There is a lack of built-in privacy mechanisms within the current identity management systems. The guarantee a user has about their privacy is merely the 'trust' that the service providers will enforce their privacy requirements. The contribution of this paper is a proposal for the extension of existing Federated Single Sign-On (FSSO) systems to adopt the beneficial properties of the User-Centric Identity Management (UCIM) model to provide an identity management system that allows the users to control and enforce their privacy requirements while still retaining the convenient features of FSSO. By having an identity management system that respects user's privacy in a concrete manner as opposed to a simple 'trust', users will trust the current electronic communication medium more and hence allows more services to grow in this field.
Published in:
Network and Parallel Computing Workshops, 2007. NPC Workshops. IFIP International Conference on
Date of Conference: 18-21 Sept. 2007