A Credential Conversion Service for SAML-based Scenarios
Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared...
Gespeichert in:
Hauptverfasser: | , , |
---|---|
Format: | Buchkapitel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
container_end_page | 305 |
---|---|
container_issue | |
container_start_page | 297 |
container_title | |
container_volume | 3093 |
creator | CANOVAS, Oscar LOPEZ, Gabriel GOMEZ-SKARMETA, Antonio F |
description | Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS. |
doi_str_mv | 10.1007/978-3-540-25980-0_24 |
format | Book Chapter |
fullrecord | <record><control><sourceid>proquest_pasca</sourceid><recordid>TN_cdi_pascalfrancis_primary_15993656</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>EBC3087599_30_308</sourcerecordid><originalsourceid>FETCH-LOGICAL-p272t-bd8c9a8bbcaf48ef9973875ef3791e12a29662e1cc27332fd285d92fc252ed493</originalsourceid><addsrcrecordid>eNpFkE1PwzAMhsOnqMb-AYdeOAYSu23q4zTxJQ1xGJyjNE2hMNqSlEn8e9INCV9svX5t2Q9jF1JcSSHUNamSI88zwSGnUnChITtg8yhjFHeaOGSJLKTkiBkd_fcAZIHHLBEogJPK8JQlFC2KcpRnbB7Cu4gBKLJMJaxcpEvvateNrdmky77bOh_avkvXzm9b69Km9-l68bjilQmuTtfWdca3fThnJ43ZBDf_yzP2cnvzvLznq6e7h-VixQdQMPKqLi2ZsqqsabLSNUQKS5W7BhVJJ8EAFQU4aS0oRGhqKPOaoLGQg6szwhm73O8dTLBm03jT2Tbowbefxv9omRNhkRfRB3tfiK3u1Xld9f1H0FLoCamOfDTqSEjv8OkJaRzCv-W-__p2YdRumoo_jt5s7JsZxohDo4gnE8U8lfgLPfpyZg</addsrcrecordid><sourcetype>Index Database</sourcetype><iscdi>true</iscdi><recordtype>book_chapter</recordtype><pqid>EBC3087599_30_308</pqid></control><display><type>book_chapter</type><title>A Credential Conversion Service for SAML-based Scenarios</title><source>Springer Books</source><creator>CANOVAS, Oscar ; LOPEZ, Gabriel ; GOMEZ-SKARMETA, Antonio F</creator><contributor>Katsikas, Sokratis K ; Gritzalis, Stefanos ; Gritzalis, Stefanos ; López, Javier ; Katsikas, Sokratis K.</contributor><creatorcontrib>CANOVAS, Oscar ; LOPEZ, Gabriel ; GOMEZ-SKARMETA, Antonio F ; Katsikas, Sokratis K ; Gritzalis, Stefanos ; Gritzalis, Stefanos ; López, Javier ; Katsikas, Sokratis K.</creatorcontrib><description>Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.</description><identifier>ISSN: 0302-9743</identifier><identifier>ISBN: 9783540222163</identifier><identifier>ISBN: 3540222162</identifier><identifier>EISSN: 1611-3349</identifier><identifier>EISBN: 9783540259800</identifier><identifier>EISBN: 3540259805</identifier><identifier>DOI: 10.1007/978-3-540-25980-0_24</identifier><identifier>OCLC: 934979531</identifier><identifier>LCCallNum: QA268</identifier><language>eng</language><publisher>Germany: Springer Berlin / Heidelberg</publisher><subject>Administrative Domain ; Applied sciences ; Cryptography ; Exact sciences and technology ; Information, signal and communications theory ; Internet Engineer Task ; Policy Decision Point ; Signal and communications theory ; Source Domain ; Telecommunications and information theory ; User Authority</subject><ispartof>Lecture notes in computer science, 2004, Vol.3093, p.297-305</ispartof><rights>Springer-Verlag Berlin Heidelberg 2004</rights><rights>2004 INIST-CNRS</rights><lds50>peer_reviewed</lds50><woscitedreferencessubscribed>false</woscitedreferencessubscribed><relation>Lecture Notes in Computer Science</relation></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Uhttps://ebookcentral.proquest.com/covers/3087599-l.jpg</thumbnail><linktopdf>$$Uhttps://link.springer.com/content/pdf/10.1007/978-3-540-25980-0_24$$EPDF$$P50$$Gspringer$$H</linktopdf><linktohtml>$$Uhttps://link.springer.com/10.1007/978-3-540-25980-0_24$$EHTML$$P50$$Gspringer$$H</linktohtml><link.rule.ids>309,310,779,780,784,789,790,793,4050,4051,27925,38255,41442,42511</link.rule.ids><backlink>$$Uhttp://pascal-francis.inist.fr/vibad/index.php?action=getRecordDetail&idt=15993656$$DView record in Pascal Francis$$Hfree_for_read</backlink></links><search><contributor>Katsikas, Sokratis K</contributor><contributor>Gritzalis, Stefanos</contributor><contributor>Gritzalis, Stefanos</contributor><contributor>López, Javier</contributor><contributor>Katsikas, Sokratis K.</contributor><creatorcontrib>CANOVAS, Oscar</creatorcontrib><creatorcontrib>LOPEZ, Gabriel</creatorcontrib><creatorcontrib>GOMEZ-SKARMETA, Antonio F</creatorcontrib><title>A Credential Conversion Service for SAML-based Scenarios</title><title>Lecture notes in computer science</title><description>Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.</description><subject>Administrative Domain</subject><subject>Applied sciences</subject><subject>Cryptography</subject><subject>Exact sciences and technology</subject><subject>Information, signal and communications theory</subject><subject>Internet Engineer Task</subject><subject>Policy Decision Point</subject><subject>Signal and communications theory</subject><subject>Source Domain</subject><subject>Telecommunications and information theory</subject><subject>User Authority</subject><issn>0302-9743</issn><issn>1611-3349</issn><isbn>9783540222163</isbn><isbn>3540222162</isbn><isbn>9783540259800</isbn><isbn>3540259805</isbn><fulltext>true</fulltext><rsrctype>book_chapter</rsrctype><creationdate>2004</creationdate><recordtype>book_chapter</recordtype><recordid>eNpFkE1PwzAMhsOnqMb-AYdeOAYSu23q4zTxJQ1xGJyjNE2hMNqSlEn8e9INCV9svX5t2Q9jF1JcSSHUNamSI88zwSGnUnChITtg8yhjFHeaOGSJLKTkiBkd_fcAZIHHLBEogJPK8JQlFC2KcpRnbB7Cu4gBKLJMJaxcpEvvateNrdmky77bOh_avkvXzm9b69Km9-l68bjilQmuTtfWdca3fThnJ43ZBDf_yzP2cnvzvLznq6e7h-VixQdQMPKqLi2ZsqqsabLSNUQKS5W7BhVJJ8EAFQU4aS0oRGhqKPOaoLGQg6szwhm73O8dTLBm03jT2Tbowbefxv9omRNhkRfRB3tfiK3u1Xld9f1H0FLoCamOfDTqSEjv8OkJaRzCv-W-__p2YdRumoo_jt5s7JsZxohDo4gnE8U8lfgLPfpyZg</recordid><startdate>2004</startdate><enddate>2004</enddate><creator>CANOVAS, Oscar</creator><creator>LOPEZ, Gabriel</creator><creator>GOMEZ-SKARMETA, Antonio F</creator><general>Springer Berlin / Heidelberg</general><general>Springer Berlin Heidelberg</general><general>Springer</general><scope>FFUUA</scope><scope>IQODW</scope></search><sort><creationdate>2004</creationdate><title>A Credential Conversion Service for SAML-based Scenarios</title><author>CANOVAS, Oscar ; LOPEZ, Gabriel ; GOMEZ-SKARMETA, Antonio F</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-p272t-bd8c9a8bbcaf48ef9973875ef3791e12a29662e1cc27332fd285d92fc252ed493</frbrgroupid><rsrctype>book_chapters</rsrctype><prefilter>book_chapters</prefilter><language>eng</language><creationdate>2004</creationdate><topic>Administrative Domain</topic><topic>Applied sciences</topic><topic>Cryptography</topic><topic>Exact sciences and technology</topic><topic>Information, signal and communications theory</topic><topic>Internet Engineer Task</topic><topic>Policy Decision Point</topic><topic>Signal and communications theory</topic><topic>Source Domain</topic><topic>Telecommunications and information theory</topic><topic>User Authority</topic><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>CANOVAS, Oscar</creatorcontrib><creatorcontrib>LOPEZ, Gabriel</creatorcontrib><creatorcontrib>GOMEZ-SKARMETA, Antonio F</creatorcontrib><collection>ProQuest Ebook Central - Book Chapters - Demo use only</collection><collection>Pascal-Francis</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>CANOVAS, Oscar</au><au>LOPEZ, Gabriel</au><au>GOMEZ-SKARMETA, Antonio F</au><au>Katsikas, Sokratis K</au><au>Gritzalis, Stefanos</au><au>Gritzalis, Stefanos</au><au>López, Javier</au><au>Katsikas, Sokratis K.</au><format>book</format><genre>bookitem</genre><ristype>CHAP</ristype><atitle>A Credential Conversion Service for SAML-based Scenarios</atitle><btitle>Lecture notes in computer science</btitle><seriestitle>Lecture Notes in Computer Science</seriestitle><date>2004</date><risdate>2004</risdate><volume>3093</volume><spage>297</spage><epage>305</epage><pages>297-305</pages><issn>0302-9743</issn><eissn>1611-3349</eissn><isbn>9783540222163</isbn><isbn>3540222162</isbn><eisbn>9783540259800</eisbn><eisbn>3540259805</eisbn><abstract>Coordination of different administrative domains involves several security concerns, especially from an authorization point of view. SAML is getting a lot of popularity as a language that can be used to bridge several isolated authorization systems in order to provide a common interface in a shared target scenario. In this paper, we present a Credential Conversion Service (CCS) that converts non-SAML credentials into SAML assertions following the rules of a conversion policy. CCS provides two different profiles governing how to exchange SAML assertions, and also defines some extensions to SAML in order to express the syntax and semantics of our CCS.</abstract><cop>Germany</cop><pub>Springer Berlin / Heidelberg</pub><doi>10.1007/978-3-540-25980-0_24</doi><oclcid>934979531</oclcid><tpages>9</tpages></addata></record> |
fulltext | fulltext |
identifier | ISSN: 0302-9743 |
ispartof | Lecture notes in computer science, 2004, Vol.3093, p.297-305 |
issn | 0302-9743 1611-3349 |
language | eng |
recordid | cdi_pascalfrancis_primary_15993656 |
source | Springer Books |
subjects | Administrative Domain Applied sciences Cryptography Exact sciences and technology Information, signal and communications theory Internet Engineer Task Policy Decision Point Signal and communications theory Source Domain Telecommunications and information theory User Authority |
title | A Credential Conversion Service for SAML-based Scenarios |
url | https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2024-12-26T08%3A57%3A25IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-proquest_pasca&rft_val_fmt=info:ofi/fmt:kev:mtx:book&rft.genre=bookitem&rft.atitle=A%20Credential%20Conversion%20Service%20for%20SAML-based%20Scenarios&rft.btitle=Lecture%20notes%20in%20computer%20science&rft.au=CANOVAS,%20Oscar&rft.date=2004&rft.volume=3093&rft.spage=297&rft.epage=305&rft.pages=297-305&rft.issn=0302-9743&rft.eissn=1611-3349&rft.isbn=9783540222163&rft.isbn_list=3540222162&rft_id=info:doi/10.1007/978-3-540-25980-0_24&rft_dat=%3Cproquest_pasca%3EEBC3087599_30_308%3C/proquest_pasca%3E%3Curl%3E%3C/url%3E&rft.eisbn=9783540259800&rft.eisbn_list=3540259805&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_pqid=EBC3087599_30_308&rft_id=info:pmid/&rfr_iscdi=true |