Skip to main content
Top

2021 | OriginalPaper | Chapter

Distributed Identity Management for Semantic Entities

Authors : Falko Schönteich, Andreas Kasten, Ansgar Scherp

Published in: Information Management and Big Data

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

We propose semDIM, a novel approach for Semantic Distributed Identity Management based on a Semantic Web architecture. For the first time, semDIM provides a framework for a distributed definition and management of entities such as persons being part of an organization, groups, and roles across namespaces. It is suitable for informal, i.e., social networks, as well as for professional networks such as cross-organizational collaborations. Beyond the capabilities of existing Identity Management solutions, we allow distributed identifiers and management of groups (consisting of agents and sub-groups) and roles. semDIM uses owl:sameAs as a central property to represent and verify distributed identities via formal reasoning. This concept enables novel functionalities for Distributed Identity Management, as these entities can be referred to, related to each other, as well as be managed across namespaces. Our semDIM approach consists of a modular software architecture, a process model, as well as a set of state-of-the-art DUL-based OWL ontology patterns. We demonstrate our approach by an example implementation that evaluates its functional fitness.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Footnotes
3
In a real life setting, the chain of command may be more complex than simply having one root authority, e.g., multiple founders all having equal rights, but for the sake of brevity, we discuss the compact situation of one root authority per company.
 
5
https://​rdf4j.​org/​, last accessed: 2020-09-14.
 
Literature
3.
go back to reference Gai, K., Qiu, M., Thuraisingham, B., Tao, L.: Proactive attribute-based secure data schema for mobile cloud in financial industry. In: IEEE HPCC, CSS, and ICESS (2015) Gai, K., Qiu, M., Thuraisingham, B., Tao, L.: Proactive attribute-based secure data schema for mobile cloud in financial industry. In: IEEE HPCC, CSS, and ICESS (2015)
7.
go back to reference Kasten, A.: Secure Semantic Web Data Management: Confidentiality, Integrity, and Compliant Availability in Open and Distributed Networks. University Koblenz-Landau (2016) Kasten, A.: Secure Semantic Web Data Management: Confidentiality, Integrity, and Compliant Availability in Open and Distributed Networks. University Koblenz-Landau (2016)
8.
go back to reference Kasten, A., Scherp, A.: Ontology-based information flow control of network-level internet communication. IJSC 9(01), 1–45 (2015) Kasten, A., Scherp, A.: Ontology-based information flow control of network-level internet communication. IJSC 9(01), 1–45 (2015)
9.
go back to reference Kayes, A., Han, J., Colman, A.: An ontological framework for situation-aware access control of software services. Inf. Syst. 53, 253–277 (2015)CrossRef Kayes, A., Han, J., Colman, A.: An ontological framework for situation-aware access control of software services. Inf. Syst. 53, 253–277 (2015)CrossRef
10.
go back to reference Kirrane, S., Mileo, A., Decker, S.: Access control and the resource description framework: a survey. Semant. Web 8(2), 311–352 (2017)CrossRef Kirrane, S., Mileo, A., Decker, S.: Access control and the resource description framework: a survey. Semant. Web 8(2), 311–352 (2017)CrossRef
11.
go back to reference Mansour, E., et al.: A demonstration of the solid platform for social web applications. In: Proceedings of the 25th International Conference Companion on World Wide Web - WWW 2016 Companion. ACM Press, New York (2016) Mansour, E., et al.: A demonstration of the solid platform for social web applications. In: Proceedings of the 25th International Conference Companion on World Wide Web - WWW 2016 Companion. ACM Press, New York (2016)
12.
go back to reference OASIS: eXtensible Access Control Markup Language Version 3.0. OASIS (2010) OASIS: eXtensible Access Control Markup Language Version 3.0. OASIS (2010)
13.
go back to reference Obrst, L., McCandless, D., Ferrell, D.: Fast semantic attribute-role-based access control (ARBAC) in a collaborative environment. In: Proceedings of the 8th IEEE International Conference on Collaborative Computing: Networking, Applications and Worksharing. IEEE (2012) Obrst, L., McCandless, D., Ferrell, D.: Fast semantic attribute-role-based access control (ARBAC) in a collaborative environment. In: Proceedings of the 8th IEEE International Conference on Collaborative Computing: Networking, Applications and Worksharing. IEEE (2012)
14.
go back to reference Priebe, T., Dobmeier, W., Kamprath, N.: Supporting attribute-based access control with ontologies. In: First International Conference on Availability, Reliability and Security (ARES 2006) (2006) Priebe, T., Dobmeier, W., Kamprath, N.: Supporting attribute-based access control with ontologies. In: First International Conference on Availability, Reliability and Security (ARES 2006) (2006)
17.
go back to reference Scherp, A., Saathoff, C., Franz, T., Staab, S.: Designing core ontologies. In: Applied Ontology, vol. 6. IOS Press (2011) Scherp, A., Saathoff, C., Franz, T., Staab, S.: Designing core ontologies. In: Applied Ontology, vol. 6. IOS Press (2011)
18.
go back to reference Schönteich, F., Kasten, A., Scherp, A.: A pattern-based core ontology for product lifecycle management based on DUL. In: WOP 2018 at ISWC 2018, Monterey, USA. CEUR Workshop Proceedings, CEUR-WS.org (2018) Schönteich, F., Kasten, A., Scherp, A.: A pattern-based core ontology for product lifecycle management based on DUL. In: WOP 2018 at ISWC 2018, Monterey, USA. CEUR Workshop Proceedings, CEUR-WS.org (2018)
19.
go back to reference Schwagereit, F., Scherp, A., Staab, S.: Representing Distributed Groups with dgFOAF. In: ESWC 2010, Heraklion, Crete, Greece (2010) Schwagereit, F., Scherp, A., Staab, S.: Representing Distributed Groups with dgFOAF. In: ESWC 2010, Heraklion, Crete, Greece (2010)
20.
go back to reference Shearer, R., Motik, B., Horrocks, I.: HermiT: a highly-efficient OWL reasoner directions. In: ISWC 2008. Springer, Heidelberg (2008) Shearer, R., Motik, B., Horrocks, I.: HermiT: a highly-efficient OWL reasoner directions. In: ISWC 2008. Springer, Heidelberg (2008)
22.
go back to reference Silva, E.F.: ACROSS-FI: attribute-based access control with distributed policies for future internet. In: ICN. IARIA XPS Press (2015) Silva, E.F.: ACROSS-FI: attribute-based access control with distributed policies for future internet. In: ICN. IARIA XPS Press (2015)
23.
go back to reference Sirin, E., Parsia, B., Grau, B.C., Kalyanpur, A., Katz, Y.: Pellet: a practical OWL-DL reasoner. J. Web Seman. 5(2), 51–53 (2007)CrossRef Sirin, E., Parsia, B., Grau, B.C., Kalyanpur, A., Katz, Y.: Pellet: a practical OWL-DL reasoner. J. Web Seman. 5(2), 51–53 (2007)CrossRef
24.
go back to reference Szyperski, C., Gruntz, D., Murer, S.: Component software: beyond object-oriented programming, 2nd edn. Component Software Series. Addison-Wesley, London (2003) Szyperski, C., Gruntz, D., Murer, S.: Component software: beyond object-oriented programming, 2nd edn. Component Software Series. Addison-Wesley, London (2003)
Metadata
Title
Distributed Identity Management for Semantic Entities
Authors
Falko Schönteich
Andreas Kasten
Ansgar Scherp
Copyright Year
2021
DOI
https://doi.org/10.1007/978-3-030-76228-5_36

Premium Partner