Back to Search Start Over

A cross-layer SSO solution for federating access to kerberized services in the eduroam/DAMe network.

Authors :
Pérez-Méndez, Alejandro
Pereñíguez-García, Fernando
Marín-López, Rafael
López-Millán, Gabriel
Source :
International Journal of Information Security. Nov2012, Vol. 11 Issue 6, p365-388. 24p. 7 Diagrams, 9 Charts, 1 Graph.
Publication Year :
2012

Abstract

Eduroam has become one of the main examples of network federations around the world, where hundred of institutions allow roaming end users to access the local network if they belong to any other eduroam member institution. In this context, this paper proposes how, once the end user is authenticated by the network, she can access additional federated application services (beyond the web) by means of Kerberos, without deploying additional cross-realm infrastructures. With the support of existing eduroam architecture, this proposal prevents the end user from being fully authenticated by her home institution again to access the application services, which do not need to be modified. Finally, optional advanced authorization can be used to provide added value services to end users. [ABSTRACT FROM AUTHOR]

Details

Language :
English
ISSN :
16155262
Volume :
11
Issue :
6
Database :
Academic Search Index
Journal :
International Journal of Information Security
Publication Type :
Academic Journal
Accession number :
82503839
Full Text :
https://doi.org/10.1007/s10207-012-0174-5