Integrating OAuth with Information Card Systems

Al-Sinani, Haitham S.

(2011)

Al-Sinani, Haitham S. (2011) Integrating OAuth with Information Card Systems
In: Proceedings of IAS '11. IEEE.

Our Full Text Deposits

Full text access: Open

Full text file - 116.4 KB

Abstract

We propose a novel scheme to provide client-based interoperation between OAuth and an Information Card system such as CardSpace or Higgins. In this scheme, Information Card users are able to obtain a security token from an OAuth-enabled system, the contents of which can be processed by an Information Card-enabled relying party. The scheme, based on a browser extension, is transparent to OAuth providers and to identity selectors, and only requires minor changes to the operation of an Information Card-enabled relying party. We specify its operation and describe an implementation of a proof-of-concept prototype. Security and operational analyses are also provided.

Information about this Version

This is a Submitted version
This version's date is: 2011
This item is not peer reviewed

Link to this Version

https://repository.royalholloway.ac.uk/items/c068204b-7f80-9274-4195-4c9fbb4e0f98/8/

Item TypeBook Item
TitleIntegrating OAuth with Information Card Systems
AuthorsAl-Sinani, Haitham S.
DepartmentsFaculty of Science\Mathematics

Identifiers

Deposited by Research Information System (atira) on 22-Jul-2014 in Royal Holloway Research Online.Last modified on 22-Jul-2014


Details