{"title":"A Secure Mobile Cloud Identity: Criteria for Effective Identity and Access Management Standards","authors":"N. Naik, Paul Jenkins","doi":"10.1109/MobileCloud.2016.22","DOIUrl":null,"url":null,"abstract":"Managing digital identities and access control for cloud users and applications remains one of the greatest challenges facing cloud computing today. This led to a new cloud security service paradigm called identity and access management (IAM) service, IDentity-as-a-Service (IDaaS). Many IAM standards have been proposed in the last two decades: Lightweight Directory Access Protocol (LDAP), Central Authentication Service (CAS), OZ Protocol, Security Assertion Markup Language (SAML), CoSign Protocol, Open Authentication (OAuth), and OpenID Connect (OIDC). However, Mobile Cloud Computing (MCC) IAM requirements are somewhat different due to its resource limitations and mobile communication. It may not be necessary that the same IAM standards are equally effective for MCC. To determine the appropriateness of these IAM standards for MCC requires some IAM performance evaluation criteria. Therefore, this paper proposes several evaluation criteria for an effective IAM standard for MCC.","PeriodicalId":176270,"journal":{"name":"2016 4th IEEE International Conference on Mobile Cloud Computing, Services, and Engineering (MobileCloud)","volume":"67 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-03-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"29","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 4th IEEE International Conference on Mobile Cloud Computing, Services, and Engineering (MobileCloud)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/MobileCloud.2016.22","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 29
Abstract
Managing digital identities and access control for cloud users and applications remains one of the greatest challenges facing cloud computing today. This led to a new cloud security service paradigm called identity and access management (IAM) service, IDentity-as-a-Service (IDaaS). Many IAM standards have been proposed in the last two decades: Lightweight Directory Access Protocol (LDAP), Central Authentication Service (CAS), OZ Protocol, Security Assertion Markup Language (SAML), CoSign Protocol, Open Authentication (OAuth), and OpenID Connect (OIDC). However, Mobile Cloud Computing (MCC) IAM requirements are somewhat different due to its resource limitations and mobile communication. It may not be necessary that the same IAM standards are equally effective for MCC. To determine the appropriateness of these IAM standards for MCC requires some IAM performance evaluation criteria. Therefore, this paper proposes several evaluation criteria for an effective IAM standard for MCC.