Conference paper

Mobile Personal Identity Provider Based on OpenID Connect


Authors listLo Iacono, Luigi; Gruschka, Nils; Nehren, Peter

Appeared inTrust, Privacy and Security in Digital Business

Editor listLopez, J.; Fischer-Hübner, S.; Lambrinoudakis, C.

Publication year2017

Pages19-31

ISBN978-3-319-64482-0

eISBN978-3-319-64483-7

DOI Linkhttps://doi.org/10.1007/978-3-319-64483-7_2

Conference14th International Conference on Trust, Privacy and Security in Digital Business (TrustBus 2017)

Title of seriesLecture Notes in Computer Science

Number in series10442


Abstract

In our digital society managing identities and according access credentials is as painful as needed. This is mainly due to the demand for a unique password for each service a user makes use of. Various approaches have been proposed for solving this issue amongst which Identity Provider (IDP) based systems gained most traction for Web services. An obvious disadvantage of these IDPs is, however, the level of trust a user requires to place into them. After all, an IDP stores a lot of sensitive information about its users and is able to impersonate each of them.
In the present paper we therefore propose an architecture that enables to operate a personal IDP (PIDP) on a mobile device owned by the user. To evaluate the properties of our introduced mobile PIDP (MoPIDP) we analyzed it by means of a prototype. Our MoPIDP architecture provides clear advantages in comparison to classical IDP approaches in terms of required trust and common threats like phishing and additionally regarding the usability for the end user.




Citation Styles

Harvard Citation styleLo Iacono, L., Gruschka, N. and Nehren, P. (2017) Mobile Personal Identity Provider Based on OpenID Connect, in Lopez, J., Fischer-Hübner, S. and Lambrinoudakis, C. (eds.) Trust, Privacy and Security in Digital Business. Cham: Springer. pp. 19-31. https://doi.org/10.1007/978-3-319-64483-7_2

APA Citation styleLo Iacono, L., Gruschka, N., & Nehren, P. (2017). Mobile Personal Identity Provider Based on OpenID Connect. In Lopez, J., Fischer-Hübner, S., & Lambrinoudakis, C. (Eds.), Trust, Privacy and Security in Digital Business. (pp. 19-31). Springer. https://doi.org/10.1007/978-3-319-64483-7_2


Last updated on 2025-05-08 at 15:47