Single SignOn architectures in Public Networks Liberty Alliance - PowerPoint PPT Presentation

1 / 16
About This Presentation
Title:

Single SignOn architectures in Public Networks Liberty Alliance

Description:

Aries Fajar Dwiputera. Mentor: Dr.-Ing. S. Rupp. Seminar of Advanced Communication Services ... User profiles and personalization. Distributed & Mobile ... – PowerPoint PPT presentation

Number of Views:122
Avg rating:3.0/5.0
Slides: 17
Provided by: aries2
Category:

less

Transcript and Presenter's Notes

Title: Single SignOn architectures in Public Networks Liberty Alliance


1
Single Sign-On architectures in Public Networks
(Liberty Alliance)
  • Aries Fajar Dwiputera
  • Mentor Dr.-Ing. S. Rupp

Seminar of Advanced Communication Services
INFOTECH SS 2005 University of Stuttgart
2
IDENTITY CRISIS
3
IDENTITY NEEDS
  • CONVINIENCES
  • User easiness and minimize user bad experience
    (forgotten identity)
  • STANDARDIZED
  • Can be implemented across different platform and
    device
  • SECURE
  • To avoid Identity Fraud
  • PRIVACY
  • Privacy must be controlled by the owner
  • LOWER COST
  • Services for everybody

4
Agenda
  • Problems
  • Liberty Alliance Project
  • Federated Identity
  • Circle of Trust
  • Liberty Architecture
  • Single-Sign-On ( Authentication )
  • Profiles ( Authorization )
  • Single-Log-Out
  • PGP Trust Relationship
  • Comparison of Liberty Alliance and PGP
  • Combination of Liberty Alliance and PGP
  • Conclusion
  • Questions and Answers

5
Liberty Alliance Federated Identity
- Solve compatibility between environments
  • - Unions of identity

6
Liberty Alliance -Circle of Trust
  • User /
  • Principal
  • Identity
  • Provider
  • Service
  • Provider

User
IDP
SP
7
Liberty Alliance Architecture
Source www.projectliberty.org
8
Liberty Alliance Single-Sign-On
User
Service Provider
Identity Provider
- Sign-on once at a Liberty enabled site -
Seamlessly signed-on - No need to authenticate
again.
9
Liberty Alliance Profiles
  • Different Profiles and Roles - Different
    access rights? User Personalization

Roles Guest
Roles Reseller
Roles User
Roles Guest
10
Liberty Alliance Single Sign Out
User
Service Provider
Identity Provider
Synchronized session logout functionality across
all sessions that were authenticated by a
particular identity provider.
11
Agenda
  • Problems
  • Liberty Alliance Project
  • Federated Identity
  • Circle of Trust
  • Liberty Architecture
  • Single-Sign-On ( Authentication )
  • Profiles ( Authorization )
  • Single-Log-Out
  • PGP Trust Relationship
  • Comparison of Liberty Alliance and PGP
  • Combination of Liberty Alliance and PGP
  • Conclusion
  • Questions and Answers

12
PGP Trust Relationship
  • Web of Trust
  • Introducer
  • Each others signature
  • Decentralized

13
Comparison Liberty Alliance and PGP
14
Combination Liberty Alliance PGP
  • Web of Trust between IDPs
  • and SPs
  • Circle of Trust between
  • User-IDP

15
CONCLUSION Combination Liberty Alliance and PGP
  • Single-Sign-On
  • Conveniences and easiness for the User
  • Easy Key Management
  • The burden switch away from the user
  • Authenticate and Authorize
  • User profiles and personalization
  • Distributed Mobile
  • Everything is connected and One-Time-Service
  • Scalability
  • Adding new element is easy

16
THANK YOU
Write a Comment
User Comments (0)
About PowerShow.com