SKARMETA, Antonio F
Format: Buchkapitel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page 305
container_issue
container_start_page 297
container_title
container_volume 3093
creator CANOVAS, Oscar
LOPEZ, Gabriel
GOMEZ-SKARMETA, Antonio F
description Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.
doi_str_mv 10.1007/978-3-540-25980-0_24
format Book Chapter
fullrecord <record><control><sourceid>proquest_pasca</sourceid><recordid>TN_cdi_pascalfrancis_primary_15993656</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>EBC3087599_30_308</sourcerecordid><originalsourceid>FETCH-LOGICAL-p272t-bd8c9a8bbcaf48ef9973875ef3791e12a29662e1cc27332fd285d92fc252ed493</originalsourceid><addsrcrecordid>eNpFkE1PwzAMhsOnqMb-AYdeOAYSu23q4zTxJQ1xGJyjNE2hMNqSlEn8e9INCV9svX5t2Q9jF1JcSSHUNamSI88zwSGnUnChITtg8yhjFHeaOGSJLKTkiBkd_fcAZIHHLBEogJPK8JQlFC2KcpRnbB7Cu4gBKLJMJaxcpEvvateNrdmky77bOh_avkvXzm9b69Km9-l68bjilQmuTtfWdca3fThnJ43ZBDf_yzP2cnvzvLznq6e7h-VixQdQMPKqLi2ZsqqsabLSNUQKS5W7BhVJJ8EAFQU4aS0oRGhqKPOaoLGQg6szwhm73O8dTLBm03jT2Tbowbefxv9omRNhkRfRB3tfiK3u1Xld9f1H0FLoCamOfDTqSEjv8OkJaRzCv-W-__p2YdRumoo_jt5s7JsZxohDo4gnE8U8lfgLPfpyZg</addsrcrecordid><sourcetype>Index Database</sourcetype><iscdi>true</iscdi><recordtype>book_chapter</recordtype><pqid>EBC3087599_30_308</pqid></control><display><type>book_chapter</type><title>A Credential Conversion Service for SAML-based Scenarios</title><source>Springer Books</source><creator>CANOVAS, Oscar ; LOPEZ, Gabriel ; GOMEZ-SKARMETA, Antonio F</creator><contributor>Katsikas, Sokratis K ; Gritzalis, Stefanos ; Gritzalis, Stefanos ; López, Javier ; Katsikas, Sokratis K.</contributor><creatorcontrib>CANOVAS, Oscar ; LOPEZ, Gabriel ; GOMEZ-SKARMETA, Antonio F ; Katsikas, Sokratis K ; Gritzalis, Stefanos ; Gritzalis, Stefanos ; López, Javier ; Katsikas, Sokratis K.</creatorcontrib><description>Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.</description><identifier>ISSN: 0302-9743</identifier><identifier>ISBN: 9783540222163</identifier><identifier>ISBN: 3540222162</identifier><identifier>EISSN: 1611-3349</identifier><identifier>EISBN: 9783540259800</identifier><identifier>EISBN: 3540259805</identifier><identifier>DOI: 10.1007/978-3-540-25980-0_24</identifier><identifier>OCLC: 934979531</identifier><identifier>LCCallNum: QA268</identifier><language>eng</language><publisher>Germany: Springer Berlin / Heidelberg</publisher><subject>Administrative Domain ; Applied sciences ; Cryptography ; Exact sciences and technology ; Information, signal and communications theory ; Internet Engineer Task ; Policy Decision Point ; Signal and communications theory ; Source Domain ; Telecommunications and information theory ; User Authority</subject><ispartof>Lecture notes in computer science, 2004, Vol.3093, p.297-305</ispartof><rights>Springer-Verlag Berlin Heidelberg 2004</rights><rights>2004 INIST-CNRS</rights><lds50>peer_reviewed</lds50><woscitedreferencessubscribed>false</woscitedreferencessubscribed><relation>Lecture Notes in Computer Science</relation></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Uhttps://ebookcentral.proquest.com/covers/3087599-l.jpg</thumbnail><linktopdf>$$Uhttps://link.springer.com/content/pdf/10.1007/978-3-540-25980-0_24$$EPDF$$P50$$Gspringer$$H</linktopdf><linktohtml>$$Uhttps://link.springer.com/10.1007/978-3-540-25980-0_24$$EHTML$$P50$$Gspringer$$H</linktohtml><link.rule.ids>309,310,779,780,784,789,790,793,4050,4051,27925,38255,41442,42511</link.rule.ids><backlink>$$Uhttp://pascal-francis.inist.fr/vibad/index.php?action=getRecordDetail&amp;idt=15993656$$DView record in Pascal Francis$$Hfree_for_read</backlink></links><search><contributor>Katsikas, Sokratis K</contributor><contributor>Gritzalis, Stefanos</contributor><contributor>Gritzalis, Stefanos</contributor><contributor>López, Javier</contributor><contributor>Katsikas, Sokratis K.</contributor><creatorcontrib>CANOVAS, Oscar</creatorcontrib><creatorcontrib>LOPEZ, Gabriel</creatorcontrib><creatorcontrib>GOMEZ-SKARMETA, Antonio F</creatorcontrib><title>A Credential Conversion Service for SAML-based Scenarios</title><title>Lecture notes in computer science</title><description>Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.</description><subject>Administrative Domain</subject><subject>Applied sciences</subject><subject>Cryptography</subject><subject>Exact sciences and technology</subject><subject>Information, signal and communications theory</subject><subject>Internet Engineer Task</subject><subject>Policy Decision Point</subject><subject>Signal and communications theory</subject><subject>Source Domain</subject><subject>Telecommunications and information theory</subject><subject>User Authority</subject><issn>0302-9743</issn><issn>1611-3349</issn><isbn>9783540222163</isbn><isbn>3540222162</isbn><isbn>9783540259800</isbn><isbn>3540259805</isbn><fulltext>true</fulltext><rsrctype>book_chapter</rsrctype><creationdate>2004</creationdate><recordtype>book_chapter</recordtype><recordid>eNpFkE1PwzAMhsOnqMb-AYdeOAYSu23q4zTxJQ1xGJyjNE2hMNqSlEn8e9INCV9svX5t2Q9jF1JcSSHUNamSI88zwSGnUnChITtg8yhjFHeaOGSJLKTkiBkd_fcAZIHHLBEogJPK8JQlFC2KcpRnbB7Cu4gBKLJMJaxcpEvvateNrdmky77bOh_avkvXzm9b69Km9-l68bjilQmuTtfWdca3fThnJ43ZBDf_yzP2cnvzvLznq6e7h-VixQdQMPKqLi2ZsqqsabLSNUQKS5W7BhVJJ8EAFQU4aS0oRGhqKPOaoLGQg6szwhm73O8dTLBm03jT2Tbowbefxv9omRNhkRfRB3tfiK3u1Xld9f1H0FLoCamOfDTqSEjv8OkJaRzCv-W-__p2YdRumoo_jt5s7JsZxohDo4gnE8U8lfgLPfpyZg</recordid><startdate>2004</startdate><enddate>2004</enddate><creator>CANOVAS, Oscar</creator><creator>LOPEZ, Gabriel</creator><creator>GOMEZ-SKARMETA, Antonio F</creator><general>Springer Berlin / Heidelberg</general><general>Springer Berlin Heidelberg</general><general>Springer</general><scope>FFUUA</scope><scope>IQODW</scope></search><sort><creationdate>2004</creationdate><title>A Credential Conversion Service for SAML-based Scenarios</title><author>CANOVAS, Oscar ; LOPEZ, Gabriel ; GOMEZ-SKARMETA, Antonio F</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-p272t-bd8c9a8bbcaf48ef9973875ef3791e12a29662e1cc27332fd285d92fc252ed493</frbrgroupid><rsrctype>book_chapters</rsrctype><prefilter>book_chapters</prefilter><language>eng</language><creationdate>2004</creationdate><topic>Administrative Domain</topic><topic>Applied sciences</topic><topic>Cryptography</topic><topic>Exact sciences and technology</topic><topic>Information, signal and communications theory</topic><topic>Internet Engineer Task</topic><topic>Policy Decision Point</topic><topic>Signal and communications theory</topic><topic>Source Domain</topic><topic>Telecommunications and information theory</topic><topic>User Authority</topic><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>CANOVAS, Oscar</creatorcontrib><creatorcontrib>LOPEZ, Gabriel</creatorcontrib><creatorcontrib>GOMEZ-SKARMETA, Antonio F</creatorcontrib><collection>ProQuest Ebook Central - Book Chapters - Demo use only</collection><collection>Pascal-Francis</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>CANOVAS, Oscar</au><au>LOPEZ, Gabriel</au><au>GOMEZ-SKARMETA, Antonio F</au><au>Katsikas, Sokratis K</au><au>Gritzalis, Stefanos</au><au>Gritzalis, Stefanos</au><au>López, Javier</au><au>Katsikas, Sokratis K.</au><format>book</format><genre>bookitem</genre><ristype>CHAP</ristype><atitle>A Credential Conversion Service for SAML-based Scenarios</atitle><btitle>Lecture notes in computer science</btitle><seriestitle>Lecture Notes in Computer Science</seriestitle><date>2004</date><risdate>2004</risdate><volume>3093</volume><spage>297</spage><epage>305</epage><pages>297-305</pages><issn>0302-9743</issn><eissn>1611-3349</eissn><isbn>9783540222163</isbn><isbn>3540222162</isbn><eisbn>9783540259800</eisbn><eisbn>3540259805</eisbn><abstract>Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.</abstract><cop>Germany</cop><pub>Springer Berlin / Heidelberg</pub><doi>10.1007/978-3-540-25980-0_24</doi><oclcid>934979531</oclcid><tpages>9</tpages></addata></record>
fulltext fulltext
identifier ISSN: 0302-9743
ispartof Lecture notes in computer science, 2004, Vol.3093, p.297-305
issn 0302-9743
1611-3349
language eng
recordid cdi_pascalfrancis_primary_15993656
source Springer Books
subjects Administrative Domain
Applied sciences
Cryptography
Exact sciences and technology
Information, signal and communications theory
Internet Engineer Task
Policy Decision Point
Signal and communications theory
Source Domain
Telecommunications and information theory
User Authority
title A Credential Conversion Service for SAML-based Scenarios
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2024-12-26T08%3A57%3A25IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-proquest_pasca&rft_val_fmt=info:ofi/fmt:kev:mtx:book&rft.genre=bookitem&rft.atitle=A%20Credential%20Conversion%20Service%20for%20SAML-based%20Scenarios&rft.btitle=Lecture%20notes%20in%20computer%20science&rft.au=CANOVAS,%20Oscar&rft.date=2004&rft.volume=3093&rft.spage=297&rft.epage=305&rft.pages=297-305&rft.issn=0302-9743&rft.eissn=1611-3349&rft.isbn=9783540222163&rft.isbn_list=3540222162&rft_id=info:doi/10.1007/978-3-540-25980-0_24&rft_dat=%3Cproquest_pasca%3EEBC3087599_30_308%3C/proquest_pasca%3E%3Curl%3E%3C/url%3E&rft.eisbn=9783540259800&rft.eisbn_list=3540259805&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_pqid=EBC3087599_30_308&rft_id=info:pmid/&rfr_iscdi=true