Linking Contexts from Distinct Data Sources in Zero Trust Federation

09/22/2022
by   Masato Hirai, et al.
0

An access control model called Zero Trust Architecture (ZTA) has attracted attention. ZTA uses information of users and devices, called context, for authentication and authorization. Zero Trust Federation (ZTF) has been proposed as a framework for extending an idea of identity federation to support ZTA. ZTF defines CAP as the entity that collects context and provides it to each organization (Relying Party; RP) that needs context for authorization based on ZTA. To improve the quality of authorization, CAPs need to collect context from various data sources. However, ZTF did not provide a method for collecting context from data sources other than RP. In this research, as a general model for collecting context in ZTF, we propose a method of linking identifiers between the data source and CAP. This method provides a way to collect context from some of such data sources in ZTF. Then, we implemented our method using RADIUS and MDM as data sources and confirmed that their contexts could be collected and used.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/22/2022

Zero Trust Federation: Sharing Context under User Control toward Zero Trust in Identity Federation

To securely control access to systems, the concept of Zero Trust has bee...
research
10/22/2019

Integrating Information About Entities Progressively

Users often have to integrate information about entities from multiple d...
research
10/27/2021

Deep Transfer Learning for Multi-source Entity Linkage via Domain Adaptation

Multi-source entity linkage focuses on integrating knowledge from multip...
research
09/13/2021

An End-to-end Point of Interest (POI) Conflation Framework

Point of interest (POI) data serves as a valuable source of semantic inf...
research
12/20/2017

Linking Administrative Data: An Evolutionary Schema

Statistics New Zealand (Stats NZ) has committed unreservedly to an admin...
research
06/18/2023

2D-Shapley: A Framework for Fragmented Data Valuation

Data valuation – quantifying the contribution of individual data sources...
research
11/25/2017

Privacy Risks from Public Data Sources

In the fight against tax evaders and other cheats, governments seek to g...

Please sign up or login with your details

Forgot password? Click here to reset