With the pandemic of COVID-19, people around the world increasingly work from home. Each natural person typically has several digital identities with different associated information. During the last years, various identity and access management approaches have gained attraction, helping for example to access other organization's services within trust boundaries. The resulting heterogeneity creates a high complexity to differentiate between these approaches and scenarios as participating entity; combining them is even harder. Last but not least, various actors have a different understanding or perspective of the terms, like 'service', in this context. Our paper describes a reference service with standard components in generic federated identity management. This is utilized with modern Enterprise Architecture using the framework ArchiMate. The proposed universal federated identity management service model (FIMSM) is applied to describe various federated identity management scenarios in a generic service-oriented way. The presented reference design is approved in multiple aspects and is easily applicable in numerous scenarios.
翻译:随着COVID-19的流行,世界各地的人越来越多地在家里工作,每个自然人一般都有若干具有不同相关信息的数字化身份。在过去几年里,各种身份和访问管理方法越来越吸引人,例如有助于在信任范围内获得其他组织的服务。由此产生的差异性为区分作为参与实体的这些方式和设想方案创造了非常复杂的问题;将它们合并起来更为困难。最后但并非最不重要的一点是,各种行为者对“服务”等术语有不同的理解或观点。我们的文件描述了一种具有通用联合身份管理标准组成部分的参考服务。在使用ArchiMate框架的现代企业结构中使用这一服务。拟议的通用联合身份管理服务模式(FIMSM)用于以通用服务为导向的方式描述各种联邦身份管理设想方案。所提出的参考设计在多个方面得到批准,并且很容易适用于许多设想方案。