Laborde et al., 2020 - Google Patents

A user-centric identity management framework based on the W3C verifiable credentials and the FIDO universal authentication framework

Laborde et al., 2020

View PDF
Document ID
16924746644239934897
Author
Laborde R
Oglaza A
Wazan S
Barrere F
Benzekri A
Chadwick D
Venant R
Publication year
Publication venue
2020 IEEE 17th Annual Consumer Communications & Networking Conference (CCNC)

External Links

Snippet

We present a user-centric and decentralized digital identity system that allows anyone to easily benefit from an enriched digital identity made of multi-purpose and multi-origin attributes. It increases usability by the elimination of user passwords. It also makes this …
Continue reading at hal.science (PDF) (other versions)

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/34User authentication involving the use of external additional devices, e.g. dongles or smart cards
    • G06F21/35User authentication involving the use of external additional devices, e.g. dongles or smart cards communicating wirelessly
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G06COMPUTING; CALCULATING; COUNTING
    • G06FELECTRICAL DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/33User authentication using certificates
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communication
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communication including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3226Cryptographic mechanisms or cryptographic arrangements for secret or secure communication including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
    • H04L9/3231Biological data, e.g. fingerprint, voice or retina
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for supporting authentication of entities communicating through a packet data network
    • H04L63/083Network architectures or network communication protocols for network security for supporting authentication of entities communicating through a packet data network using passwords
    • H04L63/0838Network architectures or network communication protocols for network security for supporting authentication of entities communicating through a packet data network using passwords using one-time-passwords

Similar Documents

Publication Publication Date Title
Laborde et al. A user-centric identity management framework based on the W3C verifiable credentials and the FIDO universal authentication framework
AU2021206913B2 (en) Systems and methods for distributed data sharing with asynchronous third-party attestation
JP7083892B2 (en) Mobile authentication interoperability of digital certificates
Carretero et al. Federated identity architecture of the European eID system
Chadwick Federated identity management
Bertino et al. Identity management: Concepts, technologies, and systems
US9300653B1 (en) Delivery of authentication information to a RESTful service using token validation scheme
Erdos et al. Shibboleth architecture draft v05
CN112580102A (en) Multi-dimensional digital identity authentication system based on block chain
Berbecaru et al. Providing login and Wi-Fi access services with the eIDAS network: a practical approach
Berbecaru et al. On enabling additional natural person and domain-specific attributes in the eIDAS network
Shaikh et al. Secured authentication by single sign on (sso): A big picture
Bichsel et al. An architecture for privacy-ABCs
Hovav et al. Tutorial: identity management systems and secured access control
Abubakar-Sadiq Establishing secure and privacy preserving digital identity with self-sovereign identity
Catuogno et al. Achieving interoperability between federated identity management systems: A case of study
Carrasco et al. CredSSI: Enhancing Security and Privacy with Self-Sovereign Identities Approach
Vanella Evolution of Digital Identity in Europe: Experimenting with the eIDAS 2.0 Framework and the EU Digital Identity Wallet
Zwattendorfer et al. Middleware architecture for cross-border identification and authentication
Alsulami Towards a Federated Identity and Access Management Across Universities
Berbecaru et al. Federating e-identities across Europe, or how to build cross-border e-services
Ofleh Future of Identity and Access Management: The OpenID Connect Protocol
Zhan Decentralized Authentication and Authorization Built on Self-Sovereign Identity for Organizations
Carbone Low Code Approach for Web-Based Access Management
Panges et al. Examining the Effectiveness of Academic Title Verification: A Case Study