This paper presents a comprehensive classification of identity management approaches. The classification makes use of three axes: topology, type of user, and type of environment. The analysis of existing approaches using the resulting identity management cube (IMC) highlights the trade-off between user control and trust in attributes. A comparative analysis of IMC and established models identifies missing links between the approaches. The IMC is extended by a morphology of identity management, describing characteristics of cooperation. The morphology is then mapped to the life cycle of users and identity management in a further step. These classifications are practically underlined with current approaches. Both methods combined provide a comprehensive characterization of identity management approaches. The methods help to choose suited approaches and implement needed tools.
翻译:本文件介绍了身份管理办法的综合分类:分类采用三个轴:地形学、用户类型和环境类型;利用由此产生的身份管理立方体(IMC)分析现有办法,突显了用户控制和属性信任之间的权衡;对综合监控委员会和既定模型进行比较分析,查明了这些办法之间的缺失环节;通过特征管理形态学,扩展了综合监控委员会,说明了合作的特点;然后将形态学绘制成用户生命周期和身份管理,并又向前一步;这些分类用现行办法实际上得到了强调;这两种方法结合了身份管理办法的综合特征描述;这些方法有助于选择合适的方法和采用所需的工具。